Author: Cybernoz

New Clearfake Variant Leverages Fake reCAPTCHA To Trick Users Deliver Malicious PowerShell Code
18
Mar
2025

New Clearfake Variant Leverages Fake reCAPTCHA To Trick Users Deliver Malicious PowerShell Code

ClearFake, a malicious JavaScript framework first identified in July 2023, has evolved with sophisticated new social engineering tactics. Originally designed…

Fake Coinbase Migration Messages Target Users to Steal Wallet Credentials
18
Mar
2025

Fake Coinbase Migration Messages Target Users to Steal Wallet Credentials

A sophisticated phishing campaign is currently targeting cryptocurrency investors with fraudulent emails claiming to be from Coinbase. The scam attempts…

Bybit Hack - Sophisticated Multi-Stage Attack Details Revealed
18
Mar
2025

Bybit Hack – Sophisticated Multi-Stage Attack Details Revealed

Cryptocurrency exchange Bybit detected unauthorized activity involving its Ethereum cold wallets, leading to a major security breach. The incident occurred…

DocSwap Malware Masquerades as Security Document Viewer to Attack Android Users Worldwide
18
Mar
2025

DocSwap Malware Masquerades as Security Document Viewer to Attack Android Users Worldwide

The cybersecurity landscape has witnessed a new threat with the emergence of the DocSwap malware, which disguises itself as a…

AMI BMC Vulnerability
18
Mar
2025

New Critical AMI BMC Vulnerability Enables Remote Server Takeover and Bricking

Mar 18, 2025Ravie LakshmananVulnerability / Firmware Security A critical security vulnerability has been disclosed in AMI’s MegaRAC Baseboard Management Controller…

ChatGPT SSRF bug quickly becomes a favorite attack vector
18
Mar
2025

ChatGPT SSRF bug quickly becomes a favorite attack vector

ChatGPT SSRF bug quickly becomes a favorite attack vector Pierluigi Paganini March 18, 2025 Threat actors exploit a server-side request…

Wiz + Google
18
Mar
2025

Google to purchase Wiz for $32 billion in cloud security play

Google announced today a definitive agreement to acquire leading cloud security platform Wiz for $32 billion in an all-cash transaction….

331 Malicious Apps with 60 Million Downloads on Google Play Bypass Android 13 Security
18
Mar
2025

331 Malicious Apps with 60 Million Downloads on Google Play Bypass Android 13 Security

Security researchers from Bitdefender have uncovered a large-scale ad fraud campaign involving 331 malicious apps on the Google Play Store….

Squid Werewolf Mimics Recruiters to Target Job Seekers and Steal Personal Data
18
Mar
2025

Squid Werewolf Mimics Recruiters to Target Job Seekers and Steal Personal Data

In a sophisticated phishing campaign uncovered by the BI.ZONE Threat Intelligence team, the Squid Werewolf group, also known as APT37,…

Naveen Goud
18
Mar
2025

Google buys Wiz for $32 billion

Wiz, a leading provider of cloud security software, is set to become part of Google by May 2026. Alphabet Inc.,…

Malicious Code via AI Code Editors
18
Mar
2025

New ‘Rules File Backdoor’ Attack Lets Hackers Inject Malicious Code via AI Code Editors

Mar 18, 2025Ravie LakshmananAI Security / Software Security Cybersecurity researchers have disclosed details of a new supply chain attack vector…

DNS is the center of the modern attack surface - are you protecting all levels?
18
Mar
2025

DNS is the center of the modern attack surface – are you protecting all levels?

If you are a mature organization, you might manage an external IP block of 65,000 IP addresses (equivalent to a…