A new Russian loader-as-a-service (LaaS) operation named DOUBLECUP is leveraging ClickFix social engineering lures and steganographic PNG images cached in victims' browsers…
Google Threat Intelligence Group attributed the axios npm compromise to MIDNIGHT NEPTUNE, a North Korean actor. Their analysis contributed to understanding the…
A suspected Chinese-speaking threat actor has been conducting a series of cyber attacks against government organizations in Central Asia since January 2025.…
The Chinese cybercrime group Silver Fox has been observed targeting a Japanese industrial manufacturing organization with a sophisticated attack chain that leverages…
Cybersecurity researchers have disclosed details of a large-scale fraud campaign that involves creating lookalike websites of major Russian companies to siphon funds…
F6, a Russian cybersecurity company, disclosed a large-scale fraud campaign involving clone websites of major Russian companies to steal advance payments from…
A coordinated cyberattack targeting operational technology (OT) at over 30 community water systems in Minnesota occurred on July 26-27, 2026, prompting a…