CVE-2025-68614 – XSS in the Heart of Monitoring
CVE-2025-68614 is a stored cross-site scripting (XSS) vulnerability affecting LibreNMS, an open-source network monitoring platform widely used…
continue reading..
Part B: Hunting Frogblight: 25+ Detection Rules to Stop Turkish Android Banking Malware
Frogblight Malware Detection Rules YARA Rules Rule 1: Frogblight Core Detection yara Rule 2: Frogblight SMS Interception…
continue reading..
Part A: Frogblight Uncovered: Inside the Turkish Android Banking Trojan Targeting Court and Aid Apps
Overview: What Is Frogblight? Frogblight is a recently identified Android malware campaign that primarily targets mobile users…
continue reading..
Payroll Pirates: How Help Desk Scams Are Hijacking Paychecks
Payroll Pirate attacks are a form of scalable social engineering aimed at corporate HR and IT help…
continue reading..
Loader to Stealer: Tracking Amadey’s GitLab-Based StealC Campaign
This article documents a malware campaign in which the Amadey loader is used to deploy the StealC…
continue reading..
RansomHouse: When Data Theft Is the Ransom
RansomHouse is a cyber-extortion group active since 2021. Unlike traditional ransomware gangs that rely on encrypting files,…
continue reading..
Arcane Werewolf and the Stealth Infiltration of Russian Manufacturing
Arcane Werewolf, sometimes discussed alongside the “Mythic Likho” campaign name, is a threat cluster reported by security…
continue reading..
Goffee Cyberespionage Campaign: Technical Analysis of a Targeted Operation Against Russian Military and Defense Organizations
The Goffee cyberespionage group has conducted a targeted espionage campaign against Russian military personnel and defense-industry organizations.…
continue reading..
M365 Device Code Phishing : When MFA Works Against You
UNK_AcademicFlare is a Russia-linked threat actor (the “UNK” prefix usually means unattributed / newly tracked) observed abusing…
continue reading..
