Trojanized npm Packages Deliver AI Powered RedC2 4.0 Linux Backdoor
Cybersecurity researchers discovered 14 npm packages hiding RedC2 4.0 Linux backdoor with AI assisted C2 capabilities, enabling post exploitation activities.
Cybersecurity researchers discovered 14 npm packages hiding RedC2 4.0 Linux backdoor with AI assisted C2 capabilities, enabling post exploitation activities.
Kaspersky researchers discovered Android car head unit malware spreading through built in updaters to enable ad fraud and proxy botnet operations.
Security researchers have uncovered upgraded variants of ToxicPanda and GoldDigger Android Trojans targeting banking applications worldwide.
Cybersecurity researchers have uncovered a severe flaw in Elementor Pro that allows remote code execution. Learn how this vulnerability impacts WordPress sites.
Huntress has reported a 155x increase in password spraying attacks during 2026, with attackers exploiting Azure CLI access and gaps in MFA protection.
GitLab has released urgent security updates to fix a critical GraphQL vulnerability that could allow unauthenticated attackers to modify or delete public projects and user data on self managed installations.
Kaspersky has uncovered new communication modules in the Cavern cyber espionage framework that use DNS and Google Apps Script to evade detection while targeting organizations in Israel.
A large scale Azure data theft campaign has reportedly exposed millions of employee records from several Fortune 500 companies after attackers allegedly used compromised Azure and Entra credentials.
UAE Cyber Security Council and Dell Technologies have launched a Cybersecurity Center of Excellence in Abu Dhabi to strengthen cyber resilience, develop local talent and advance cybersecurity innovation.
Infoblox has revealed that threat actors are spending millions of dollars on expired domains to inherit trusted reputations and redirect users to scams, gambling platforms and malware infrastructure.