Chinese Front Companies Providing Advanced Steganography Solutions for APT Operations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Advanced steganography techniques are becoming increasingly central to state-sponsored cyber operations. Recent analysis has exposed two Chinese technology companies, BIETA and CIII, that allegedly provide sophisticated steganography solutions to support advanced persistent threat campaigns. These organizations operate as front companies …

KimJongRAT Attacking Windows Users via Weaponized .hta Files to Steal Logins

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new remote access trojan dubbed KimJongRAT has surfaced, posing a severe threat to Windows users. This sophisticated malware is believed to be orchestrated by the Kimsuky group, a threat actor with alleged state backing. The campaign typically begins with …

Hackers Registered 2,000+ Fake Holiday-Themed Online Stores to Steal User Payments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

With the holiday shopping season kicking into high gear, a massive cybersecurity threat has emerged, putting online shoppers at significant risk. A coordinated campaign has been discovered, involving the registration of over 2,000 fake holiday-themed online stores. These malicious sites …

BreachLock Named a Leader in 2025 GigaOm Radar Report for Penetration Testing as a Service (PTaaS) for Third Consecutive Year

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

New York, New York, December 1st, 2025, CyberNewswire BreachLock, the global leader in Penetration Testing as a Service (PTaaS), has been named a Leader and Fast Mover in the 2025 GigaOm Radar Report for PTaaS for the third year in a row. …

TangleCrypt Windows Packer with Ransomware Payloads Evades EDR Using ABYSSWORKER Driver

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered Windows malware packer named TangleCrypt has emerged as a serious threat in ransomware attacks, specifically designed to evade endpoint detection and response (EDR) solutions. The packer was first observed during a September 2025 ransomware incident involving Qilin …

Microsoft Confirms New Outlook Bug Blocking Excel Attachments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has acknowledged a frustrating new issue affecting users of the “new Outlook” for Windows, where Excel attachments fail to open if their filenames contain non-ASCII characters. The technical glitch, tracked under the reference ID EX1189359, triggers a vague error …

Bloody Wolf Hackers Mimic as Government Agencies to Deploy NetSupport RAT via Weaponized PDF’s

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Advanced Persistent Threat group known as Bloody Wolf has intensified its cyber espionage operations across Central Asia, targeting government and private sectors. Since late June 2025, the group has orchestrated spear-phishing campaigns primarily focusing on organizations within Kyrgyzstan …

Coupang Data Breach Exposed Personal Data of 33.7 Million Customers Personal Records

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

South Korean e-commerce giant Coupang has confirmed a massive security incident affecting approximately 33.7 million customers, nearly the company’s entire user base. The breach, which exposed names, phone numbers, email addresses, shipping addresses, and order histories, has been traced back …

4.3 Million Chrome and Edge Users Hacked in 7-Year ShadyPanda Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

“ShadyPanda,” a sophisticated threat actor responsible for a seven-year campaign that has successfully infected 4.3 million Chrome and Edge users. By exploiting the inherent trust in browser marketplaces, ShadyPanda weaponized “Featured” and “Verified” extensions to deploy remote code execution (RCE) …

Hackers are Moving to “Living Off the Land” Techniques to Attack Windows Systems Bypassing EDR

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have found a more effective method to compromise Windows computers while evading detection by security software. Ivan Spiridonov observed that uploading malicious tools, hackers are now using legitimate Windows programs already installed on target systems, a tactic known as …