Matanbuchus 3.0, a C++-based downloader offered as Malware-as-a-Service since 2020, was identified in July 2025. This version introduces Protobuf-based serialization, ChaCha20 encryption, and enhanced anti-analysis…
A phishing campaign named 'I Paid Twice' has been identified, targeting Booking.com hotel partners and their customers. Cybercriminals compromised hotel accounts to send phishing emails that tricked victims into…
The Shanya crypter, also known as VX Crypt, has been identified as a new packer-as-a-service gaining popularity among ransomware groups. First observed in late 2024, it is designed to evade security detections and…
A phishing campaign is utilizing LinkedIn private messages to deliver Remote Access Trojans (RATs) through a legitimate open-source penetration testing tool. Cybersecurity researchers from ReliaQuest have identified…
Recent analysis revealed vulnerabilities in cliconfg.dll and cliconfg.exe, which are part of older programming frameworks. These exploits leverage sideloading techniques to execute potentially harmful code. Users of…
A phishing campaign named ClickFix has been targeting hotels and their customers, exploiting compromised accounts on Booking.com. Cybercriminals have used malware to steal customer data and launch phishing attacks,…