Visualização normal

Hoje — 8 de Setembro de 2026Cybersecurity News
  • ✇Cybersecurity News
  • Chinese Actor Gambling Goblin Hijacks Brazilian Gov Sites Do Son
    The Gambling Goblin campaign turns Brazilian government websites into an SEO weapon. Suspected Gambling Goblin operators push illicit gambling pages. Related Posts: Outsider Phishing Kit Survives Operation Ghost Hook Takedown Phantom Deal Scam Targets Executives With Fake NDAs Microsoft Teams IT Support Impersonation Leads to Domain Takeover The post Chinese Actor Gambling Goblin Hijacks Brazilian Gov Sites appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Do Son
    Pegasus spyware infected a Serbian activist through a zero-click iMessage exploit, part of Serbia's largest spyware wave. Update iOS now. Related Posts: Node.js Malware Attacks Target Tech and Finance Sectors Python NodeStealer Adds Keylogging and Screen Capture Spyware Packagist Themes iOS Spyware Steals Crypto Wallet Seeds The post Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Node.js Malware Attacks Target Tech and Finance Sectors Do Son
    Recent Node.js malware attacks target global firms. Attackers deploy Node.js malware using trusted runtimes and smart contracts to evade detection. Related Posts: Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Python NodeStealer Adds Keylogging and Screen Capture Spyware Packagist Themes iOS Spyware Steals Crypto Wallet Seeds The post Node.js Malware Attacks Target Tech and Finance Sectors appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Python NodeStealer Adds Keylogging and Screen Capture Spyware Do Son
    Python NodeStealer now adds keylogging, clipboard, and screenshot spyware plus dual Telegram C2. See how the NodeStealer spyware upgrade works. Related Posts: Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Node.js Malware Attacks Target Tech and Finance Sectors Packagist Themes iOS Spyware Steals Crypto Wallet Seeds The post Python NodeStealer Adds Keylogging and Screen Capture Spyware appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Packagist Themes iOS Spyware Steals Crypto Wallet Seeds Do Son
    Researchers discovered malicious Packagist themes iOS spyware infecting unpatched iPhones. This spyware targets crypto wallets and steals device data. Related Posts: Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Node.js Malware Attacks Target Tech and Finance Sectors Python NodeStealer Adds Keylogging and Screen Capture Spyware The post Packagist Themes iOS Spyware Steals Crypto Wallet Seeds appeared first on Daily CyberSecurity.
     
Ontem — 7 de Setembro de 2026Cybersecurity News
  • ✇Cybersecurity News
  • PHP Web Server Rootkit Targets F5 BIG-IP Devices Do Son
    A Linux PHP web server rootkit targets BIG-IP systems. Learn how this PHP web server rootkit injects in-memory shells into Apache processes. Related Posts: Pegasus Spyware Hits Serbian Student Activist via Zero-Click iMessage Node.js Malware Attacks Target Tech and Finance Sectors Python NodeStealer Adds Keylogging and Screen Capture Spyware The post PHP Web Server Rootkit Targets F5 BIG-IP Devices appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Mirage Kitten Malware Targets Aviation and Fintech Sectors Do Son
    The suspected Mirage Kitten malware campaign targets developers in aviation and fintech with fake coding tests to deliver NodeRabbit and PollCat backdoors. Related Posts: US Offers $10M for IRGC Cyber Leader Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post Mirage Kitten Malware Targets Aviation and Fintech Sectors appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • StreamRat Banking Trojan Targets Spanish Android Users Do Son
    A StreamRat banking trojan campaign uses fake Meta TV-streaming ads to infect Android users. The StreamRat banking trojan enables full device takeover. Related Posts: PHP Web Server Rootkit Targets F5 BIG-IP Devices Silver Fox Fake Software Installers Disable Windows Defender The Gentlemen Ransomware Deploys in Under 24 Hours The post StreamRat Banking Trojan Targets Spanish Android Users appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Silver Fox Fake Software Installers Disable Windows Defender Do Son
    Silver Fox fake software installers impersonate Razer and Edge to disable Windows Defender and deploy malware. See how the campaign works. Related Posts: PHP Web Server Rootkit Targets F5 BIG-IP Devices StreamRat Banking Trojan Targets Spanish Android Users The Gentlemen Ransomware Deploys in Under 24 Hours The post Silver Fox Fake Software Installers Disable Windows Defender appeared first on Daily CyberSecurity.
     
