Microsoft Threat Intelligence observed a human-operated intrusion campaign that abuses Microsoft Teams external collaboration to impersonate IT support, gain remote access, and deploy a Node.js-based ...
A hacking group is targeting developers with fake coding challenges that hide cross-platform malware, infecting Windows, ...
A large-scale phishing campaign used fake voicemail SVG attachments to bypass email defenses, targeting 5527 organizations ...
Nimbus Manticore uses trojanized coding challenges to deploy NodeRabbit and PollCat RATs across Windows, Linux, and macOS.
The campaign uses EtherHiding to dynamically update its command-and-control server, using the blockchain as an ...
The npm package @7nohe/openapi-react-query-codegen, which receives roughly 150,000 weekly downloads, has been compromised by ...
A new Shai-Hulud supply-chain campaign, tracked as Trinitite, has compromised the npm package ...
Learn how cybercriminals build advanced phishing pages using automated PaaS kits, AI tools, and cloud platforms to bypass ...
The attackers employed a broad, non-targeted approach, sending messages in waves and largely avoiding weekends.
This week’s ThreatsDay Bulletin tracks fake IT calls, abused remote tools, phishing kits, unsafe downloads, ransomware, ...
The Justice Department and FBI have announced court-authorized domain seizures to deny malicious cyber actors access to two ...
Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections and hunting guidance.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results