Exploits

Lazarus APT group deployed Medusa Ransomware against Middle East target

Pierluigi Paganini February 25, 2026 The North Korea-linked Lazarus APT Group, also known as Diamond Sleet and Pompilus, has been spotted deploying Medusa ransomware...

OpenClaw Malware Tricks Users Into AMOS Infection via Password Entry

A disturbing shift in the way the Atomic Stealer (AMOS), designed to steal sensitive data from Apple devices, was spread via cracked macOS. 

Zero-Day Exploits Theft Case Exposes Cyber Exploit Market

The United States has intensified its response to zero-day exploits theft, announcing new sanctions against a Russia-linked cyber tools network accused of stealing sensitive...

Fake Huorong Site Deploys ValleyRAT Backdoor In Targeted Malware Attack

A new cyberattack campaign is using a convincing imitation of the popular Huorong Security antivirus site to deploy ValleyRAT, a powerful 

US Sanctions Exploit Brokers Behind Theft of Government Cyber Tools

The US Department of the Treasury has taken decisive action against a network of exploit brokers responsible for trafficking stolen government cyber tools. 

North Korean hackers deploy new malware to extort US health care sector

Researchers say Lazarus Group used commercially available ransomware in attacks on targets in Middle East and US North Korean cybercriminals have adopted commercially available malware...

‘Arkanix Stealer’ Malware Disappears Shortly After Debut

Written in C++ and Python, the malware exfiltrates system information, browser data, and steals files. 

North Korean Lazarus Group Expands Ransomware Activity With Medusa

A new wave of cyber-attacks using Medusa ransomware  has been linked to North Korean state-backed hackers, who continue to target the US healthcare sector despite...

SANDWORM_MODE: Shai-Hulud with an AI twist

A new npm supply chain attack injects a malicious MCP server and targets LLM API keys. 

Latest articles