Fake Laravel Packages on Packagist Deliver Cross-Platform RAT Targeting Developers

A new cybersecurity threat has been discovered involving fake Laravel packages uploaded to the Packagist repository. These packages pretend to be useful development tools but secretly install malware on a developer’s system. Because Packagist is widely used by PHP developers through Composer, this attack can affect many projects. The malware works across Windows, macOS, and … Continued

APT41-Linked Silver Dragon Launches Cyber-Espionage Campaign Against Governments Using Google Drive C2

Cybersecurity researchers have recently uncovered a cyber-espionage campaign carried out by a threat group known as Silver Dragon. Security analysts believe this group has connections to the Chinese-aligned hacking collective APT41. The campaign has mainly targeted government organizations across Europe and Southeast Asia. Reports suggest that the activity has been ongoing since mid-2024 and focuses … Continued

StegaBin Campaign: 26 npm Packages Abused to Deliver Cross-Platform RAT via Pastebin C2

Cybersecurity researchers have uncovered a new supply chain attack involving 26 malicious npm packages published to the public registry. These packages were disguised as normal developer tools but secretly contained harmful code. The activity has been linked to threat actors associated with North Korea. The campaign specifically targeted developers and software environments. Researchers have named … Continued

ClawJacked Vulnerability Exposed OpenClaw to Website-Based Hijacking and Data Theft

A serious security vulnerability named “ClawJacked” has been discovered in OpenClaw, a popular self-hosted AI agent platform. Security researchers revealed that malicious websites could secretly take control of a user’s locally running OpenClaw instance. This flaw allowed attackers to hijack the AI agent and potentially steal sensitive data. The discovery has raised significant concern within … Continued

Trojanized Gaming Tools Deliver Java-Based RAT Through Browser and Chat Platforms

Cybersecurity researchers have uncovered a new malware campaign targeting users through fake gaming utilities. Attackers are distributing trojanized tools that secretly install a Java-based Remote Access Trojan (RAT). The activity was identified and analyzed by Microsoft’s security team. This campaign shows how gaming platforms are becoming a new distribution channel for malware. In this operation, … Continued

Malicious StripeApi NuGet Package Mimics Official Library and Steals API Tokens

A malicious software package pretending to be a Stripe integration library was recently discovered on the NuGet repository. The fake package was created to closely imitate Stripe’s official .NET library used for payment processing. At first glance, it looked legitimate and worked like the real tool. However, hidden inside it was code designed to steal … Continued

Law Enforcement Takes Down RAMP, A Key Hub in the Ransomware Ecosystem

In a major cybercrime crackdown, U.S. authorities have seized control of a well-known ransomware forum called RAMP, short for Russian Anonymous Marketplace. The platform was widely used by ransomware gangs to advertise services, recruit partners, and trade stolen access to networks. After the operation, both its regular website and dark web domain were replaced with … Continued

Newsletter line