More

    Exploits

    Warning: Hackers have inserted credential-stealing code into some npm libraries

    ‘This is a new frontier’ of malware in open source repositories, says one expert. 

    New supply chain attack hits npm registry, compromising 40+ packages

    Pierluigi Paganini September 16, 2025 Security researchers at Socket uncovered a malicious update to @ctrl/tinycolor, a package with 2.2M weekly downloads on npm. While...

    New FileFix Phishing Variant Deploys StealC Malware via Steganography

    In the ever-evolving world of cybersecurity threats, a new variant of the FileFix phishing tactic has emerged as a sophisticated vector for delivering the...

    Fake Meta suspension warnings used in new malware campaign — how to protect your devices and your data

    (Image credit: Viacheslav Lopatin | Shutterstock) A new FileFix attack is using novel lures in order to trick users into downloading malware. As reported byBleeping...

    Google nukes 224 Android malware apps behind massive ad fraud campaign

    A massive Android ad fraud operation dubbed "SlopAds" was disrupted after 224 malicious applications on Google Play were used to generate 2.3 billion ad requests...

    Ransomware attack shuts down Uvalde school district

    Texas' Uvalde Consolidated Independent School District has been closed until Thursday following a ransomware intrusion against its servers over the weekend, which has disrupted...

    Fifteen Ransomware Gangs “Retire,” Future Unclear

    Fifteen well-known ransomware groups, including Scattered Spider, ShinyHunters and Lapsus$, have announced that they are shutting down their operations. The collective announcement was posted on Breachforums,...

    Chinese malware attacks fueled by fraudulent software lures

    Intrusions involving counterfeit versions of widely used software have been launched to target Chinese-speaking users with various malicious payloads as part of separate campaigns,...

    Maranhão Stealer infostealer spread on pirated software sites

    The Maranhão Stealer campaign uses deceptive websites to distribute malicious files like DerelictSetup.zip, targeting victims for credential theft and cryptocurrency data extraction. 

    Latest articles