Udados Botnet: Anatomy of a Financial Cybercrime Engine
Udados is a malware-based botnet primarily designed for credential harvesting, fraud, and distributed malicious activities. It is…
continue reading..
Kimwolf: Technical Analysis of a Large-Scale Android Botnet Targeting Consumer Devices
Executive Overview Kimwolf is a large Android-based botnet that compromised over 1.8 million devices worldwide, primarily Android…
continue reading..
CVE-2025-59374: When a Trusted ASUS Update Turned Into a Silent Backdoor
Vulnerability Name: Embedded Malicious Code in ASUS Live UpdateCVE ID: CVE-2025-59374CVSS v4.0 Score: 9.3 – CriticalCWE: CWE-506…
continue reading..
CVE-2025-12885: Stored Script Injection Risk in WordPress Document Embedding
Vulnerability Overview CVE ID: CVE-2025-12885Vulnerability Type: Stored Cross-Site Scripting (XSS)Severity: MediumCVSS v3.1 Score: 6.4Attack Complexity: LowPrivileges Required:…
continue reading..
CVE-2025-20393 | Critical Zero-Day RCE in Cisco AsyncOS Actively Exploited
Executive Summary CVE-2025-20393 is a critical, zero-day vulnerability in Cisco AsyncOS Software that affects Cisco Secure Email…
continue reading..
Microsoft 365 Outage Hits Teams, Outlook, and Copilot Users in Japan and China
A Microsoft 365 outage disrupted major productivity services including Microsoft Teams, Outlook, OneDrive, and Copilot for users…
continue reading..
A Trusted Add-on with a Hidden Agenda: The GhostPoster Case
Overview GhostPoster is a browser-based malware campaign that abused trust in Firefox extensions rather than exploiting software…
continue reading..
Qilin Ransomware: A Silent Intrusion That Ends in Total Lockdown
Executive Overview Qilin, also known internally by some actors as Agenda, is one of the most active…
continue reading..
From Infiltration to Extortion: Inside the Black Shrantac Ransomware Campaign
Executive Summary Black Shrantac is a modern, highly organized ransomware operation that appeared in the second half…
continue reading..
