Cybersecurity researchers have uncovered a large-scale campaign that weaponizes compromised GitHub repositories to target cPanel and WebHost Manager (WHM) instances. The activity…
Cybersecurity researchers have uncovered a large-scale campaign dubbed FakeGit, which leverages nearly 7,600 malicious GitHub repositories to distribute the SmartLoader malware. The…
Cybersecurity researchers at Jamf Threat Labs have uncovered a new macOS information stealer named CrashStealer, which uses a signed and Apple-notarized dropper…
An information stealer deployed via exploitation of CVE-2026-35616 in Fortinet FortiClient EMS, targeting credentials from Chromium-based browsers and Firefox.
Cybersecurity researchers have flagged a new malware artifact generated using DeepSeek that constructed a novel attack path combining 'unrealistic browser-malware concepts with…
InfernoGrabber v9.0 is a Python Flask-based malware generated using DeepSeek. It operates as a malicious web server, stealing Discord tokens, credit card…
OYSTERBLUES is an information stealer malware delivered via spear-phishing campaigns by UNC1151, targeting Ukrainian government organizations to exfiltrate sensitive data.
information stealermalwareOYSTERBLUESspear-phishing
Cybersecurity researchers have identified multiple ClickFix campaigns deploying three new malware loaders: BabaDeda Loader, Lorem Ipsum Loader, and Potemkin. These campaigns use…