Microsoft has warned that attackers are varying their post-exploitation techniques while relying on the same ClickFix lure, ...
ACR Stealer is targeting enterprises through ClickFix lures, PowerShell scripts, blockchain services, and malicious image ...
UA, has warned that Russian hackers are using fake CAPTCHA checks to trick people into compromising their own PCs.
UAC-0145 uses fake CAPTCHA checks on compromised sites to push Windows malware, while COWARDDUCK backdoors Android devices ...
Microsoft has observed a surge in attacks using the ACR Stealer malware to steal browser-stored passwords, authentication ...
From late April 2026 to mid-June 2026, Microsoft Defender Experts observed increased ACR Stealer activity across customer ...
A newly documented ransomware family called Spirals moved from initial access to data theft and network wide encryption in less than 24 hours. The incident is a wake up call for enterprise defenders ...
LabubaRAT poses as NVIDIA software, profiles security tools, and uses HTTPS, WebView2, or DNS tunneling to maintain remote ...
The attack vector is available for rent at scale, and evades AV and EDR, leaving YARA analysis as the best detection option.
A newly identified destructive Windows backdoor combines ransomware-like encryption with multiple data-wiping features, ...
The GigaWiper backdoor combines several malware families and can sabotage systems using a wiper, encryption, and wiping ...
The modular Golang backdoor combines remote administration, multiple disk-wiping logics, and a Crucio-derived ransomware ...