Related Threat Clusters
-
Amatera Infostealer Campaign Uses Fake CAPTCHA and App-V Scripts
A new campaign is distributing the Amatera infostealing malware by employing a fake CAPTCHA method alongside a signed Microsoft Application Virtualization (App-V) script. This attack utilizes legitimate Microsoft…
2 articles · Updated January 27, 2026 -
New .NET Malware Conceals Lokibot in Image Files to Evade Detection
A new strain of .NET malware has been identified that embeds Lokibot malware within PNG and BMP files, allowing it to bypass traditional detection methods. This sophisticated technique poses risks to users who may…
3 articles · Updated November 19, 2025 -
Revival of Finger Command in ClickFix Malware Attacks
Threat actors are exploiting the decades-old 'finger' command in new ClickFix malware attacks to execute remote commands on Windows devices. The command, which was historically used to retrieve user information on Unix…
4 articles · Updated November 17, 2025 -
Warning for Android Users to Delete Infected Apps After Cyber Attack
Android users are advised to delete specific apps immediately following a cyber attack that compromised millions of devices globally. Hackers executed a sophisticated advertising fraud scheme that slowed down devices…
1 article · Updated December 21, 2025 -
New Malware Campaign Targets Manufacturing and Government Sectors
A sophisticated malware attack campaign has targeted manufacturing and government organizations in Europe and the Middle East, particularly in Italy, Finland, and Saudi Arabia. The campaign employs obfuscation…
4 articles · Updated December 22, 2025 -
Multi-Stage Cyberattack Targets Manufacturing and Governments in Multiple Countries
Cyble Research and Intelligence Labs has identified a sophisticated multi-stage cyberattack campaign affecting manufacturing and government sectors in Italy, Finland, and Saudi Arabia. The attack utilizes a shared,…
1 article · Updated January 7, 2026 -
Landfall Spyware Exploits Samsung Galaxy Zero-Day Vulnerability
Landfall, a sophisticated Android spyware, targeted Samsung Galaxy phones for nearly a year, exploiting a zero-day vulnerability (CVE-2025-21042) in Samsung's image-processing library. The campaign, uncovered by Palo…
47 articles · Updated November 10, 2025 -
RedKitten Campaign Targets Iranian Protest Monitors with AI Malware
The RedKitten campaign has emerged, utilizing AI-driven malware to target individuals and organizations monitoring human rights violations during the Dey 1404 protests in Iran. Discovered by HarfangLab, the campaign…
4 articles · Updated February 2, 2026 -
Cyber Attack Targets Android Users with Malicious Apps
Cybercriminals are targeting Android devices to trick users into providing personal and financial information. Users are advised to delete infected apps immediately, as the attack involves advanced advertising fraud…
5 articles · Updated November 26, 2025 -
ClickFix Malware Campaign Evolves with Advanced Deception Techniques
The ClickFix malware has evolved to utilize videos, timers, and OS-specific tricks to deceive users into self-infection. This campaign leverages social engineering tactics to manipulate victims into executing malicious…
18 articles · Updated November 24, 2025
Recent Intelligence Reports
- RedKitten Campaign Uses AI Malware to Target Iranian Protests — Technadu · February 2, 2026
- New AI — Infosecurity-Magazine · January 30, 2026
- Amatera infostealer campaign leverages fake CAPTCHA and App-V scripts — Scworld · January 27, 2026
- New ClickFix attacks abuse Windows App — Bleepingcomputer · January 26, 2026
- Sophisticated multi-stage attack targets manufacturing, governments — Scworld · January 7, 2026
- Sophisticated malware campaign leverages shared loader — Scworld · December 22, 2025
- Android users issued warning to delete apps immediately after cyber attack infestation — Express · December 21, 2025
- New GhostPoster Attack Leverages PNG Icon to Infect 50,000 Firefox Users — Cybersecuritynews · December 17, 2025