Offside Wallet Theft Factory: Malicious Firefox Extensions Target Web3 Wallets
A campaign dubbed 'Offside Wallet Theft Factory' involves 40 malicious Firefox extensions that masquerade as Web3 products to steal cryptocurrency wallet secrets.…
A campaign dubbed 'Offside Wallet Theft Factory' involves 40 malicious Firefox extensions that masquerade as Web3 products to steal cryptocurrency wallet secrets.…
A large-scale operation turning thousands of compromised WordPress websites into infrastructure for malware delivery, C2 communications, and stolen data storage.
Fifteen malicious Firefox extensions exfiltrate wallet secrets through Cloudflare Workers, leveraging the service for data theft.
Cybersecurity researchers have uncovered new components in the Cavern (aka Cav3rn) command-and-control (C2) framework, used by Iranian nation-state hackers in attacks targeting…
TAMECAT is a modular surveillance and collection framework used by APT42 in spear-phishing attacks targeting the nuclear energy sector. It supports enumeration,…
⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More Ravie LakshmananAug 17, 2026Cybersecurity / Hacking The expensive attacks…
njRAT is a remote access trojan that has been detected in malware samples communicating with Sable Squirrel's infrastructure, contributing to the threat…
HiddenTear is a ransomware family whose signatures have been found in artifacts communicating with Sable Squirrel's infrastructure, indicating potential ransomware activity within…
Threat actors are increasingly acquiring expired domains—known as "dropcatch domains"—to inherit their reputation and traffic, redirecting victims to scams and malware. According…
SocGholish is a malware campaign that regained access to thousands of compromised sites by teaming up with Shady Squirrel shortly after its…