Malware Alerts
-
Read moreTwinLoot is a Python-based malware framework that abuses Microsoft 365, Azure, SharePoint, Graph API and Teams to hide command-and-control traffic.
-
Posted: August 14, 2026Views: 59Read moreNew Boss Scam attacks hijack WhatsApp Web sessions using malicious files. Learn how organizations can protect finance teams and endpoints.
-
Read moreHackers are hijacking hotel Wi-Fi networks to deliver fake browser updates that install CornFlake malware, stealing passwords, browser sessions, and Microsoft 365 tokens.
-
Posted: August 03, 2026Categories: Malware Alerts, Cyber Attack, Data Breach, Email And Password, Financial fraud, Fraud Protector, Mobile FraudsViews: 31Read moreMacSync malware targets macOS users through fake Claude installation guides, stealing passwords, browser sessions, cloud credentials, and cryptocurrency wallet data.
-
Posted: July 31, 2026Views: 43Read moreAI-generated phishing attacks can steal browser sessions and bypass MFA without malware. Learn how AiTM attacks target session tokens and how businesses can improve security.
-
Read moreResearchers have discovered GoSerpent malware targeting Southeast Asian government and diplomatic organizations for long-term cyber espionage and data theft.
-
Read moreA critical vulnerability in Motorola MR2600 routers allows attackers to bypass authentication, install malicious firmware, and gain persistent remote code execution.
-
Read moreResearchers have uncovered HalluSquatting, a new attack that exploits AI coding assistants to install malware by abusing hallucinated repositories and resources.
-
Posted: July 08, 2026Categories: Bank Phishing, Malware Alerts, Android Security, Banking Trojan, Financial fraud, Fraud Protector, Mobile FraudsViews: 250Read moreRedWing, a new Android Malware-as-a-Service (MaaS), is being rented on Telegram to steal banking credentials, OTPs, and control infected devices.
-
Read moreA supply chain attack called Mini Shai-Hulud compromised multiple npm packages in the @antv ecosystem, injecting credential-stealing malware. Developers using affected packages risk stolen tokens, data exfiltration, and persistent malware infections.