Npav Lab
-
Read moreHackers are abusing Android car infotainment software updates to install malware, conduct ad fraud, collect device data and create proxy networks.
-
Read moreChina-linked SilkParasite targets Central Asian governments using spear-phishing, DLL sideloading, Google Drive C2, and five newly identified malware families.
-
Read moreTwinLoot is a Python-based malware framework that abuses Microsoft 365, Azure, SharePoint, Graph API and Teams to hide command-and-control traffic.
-
Posted: August 18, 2026Views: 32Read moreA new crypto scam uses Claude Code, phone databases, phishing, and fake wallet apps to target cryptocurrency users and steal recovery phrases.
-
Read moreSecurity researchers found Atlassian Rovo vulnerabilities that could expose Jira and Confluence data through prompt injection and malicious URLs.
-
Posted: August 14, 2026Views: 62Read moreNew Boss Scam attacks hijack WhatsApp Web sessions using malicious files. Learn how organizations can protect finance teams and endpoints.
-
Read moreHackers are abusing legitimate ManageEngine UEM/RMM tools to gain remote access. Learn how enterprises can detect unauthorized UEM installations and endpoint abuse.
-
Read moreCelebrate Independence Day 2026 with NPAV and promote cybersecurity awareness, digital safety, data protection, and a safer Digital India.
-
Read moreGunra ransomware affiliates are exploiting Fortinet VPN vulnerabilities to bypass MFA, steal enterprise data, move laterally, and deploy double-extortion ransomware.
-
Read moreResearchers uncovered the Papyrus mobile ad fraud campaign, which uses hidden WebViews inside reading apps to generate fake clicks, scrolling, and ad engagement, impacting advertisers worldwide.