Month: January 2025


  • A closer look at the Tria stealer campaign

    A malicious Android campaign named Tria Stealer has been targeting users in Malaysia and Brunei since mid-2024. The campaign uses…


  • Threat Actors Exploit Government Website Vulnerabilities for Phishing Campaigns

    Threat actors are exploiting vulnerabilities in government websites, particularly .gov domains, to conduct phishing campaigns. The abuse primarily involves using…


  • Security Brief: Threat Actors Take Taxes Into Account

    Proofpoint researchers have identified an increase in campaigns and malicious domains impersonating tax agencies and financial organizations. This aligns with…


  • Unmasking the Shadow of PoisonPlugs Obfuscator

    Since 2022, cyber espionage operations utilizing POISONPLUG.SHADOW have been tracked, employing a custom obfuscating compiler called ScatterBrain. This evolved version…


  • Meta’s Llama Framework Flaw Exposes AI Systems to Remote Code Execution Risks

    ![Llama Framework](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhVpPUx6IdQrQ7h1XI-F_o60on_nX_Iwzd_127nKhNtlgpCHoxsMOy2uGU1QzKb7w5KBtuxepNcUv2wOw7NztzLx2iRlHXem5oy_yuaUfvJTDqIcjQcY8SLr1n6aCPuPZZKtHQOSZIzlg0neVPWuTbzxUvg4mjSm513oyxpmxTdsxzvCUWSt1kDMU_xPsEp/s728-rw-e365/metaai.png ‘Llama Framework’)A high-severity security flaw has been disclosed in Meta’s Llama large language model (LLM) framework that, if…


  • [FUNKSEC] – Ransomware Victim: punjab[.]gov[.]in

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[FUNKSEC-] — Ransomware Victim: punjab-[.-]gov-[.-]in=======================================================[January 26, 2025](https://www.redpacketsecurity.com/2025/01/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[FUNKSEC] – Ransomware Victim: punjab[.]gov[.]in 1’)Ransomware Group: **FUNKSEC**=============================### VICTIM…


  • [SPACEBEARS] – Ransomware Victim: Metro Wire & Cable

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[SPACEBEARS-] — Ransomware Victim: Metro Wire -& Cable========================================================[January 26, 2025](https://www.redpacketsecurity.com/2025/01/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[SPACEBEARS] – Ransomware Victim: Metro Wire…


  • [KILLSEC] – Ransomware Victim: Let’s Secure Insurance

    * [Data Breach](https://www.redpacketsecurity.com/category/databreach/)* [Ransomware](https://www.redpacketsecurity.com/category/ransomware/)-[KILLSEC-] — Ransomware Victim: Let’s Secure Insurance========================================================[January 26, 2025](https://www.redpacketsecurity.com/2025/01/) ![image](https://www.redpacketsecurity.com/wp-content/uploads/2024/09/image.png ‘[KILLSEC] – Ransomware Victim: Let’s Secure Insurance…


  • UnitedHealth now says 190 million impacted by 2024 data breach

    ![UnitedHealth header image](https://www.bleepstatic.com/content/hl-images/2024/02/28/UnitedHealth_Group_UHG.jpg)UnitedHealth has revealed that 190 million Americans had their personal and healthcare data stolen in the Change Healthcare…


  • Ransomware gang uses SSH tunnels for stealthy VMware ESXi access

    ![Ransomware gang uses SSH tunnels for stealthy VMware ESXi access](https://www.bleepstatic.com/content/hl-images/2024/05/13/hacker-tunnel.jpg)Ransomware actors targeting ESXi bare metal hypervisors are leveraging SSH tunneling…