Group-IB discovered HOLLOWGRAPH, malware that uses Microsoft 365 calendars as covert command channels with events dated to 2050.
A trojanized Newtonsoft.Json fork on NuGet smuggles game-rigging malware inside a fully functional serialization library to evade detection.
A large-scale supply chain attack dubbed FakeGit uses thousands of deceptive GitHub repositories to distribute SmartLoader malware.
Cisco Talos uncovered a Russian-speaking threat actor using trojanized installers to deliver Starland RAT and memory-only implants.
A new Rust-based RAT called LabubaRAT disguises itself as NVIDIA software and supports multi-channel C2 communications.
FBI identifies Popa Android botnet infecting millions of TV boxes through NetNut residential proxy service
GigaWiper is a modular Golang backdoor that merges remote access tools with disk wiping and fake ransomware capabilities.
Researchers demonstrated that autonomous AI coding agents from Anthropic and OpenAI will execute hidden malicious binaries when asked to review…
Sign in to your account