Cyber Security

Cyber Security
Cyber Security

New EDR-Freeze Tool That Puts EDRs and Antivirus Into A Coma State

new-edr-freeze-tool-that-puts-edrs-and-antivirus-into-a-coma-state

A new proof-of-concept tool named EDR-Freeze has been developed, capable of placing Endpoint Detection and Response (EDR) and antivirus solutions into a suspended “coma” state. According to Zero Salarium, the technique leverages a built-in Windows function, offering a stealthier alternative to the increasingly popular Bring Your Own Vulnerable Driver (BYOVD) attacks used by threat actors […]

Heathrow and Other European Airports Hit by Cyberattack, Several Flights Delayed

heathrow-and-other-european-airports-hit-by-cyberattack,-several-flights-delayed

A major cyberattack on a popular aviation software provider has caused significant disruptions at key European airports, including London’s Heathrow, Brussels, and Berlin, resulting in hundreds of flight delays and cancellations on Saturday. The attack disabled electronic check-in and baggage drop systems, forcing airport staff to revert to manual processing and leaving thousands of passengers […]

First-ever AI-powered MalTerminal Malware Uses OpenAI GPT-4 to Generate Ransomware Code

first-ever-ai-powered-malterminal-malware-uses-openai-gpt-4-to-generate-ransomware-code

AI-powered malware, known as ‘MalTerminal’, uses OpenAI’s GPT-4 model to dynamically generate malicious code, including ransomware and reverse shells, marking a significant shift in how threats are developed and deployed. This discovery follows the recent analysis of PromptLock, another AI-driven malware, indicating a clear trend toward adversaries weaponizing large language models (LLMs). This discovery was […]

Threat Actors Selling New Undetectable RAT as ScreenConnect FUD Alternative

threat-actors-selling-new-undetectable-rat-as-screenconnect-fud-alternative

A threat actor has been observed advertising a new Remote Access Trojan (RAT) on underground forums, marketing it as a fully undetectable (FUD) alternative to the legitimate remote access tool, ScreenConnect. The malware is being sold with a suite of advanced features designed to bypass modern security defenses, signaling a growing trend in sophisticated, ready-to-use […]

Phishing Attacks Using AI-Powered Platforms to Misleads Users and Evades Security Tools

phishing-attacks-using-ai-powered-platforms-to-misleads-users-and-evades-security-tools

Phishing campaigns have long relied on social engineering to dupe unsuspecting users, but recent developments have elevated these attacks to a new level of sophistication. Attackers now harness advanced content-generation platforms to craft highly personalized emails and webpages, blending genuine corporate branding with contextually relevant messages. These platforms analyze public social media profiles, corporate press […]

New Phishing Attack Targets Facebook Users to Steal Login Credentials

new-phishing-attack-targets-facebook-users-to-steal-login-credentials

A sophisticated phishing campaign has recently emerged, targeting Facebook users with carefully crafted emails designed to harvest login credentials. Attackers leverage the platform’s own external URL warning system to cloak malicious links, presenting URLs that appear legitimate while redirecting victims to counterfeit Facebook login pages. The initial lure arrives as an urgent security notification, warning […]

Russian Airline Suffered Cyberattack Website and Other Systems Affected

russian-airline-suffered-cyberattack-website-and-other-systems-affected

Krasnoyarsk Regional Airlines (KrasAvia) confirmed a sophisticated cyberattack that has rendered its primary online services inoperable.  The breach targeted the airline’s web portal and associated back-end systems, including the Passenger Service System (PSS) and flight planning applications.  As a result, passengers are currently unable to complete e-ticket purchases or check in online, prompting KrasAvia to […]

UK Arrested 2 Scattered Spider Hackers Linked to London Transport System Breach

uk-arrested-2-scattered-spider-hackers-linked-to-london-transport-system-breach

UK law enforcement has arrested two individuals linked to the notorious Scattered Spider cybercriminal group, including 19-year-old Thalha Jubair from London, who faces charges in connection with over 120 network intrusions that resulted in more than $115 million in ransom payments.  The arrests represent a significant breakthrough in dismantling one of the world’s most prolific […]

Raven Stealer Attacking Google Chrome Users to Steal Sensitive Data

raven-stealer-attacking-google-chrome-users-to-steal-sensitive-data

Raven Stealer has emerged as a potent information‐stealing threat targeting users of Chromium‐based browsers, most notably Google Chrome. First observed in mid-2025, this lightweight malware distinguishes itself through a modular architecture and stealthy design, allowing it to harvest sensitive information without alerting victims. Delivered predominantly via cracked software bundles and underground forums, Raven Stealer capitalizes […]

Jenkins Patches Multiple Vulnerabilities that Allow Attackers to Cause a Denial of Service

jenkins-patches-multiple-vulnerabilities-that-allow-attackers-to-cause-a-denial-of-service

Jenkins has released critical updates addressing four security flaws that unauthenticated and low-privileged attackers could exploit to disrupt service or glean sensitive configuration details.  Administrators running Jenkins weekly releases up to 2.527 or the Long-Term Support (LTS) stream up to 2.516.2 must upgrade to mitigate these risks. HTTP/2 Denial of Service (CVE-2025-5115) A high-severity issue […]