A phishing campaign named 'I Paid Twice' has been identified, targeting Booking.com hotel partners and their customers. Cybercriminals compromised hotel accounts to send phishing emails that tricked victims into…
The Iran-linked MuddyWater APT group has launched a spear-phishing campaign targeting various sectors in the Middle East, including diplomatic, maritime, financial, and telecom entities. The campaign employs icon…
A phishing campaign is utilizing LinkedIn private messages to deliver Remote Access Trojans (RATs) through a legitimate open-source penetration testing tool. Cybersecurity researchers from ReliaQuest have identified…
A malware campaign has been identified that utilizes malicious npm packages to create fake websites designed to identify and exploit potential victims. The threat actor, known as 'dino_reborn', published these packages…
The Tsundere botnet, identified by Kaspersky GReAT in mid-2025, utilizes legitimate Node.js packages and blockchain technology to distribute malware targeting Windows, Linux, and macOS users. The threat is linked to…
A phishing campaign named ClickFix has been targeting hotels and their customers, exploiting compromised accounts on Booking.com. Cybercriminals have used malware to steal customer data and launch phishing attacks,…