ChainScript RAT Uses Polygon Smart Contracts For Flexible Command Infrastructure
Security researchers identify ChainScript RAT delivered through ClickFix lures, using Polygon smart contracts to rotate command and control infrastructure.
Security researchers identify ChainScript RAT delivered through ClickFix lures, using Polygon smart contracts to rotate command and control infrastructure.
A large scale malware campaign has compromised 10,000 GitHub repositories, using cloned projects and Trojanized ZIP files to distribute malicious payloads while evading traditional detection mechanisms.
Researchers have uncovered a supply chain attack targeting the Mastra npm ecosystem, where more than 140 packages were compromised through a hijacked contributor account and a malicious dependency designed to steal cryptocurrency wallet data and sensitive credentials.
Cybersecurity researchers have uncovered a coordinated campaign involving malicious JetBrains Marketplace plugins and Chrome extensions designed to steal AI provider API keys and capture private conversations from popular AI chat platforms.
Researchers uncover a phishing campaign by North Korea linked ScarCruft hackers using fake Microsoft security alerts to deploy NarwhalRAT malware through malicious ZIP and LNK files.
Trusted JavaScript files linked to PushEngage, OptinMonster, and TrustPulse were tampered with in a supply chain attack, potentially exposing over 1.2 million WordPress sites to hidden backdoors.
Cybersecurity researchers have uncovered a spear phishing campaign linked to SideCopy targeting Afghanistan’s Ministry of Finance using Xeno RAT to compromise government systems and gather sensitive data.
A newly identified Russia linked cyber group, GREYVIBE, has been linked to persistent cyberattacks against Ukraine using AI assisted malware, phishing campaigns, and spyware targeting military, government, and civilian organizations.
Microsoft warns of a cryptojacking campaign using AI chatbot recommendations to redirect users to malware sites impersonating trusted software utilities.
Cybersecurity researchers warn that threat actors are exploiting a critical FortiClient EMS vulnerability to distribute credential stealing malware across managed endpoints using malicious PowerShell scripts.