New Banking Malware DoubleTrouble Attacking Users Via Phishing Sites To Steal Banking Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new banking trojan dubbed DoubleTrouble has emerged as a significant threat to mobile users across Europe, employing advanced evasion techniques and expanding its attack surface through novel distribution channels. The malware initially spread through phishing websites impersonating well-known …

Chinese Silk Typhoon Hackers Filed 10+ Patents for Highly Intrusive Hacking Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese state-sponsored hackers associated with the notorious Silk Typhoon group have filed over ten patents for sophisticated cyber espionage tools, revealing the unprecedented scope of their offensive capabilities. These patent applications, registered by companies linked to China’s Ministry of State …

NOVABLIGHT as Educational Tool Attacking Users to Steal Login Credentials and Compromise Wallets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new threat has emerged in the cybercriminal landscape, masquerading as an educational tool while orchestrating large-scale credential theft and wallet compromise operations. NOVABLIGHT, a NodeJS-based Malware-as-a-Service (MaaS) information stealer, represents a concerning evolution in cybercrime accessibility, allowing virtually …

Ransomware Groups Using TrickBot Malware to Exfiltrate US$724 Million in Cryptocurrency

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape continues to evolve as ransomware groups adopt increasingly sophisticated tactics to maximize their financial gains. The TrickBot malware family has emerged as a central component in a massive cryptocurrency extortion scheme, with ransomware-as-a-service (RaaS) groups leveraging this …

North Korean APT Hackers Poison CI/CD Pipelines To Exfiltrate Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated espionage campaign orchestrated by the North Korea-backed Lazarus Group has successfully infiltrated open source software ecosystems on an unprecedented scale, transforming trusted developer tools into weapons of cyber espionage. The campaign represents a strategic evolution in state-sponsored cyber …

Hackers Delivering Cobalt Strike Beacon Leveraging GitHub and Social Media

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyberattack campaign targeting the Russian IT industry has emerged, demonstrating how threat actors are increasingly leveraging legitimate online platforms to distribute the notorious Cobalt Strike Beacon malware. The campaign, which peaked during November and December 2024 and continued …

CISA Open-sources Malware and Forensic Analysis Tool Thorium to Public Availability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with Sandia National Laboratories, today announced the public release of Thorium, a highly scalable and distributed platform designed for automated file analysis and result aggregation. The new tool aims to significantly …

5 Best IT Infrastructure Modernisation Services In 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In 2025, modernizing outdated IT infrastructure is key for organizations aiming to stay competitive, secure, and scalable.  Finding a reliable partner is not easy, so for this guide, we’ve prepared the list of the 5 best IT infrastructure modernisation services …

17K+ SharePoint Servers Exposed to Internet – 840 Servers Vulnerable to 0-Day Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A massive exposure of Microsoft SharePoint servers to internet-based attacks has been identified, with over 17,000 servers exposed and 840 specifically vulnerable to the critical zero-day vulnerability CVE-2025-53770, according to new findings from Shadowserver Foundation. The vulnerability, dubbed “ToolShell” by …

Researchers Detailed North Korean Threat Actors Technical Strategies to Uncover Illicit Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korean threat actors have evolved their cybercriminal operations into a sophisticated digital deception campaign that has successfully siphoned at least $88 million USD from organizations worldwide. These operatives, masquerading as legitimate freelance developers, IT staff, and contractors, have exploited …