Antes de ontemCybersecurity News
  • ✇Cybersecurity News
  • The Gentlemen Ransomware Deploys in Under 24 Hours Do Son
    The Gentlemen ransomware, run by GOLD SHERWOOD, encrypts networks in under 24 hours. See the affiliate playbook and how to defend against it. Related Posts: PHP Web Server Rootkit Targets F5 BIG-IP Devices StreamRat Banking Trojan Targets Spanish Android Users Silver Fox Fake Software Installers Disable Windows Defender The post The Gentlemen Ransomware Deploys in Under 24 Hours appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • BraZetsu Malware Framework Powers Initial Access Sales Do Son
    Group-IB uncovered the BraZetsu malware framework operations targeting financial systems. Learn how this tool powers initial access broker sales. Related Posts: US Offers $10M for IRGC Cyber Leader Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post BraZetsu Malware Framework Powers Initial Access Sales appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Malicious Browser Extensions Drain Crypto Wallets Do Son
    Socket found 19 malicious browser extensions acting as a crypto wallet drainer across Chrome and Edge, exposing up to 80,000 users in one case. Related Posts: PackClient RAT: New C2 Framework Sold on Telegram Amatera Password Stealer Abuses Service Workers and Smart Contracts Miraak Post Exploitation Framework Adopts Database C2 The post Malicious Browser Extensions Drain Crypto Wallets appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • PackClient RAT: New C2 Framework Sold on Telegram Do Son
    Proofpoint found the PackClient RAT sold on Telegram and used by Chinese-speaking TA4922 malware operators in tax-themed phishing attacks. Related Posts: Malicious Browser Extensions Drain Crypto Wallets Amatera Password Stealer Abuses Service Workers and Smart Contracts Miraak Post Exploitation Framework Adopts Database C2 The post PackClient RAT: New C2 Framework Sold on Telegram appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Amatera Password Stealer Abuses Service Workers and Smart Contracts Do Son
    A new Amatera password stealer campaign abuses WordPress and EtherHiding. Learn how this Amatera password stealer infects browsers. Related Posts: Malicious Browser Extensions Drain Crypto Wallets PackClient RAT: New C2 Framework Sold on Telegram Miraak Post Exploitation Framework Adopts Database C2 The post Amatera Password Stealer Abuses Service Workers and Smart Contracts appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Miraak Post Exploitation Framework Adopts Database C2 Do Son
    The novel Miraak post exploitation framework uses PostgreSQL databases for stealthy C2 operations. Discover how this modular malware avoids HTTP beacons. Related Posts: ToxNetV2 Botnet Integrates AI Anthropic Issues Claude Security Warnings ToxicPanda 2.0 Banking Trojan Attacks Escalate Globally The post Miraak Post Exploitation Framework Adopts Database C2 appeared first on Daily CyberSecurity.
     

Miraak Post Exploitation Framework Adopts Database C2

Por:Do Son
1 de Setembro de 2026, 09:12

The novel Miraak post exploitation framework uses PostgreSQL databases for stealthy C2 operations. Discover how this modular malware avoids HTTP beacons.

Related Posts:

The post Miraak Post Exploitation Framework Adopts Database C2 appeared first on Daily CyberSecurity.

  • ✇Cybersecurity News
  • Dark Caracal Deploys New GoCaracal Malware Framework Do Son
    Researchers detected the Dark Caracal GoCaracal malware in South America. Learn how this GoCaracal malware uses Ethereum smart contracts. Related Posts: Cambodia Malware Campaign Uses PNG Files to Deliver SparkRAT BREEZE COMET Threat Actor Attacks Brazilian Banks AnonyMousKIT Uses AI Voice Calls to Unlock Stolen iPhones The post Dark Caracal Deploys New GoCaracal Malware Framework appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • ToxNetV2 Botnet Integrates AI Do Son
    Discover how the sophisticated ToxNetV2 botnet utilizes the GLM-5.2 AI model to analyze infected systems and generate actionable malicious commands. Related Posts: Anthropic Issues Claude Security Warnings ToxicPanda 2.0 Banking Trojan Attacks Escalate Globally NPM Typosquatting Malware Targets WSL Developers The post ToxNetV2 Botnet Integrates AI appeared first on Daily CyberSecurity.
     

ToxNetV2 Botnet Integrates AI

Por:Do Son
31 de Agosto de 2026, 09:21

Discover how the sophisticated ToxNetV2 botnet utilizes the GLM-5.2 AI model to analyze infected systems and generate actionable malicious commands.

Related Posts:

The post ToxNetV2 Botnet Integrates AI appeared first on Daily CyberSecurity.

  • ✇Cybersecurity News
  • ValleyRAT Backdoor Spread via Signed Chinese Adware Do Son
    Kaspersky uncovered a ValleyRAT backdoor adware campaign using signed wallpaper apps to drop malware. Learn how to protect your systems. Related Posts: UAT-10147 Deploys SPECTRE Cross-Platform Implant Kimsuky Spear Phishing Abuses Remote Control Tools Fire Ant Threat Actor Targets Trusted Infrastructure The post ValleyRAT Backdoor Spread via Signed Chinese Adware appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Anthropic Issues Claude Security Warnings Do Son
    Anthropic is sending security warnings and deleting payment methods as info-stealing malware compromises Claude user sessions. Protect your account now. Related Posts: ToxNetV2 Botnet Integrates AI ToxicPanda 2.0 Banking Trojan Attacks Escalate Globally NPM Typosquatting Malware Targets WSL Developers The post Anthropic Issues Claude Security Warnings appeared first on Daily CyberSecurity.
     

Anthropic Issues Claude Security Warnings

Por:Do Son
31 de Agosto de 2026, 07:23

Anthropic is sending security warnings and deleting payment methods as info-stealing malware compromises Claude user sessions. Protect your account now.

Related Posts:

The post Anthropic Issues Claude Security Warnings appeared first on Daily CyberSecurity.

  • ✇Cybersecurity News
  • UAT-10147 Deploys SPECTRE Cross-Platform Implant Do Son
    Cisco Talos reveals that Chinese-speaking threat group UAT-10147 deploys the SPECTRE cross-platform implant with Linux rootkits and BYOVD capabilities. Related Posts: ValleyRAT Backdoor Spread via Signed Chinese Adware Kimsuky Spear Phishing Abuses Remote Control Tools Fire Ant Threat Actor Targets Trusted Infrastructure The post UAT-10147 Deploys SPECTRE Cross-Platform Implant appeared first on Daily CyberSecurity.
     

UAT-10147 Deploys SPECTRE Cross-Platform Implant

Por:Do Son
31 de Agosto de 2026, 05:02

Cisco Talos reveals that Chinese-speaking threat group UAT-10147 deploys the SPECTRE cross-platform implant with Linux rootkits and BYOVD capabilities.

Related Posts:

The post UAT-10147 Deploys SPECTRE Cross-Platform Implant appeared first on Daily CyberSecurity.

❌
❌