
Month: May 2025
-
TheWizards APT group uses SLAAC spoofing to perform adversaryinthemiddle attacks
TheWizards, a China-aligned APT group, employs Spellbinder, a lateral movement tool for adversary-in-the-middle attacks through IPv6 SLAAC spoofing. This technique…
-
HANNIBAL Stealer: A Rebranded Threat Born from Sharp and TX Lineage
The Hannibal Stealer is a sophisticated information stealer targeting Chromium and Gecko-based browsers, developed in C# and operating on the…
-
HANNIBAL Stealer: A Rebranded Threat Born from Sharp and TX Lineage
The Hannibal Stealer is a sophisticated information stealer targeting Chromium and Gecko-based browsers, developed in C# and operating on the…
-
Chasing Eddies: New Rustbased InfoStealer used in CAPTCHA campaigns
A novel Rust-based infostealer called EDDIESTEALER has been discovered, distributed through fake CAPTCHA campaigns. The malware uses deceptive verification pages…
-
Chasing Eddies: New Rustbased InfoStealer used in CAPTCHA campaigns
A novel Rust-based infostealer called EDDIESTEALER has been discovered, distributed through fake CAPTCHA campaigns. The malware uses deceptive verification pages…
-
Cybercriminals camouflaging threats as AI tool installers
Cisco Talos has uncovered new threats disguised as legitimate AI tool installers, including CyberLock ransomware, Lucky_Gh0$t ransomware, and a newly-discovered…
-
Mark Your Calendar: APT41 Innovative Tactics
In late October 2024, a government website was discovered hosting malware targeting multiple government entities. The malware, dubbed TOUGHPROGRESS, utilized…
-
Mark Your Calendar: APT41 Innovative Tactics
In late October 2024, a government website was discovered hosting malware targeting multiple government entities. The malware, dubbed TOUGHPROGRESS, utilized…
-
Katz Stealer Threat Analysis
Katz Stealer is a sophisticated credential-stealing malware-as-a-service that targets multiple browsers, cryptocurrency wallets, and communication platforms. It employs advanced evasion…
-
Katz Stealer Threat Analysis
Katz Stealer is a sophisticated credential-stealing malware-as-a-service that targets multiple browsers, cryptocurrency wallets, and communication platforms. It employs advanced evasion…

