North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

A recent discovery has shed light on an insidious threat targeting web developers, with North Korea-linked actors exploiting popular JavaScript libraries to steal sensitive information. The malicious activity involves manipulating npm packages, which are used by millions of developers worldwide, to mimic legitimate Rollup polyfills and siphon off vital secrets. The attackers have been using … Read more

New Avalon Malware Framework Packs CrownX Ransomware Capabilities

A new, highly sophisticated malware framework called Avalon has been discovered, incorporating advanced features from the notorious CrownX ransomware. This dual-capable threat poses significant risks for organizations worldwide, particularly those with weak security protocols or outdated software. Developed by a group of experienced hackers, Avalon leverages AI-powered tools to evade detection and identify vulnerabilities in … Read more

New “Bad Epoll” Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android

A newly discovered flaw in Linux kernel code, dubbed “Bad Epoll,” allows unprivileged users to gain root privileges on vulnerable systems. This bug affects multiple flavors of Linux, including Android, and has significant implications for system security. Bad Epoll’s discovery serves as a stark reminder that even the most robust operating systems can be compromised … Read more

In Other News: Canadian Hacker Jailed, Open Source Zero-Days, Two Sentenced for ATM Jackpotting

A String of Cybersecurity Incidents Rocks the Global Community In a worrying trend that highlights the ongoing evolution of cyber threats, a series of high-profile incidents has come to light in recent weeks. From hacktivists being brought to justice to major corporations falling victim to sophisticated attacks, it’s clear that no organization is immune to … Read more

Chinese LLMs Broaden the Gap Between Attackers & Defenders

Chinese AI Models Blur the Line Between Attackers and Defenders In a worrying development for cybersecurity defenders, two new language models from Chinese firms have been released in recent weeks, showcasing capabilities that are outpacing those of their US counterparts. The release of these models has sparked concerns among experts, who warn that they could … Read more

ARToken PhaaS exposes EvilTokens’ Microsoft 365 phishing toolkit

A sophisticated phishing platform dubbed “ARToken” has been uncovered by Cisco Talos researchers, revealing a vast toolkit designed to compromise Microsoft 365 users. The platform appears to be an affiliate of the notorious EvilTokens phishing platform, which was first exposed earlier this year. The discovery was made while investigating phishing infrastructure used in an incident … Read more

Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer

A sophisticated malware threat, dubbed Armored Likho, has been uncovered targeting government agencies and power sector organizations worldwide. This cyber espionage campaign leverages the BusySnake stealer malware to infiltrate and exfiltrate sensitive data from high-profile targets. At its core, Armored Likho is a highly customized and heavily modified version of BusySnake, a notorious information-stealing malware … Read more

North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

A sophisticated cyberattack campaign has been uncovered, leveraging popular JavaScript library npm packages to steal sensitive information from software developers’ machines. The malicious activity is linked to North Korean hackers, who have been using a clever ruse to infiltrate development environments worldwide. The attackers exploited vulnerabilities in Rollup polyfills, a collection of libraries that simplify … Read more

Someone infected a spyware probe overseer with spyware

A Member of European Parliament’s Spyware Oversight Committee Infected with Spyware In a shocking turn of events, it has been revealed that a member of the European Parliament’s Permanent Special Committee on Foreign Interference in Democratic Processes (PEGA) was infected with Pegasus spyware. Stelios Kouloglou, a Greek journalist and former member of the European Parliament, … Read more

In Other News: Canadian Hacker Jailed, Open Source Zero-Days, Two Sentenced for ATM Jackpotting

A Dubious Trio of Cybersecurity Incidents: Jail Time for a Canadian Hacker, KDDI’s Massive Data Breach, and More Aubrey Cottle, a 39-year-old Canadian hacker linked to Anonymous, has been sentenced to 18 months in prison for his role in the Texas Republican Party’s website cyberattack in September 2021. The attack resulted in data being exfiltrated … Read more