Npav Lab
-
Read moreInfiniti Stealer is a new macOS malware spreading through fake Cloudflare CAPTCHA pages, tricking users into running malicious commands and stealing sensitive data.
-
Posted: March 25, 2026Views: 28Read moreA phishing campaign uses fake resume files to infect enterprise systems with credential stealers and crypto miners, targeting corporate networks with advanced malware.
-
Read moreMazda confirmed a data breach exposing 692 employee and partner records after attackers exploited vulnerabilities in its warehouse management system.
-
Read moreFBI and CISA warn of Russian-linked phishing attacks targeting WhatsApp and Signal users to steal accounts using fake support messages and verification code scams.
-
Read moreApple warns that outdated iPhones are vulnerable to Coruna and DarkSword exploit kits. Users are urged to update iOS or enable Lockdown Mode to stay protected.
-
Read moreA fake Telegram download site is distributing malware through a multi-stage loader that executes in memory, bypassing antivirus detection and enabling persistent attacks.
-
Read moreCyber attackers are abusing safe link URL rewriting and multi-layer redirects to bypass email security filters and steal Microsoft 365 credentials through phishing campaigns.
-
Posted: March 16, 2026Views: 43Read moreGoogle’s Android 17 introduces new protections in Advanced Protection Mode that block non-accessibility apps from using the Accessibility API to prevent malware attacks.
-
Posted: March 13, 2026Views: 41Read moreStarbucks confirmed a data breach caused by a phishing attack that exposed employee personal data including SSNs, birth dates, and financial account information.
-
Read moreA critical SolarWinds Web Help Desk vulnerability (CVE-2025-26399) allows attackers to execute commands via deserialization flaws. CISA warns organizations to patch immediately.