Category: Threat Intel Reports


  • LastPass Warns of Fake Repositories Infecting macOS with Atomic Infostealer

    ![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiTi6Dhy7nzXe67ma-c9btG81oYxzpSkP8uMuw_TPUNRLO2uSbZ4ML4n363q5U8Gi3zsxQ2LQSDrMSnwipWYtDsd02K3785fguCkDPLfN8JFw1FXtsXe-MoCwyRbbcYm7RLotDe_r2tUrt4NKF35cxs7VIFdI2s4rJRAvDsD6Ws6VuFqztH2-Ywm1Avw-cg/s728-rw-e365/1000021404.jpg)LastPass is warning of an ongoing, widespread information stealer campaign targeting Apple macOS users through fake GitHub repositories that distribute…


  • Researchers Uncover GPT-4-Powered MalTerminal Malware Creating Ransomware, Reverse Shell

    ![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhYfi5Bp9cOMPmi3Gk7C5lclsTXBJR-A4RnIMXwk49g5eDdG0k_D3Ah5wOoeVrw-5rJoXMHM74-ytsLunc8CzSgOFoiQYMXr7kBla8vDNfxlgBSD66wLzwYGZrKUk9lBS_VTdWcD-iBIO8av_qTaoObW-D6dnneWQiJSbCNgmWAceLrZjtFQvkhxlHM6kRp/s728-rw-e365/hacker-ai-malware.jpg)Cybersecurity researchers have discovered what they say is the earliest example known to date of a malware with that bakes…


  • ShadowLeak Zero-Click Flaw Leaks Gmail Data via OpenAI ChatGPT Deep Research Agent

    ![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi0kpQMGrpKyeMOiinPEK1D2WM2cc-p9D2s5VOeFbI-sXbPWHBpdMEHN06sBgPdeS8nVegdEVvqUoKSQFfmRIThFnc3scBk6U8iTBGWf-V2iHq0hWjgnGbJnEj8wPOhQVezgn_pdwepnFc0nBv54rY3szY8twvwruz2Y7hvdhyphenhyphenSSFi9PqKnhTNiwYrnZ_9E/s728-rw-e365/chatgpt-email.jpg)Cybersecurity researchers have disclosed a zero-click flaw in OpenAI ChatGPT’s Deep Research agent that could allow an attacker to leak…


  • Fortra Fixes 10.0 GoAnywhere MFT Vulnerability. Patch Now!

    ![GoAnywhere MFT vulnerability CVE-2025-10035](https://thecyberexpress.com/wp-content/uploads/pexels-karymefranca-8159115.jpg ‘Fortra Fixes 10.0 GoAnywhere MFT Vulnerability. Patch Now! 2’)Fortra has fixed a maximum-severity vulnerability in its…


  • Understanding Spamhaus and Its Role in Email Security

    * [Security Education](https://blog.sucuri.net/category/security-education)* [Website Security](https://blog.sucuri.net/category/website-security)Understanding Spamhaus and Its Role in Email Security=====================================================![](https://secure.gravatar.com/avatar/28c9f086a2ef4d4beae4637238919c78849f979bae5f3b369c9083b1ed0bffc7?s=60&d=mm&r=g) [Kyle Knight](https://blog.sucuri.net/author/klknight)* September 19, 2025 ![Understanding Spamhaus and…


  • Threat Actors Selling New Undetectable RAT as ‘ScreenConnect FUD Alternative’

    A threat actor has been observed advertising a new Remote Access Trojan (RAT) on underground forums, marketing it as a…


  • Teen Suspect Surrenders in 2023 Las Vegas Casino Cyberattack Case

    Corey Levitan reports: A teenage boy suspected of involvement in the 2023 cyberattacks that disrupted the two largest Las Vegas…


  • Future of CVE Program in limbo as CISA, board members debate path forward

    ![cve](https://cms.therecord.media/uploads/format_webp/large_cve_6d333a7b01.jpg)Image: Unsplash/Photomosh [Jonathan Greig](/author/jonathan-greig)September 19th, 2025 Future of CVE Program in limbo as CISA, board members debate path forward=========================================================================The future…


  • DOJ: Scattered Spider took $115 million in ransoms, breached a US court system

    ![Scattered Spider illustration](https://cms.therecord.media/uploads/format_webp/large_spiders_34f0a0fb73.jpg)Image: Hans Isacson via Unsplash / Photomosh [Jonathan Greig](/author/jonathan-greig)September 19th, 2025 DOJ: Scattered Spider took $115 million in…


  • AsyncRAT Campaigns Uncovered: How Attackers Abuse ScreenConnect and Open Directories

    This intelligence report details a sophisticated attack campaign leveraging trojanized ConnectWise ScreenConnect installers to deliver AsyncRAT payloads. Attackers use open…