New Torg Grabber Stealer Moves From Telegram Exfiltration to Encrypted REST API C2

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new Malware-as-a-Service (MaaS) credential stealer named Torg Grabber has surfaced, showing remarkable development pace over just three months. Starting with simple Telegram-based data exfiltration, it matured into a fully …

Fake Screenshot Lures Used to Infect Web3 Support Staff With Multi-Stage Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat group known as APT-Q-27 has been running an active campaign against Web3 customer support teams, using fake screenshot links in live chat windows to silently install a persistent …

Silver Fox Abuses Stolen EV Certificates in AtlasCross RAT Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Chinese-nexus advanced persistent threat group Silver Fox, also tracked as Void Arachne and SwimSnake, is actively targeting Chinese-speaking users and professionals with a sophisticated AtlasCross RAT campaign. Security researcher …

Synology DiskStation Manager Vulnerability Allow Remote Attackers to Execute Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security advisory has been issued for a severe vulnerability in DiskStation Manager (DSM) that allows unauthenticated remote attackers to execute arbitrary commands. Given the widespread use of Synology …

Cisco Secure Firewall Vulnerability Allows Remote Code Execution as Root User

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has released an urgent security advisory addressing a critical vulnerability in its Secure Firewall Management Center (FMC) software. This severe flaw allows unauthenticated remote attackers to execute arbitrary code …

Microsoft Entra ID New Feature Removes MFA Limitations for Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Multifactor authentication operates as a critical defense mechanism for securing user identities against targeted cyber attacks. Microsoft reports that implementing MFA effectively reduces the risk of account compromise by more …

New Kiss Loader Malware Uses Early Bird APC Injection in Emerging Attack Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered malware loader called Kiss Loader has emerged as a serious threat, using advanced code injection techniques to quietly infiltrate Windows systems without raising alarms. First spotted in …

Fake npm Install Messages Hide RAT Malware in New Open Source Supply Chain Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new and carefully crafted software supply chain campaign is targeting developers through the npm package registry, using fake installation messages to hide malicious activity. The campaign, which security researchers …

Fake VS Code Security Alerts on GitHub Used to Push Malware in Widespread Phishing Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A large-scale phishing campaign is targeting software developers on GitHub, using fake Visual Studio Code security alerts posted in GitHub Discussions to trick users into downloading malicious software. The attacks …