North Korea's WaterPlum group, commonly referred to as Contagious Interview, has infected at least 30,000 devices in more than 100 countries and taken funds or credentials from over 7,000 cryptocurre�...
A new mobile spyware operation known as ZeroDayRAT has been documented targeting both Android and iOS devices. The cross-platform tool provides attackers with persistent access to personal communica�...
The US Cybersecurity and Infrastructure Security Agency (CISA) has published an initial list of hardware and software product categories that support or are expected to support post-quantum cryptogra�...
A ransomware operation known as DeadLock has been observed abusing Polygon blockchain smart contracts to manage and rotate proxy server addresses. DeadLock first appeared in July 2025 and has mainta�...
A botnet known as GoBruteforcer has been actively targeting Linux servers exposed to the internet, using large-scale brute-force attacks against common services such as FTP, MySQL, PostgreSQL and php�...
A former cryptocurrency hacker convicted over the 2016 Bitfinex exchange breach has been released from prison earlier than expected, according to public statements and federal records. Ilya Lichtens�...
Federal regulators have filed charges against several purported crypto asset trading platforms and investment clubs accused of defrauding US retail investors of more than $14m through an elaborate in�...
A newly observed variant of the BeaverTail malware has been tied to hackers associated with North Korea. The findings come from Darktrace’s latest The State of Cybersecurity report, which links Be...
A new phishing campaign delivering the Phantom information-stealing malware through a multi-stage attachment chain has been identified by cybersecurity researchers. The activity, observed by Seqrite�...
A new pair of malicious Visual Studio Code extensions capable of harvesting screenshots, browser sessions and stored credentials has been discovered by cybersecurity researchers. The extensions, Bit�...