Daily Cybersecurity Roundup

From fake voicemails to weaponized Office files, threat actors are getting creative. China-linked Mustang Panda (aka Bronze President or Earth Preta) is targeting diplomatic and geopolitical entities with tailored lures that cul ... Read More
Security controls weren’t bypassed; they were sidestepped. Silver Fox APT is distributing ValleyRAT via a trojanized LINE installer, stealing credentials while evading detection using PoolParty-style code injection and Microsoft ... Read More
From control rooms to cloud inboxes, attackers are switching lanes fast. Russian-aligned hacktivists are targeting exposed HMIs in water utilities, with honeypot data revealing a shift in OT attacks toward easy-access disruption ... Read More
What begins as a harmless Android app quickly turns hostile as the Arsink RAT quietly embeds itself into devices, siphoning off SMS messages, contacts, call logs, and media files while granting attackers full remote control. Shi ... Read More
In a digital bazaar where everything is for sale, threat actors are trading far more than goods - Operation Bizarre Bazaar, led by the hacker alias Hecker, hijacked roughly 35,000 AI system sessions to siphon compute resources. ... Read More
Cybercriminals continue to exploit trust in everyday digital services to quietly monetize access and data, blurring the line between legitimate workflows and malicious activity. In one campaign, attackers are sending spoofed Mic ... Read More
Phishing has officially entered its glow-up era, blending AI, deepfakes, and scale into a single playbook. A Vietnam-based cybercrime actor is now using AI-assisted phishing tooling to deliver PureRAT and additional payloads thr ... Read More
Attackers don’t always break in - they log in, blend in, and let trusted tools do the dirty work. From China-linked APTs leveraging the PeckBirdy JScript-based C2 framework to deliver malicious payloads, to phishing campaigns ab ... Read More
The global development community is facing a surge in high-sophistication threats as attackers weaponize AI and trusted platforms. The newly uncovered MaliciousCorgi campaign has compromised nearly 1.5 million developers through ... Read More
From enterprise networks to everyday payment portals, threat actors continue to blur the lines between sophistication and scale. A newly observed Osiris ransomware variant has been actively deployed across Southeast Asia, showin ... Read More

Get the Daily Cybersecurity Roundup delivered to your email!

Recent Blogs
Daily Threat Briefing