malware

First-Ever Malicious MCP Server Found in the Wild Steals Emails via AI Agents

The first-ever malicious Model-Context-Prompt (MCP) server discovered in the wild, a trojanized npm package named postmark-mcp that has been secretly…

12 months ago

Massive Cyber-Attack Attacking macOS Users via GitHub Pages to Deliver Stealer Malware

A sophisticated cyber-attack campaign exploiting GitHub Pages to distribute the notorious Atomic stealer malware to macOS users.  The threat actors…

12 months ago

ACR Stealer – Uncovering Attack Chains, Functionalities And IOCs

ACR Stealer represents one of the most sophisticated information-stealing malware families actively circulating in 2025, distinguished by its advanced evasion…

1 year ago

New Clickfix Attack Promises “Free WiFi” But Delivers Powershell-Based Malware

The Cybersecuritynews researcher team uncovered a sophisticated social engineering campaign that is exploiting the public's need for free internet access,…

1 year ago

New Malware Using Azure Functions For Hosting Command And Control Infrastructure

A new, sophisticated malware campaign has been uncovered that leverages Microsoft's Azure Functions for its command-and-control (C2) infrastructure, a novel…

1 year ago

“GPUGate” Malware Abuses Google Ads and GitHub to Deliver Advanced Malware Payload

A sophisticated malware campaign, dubbed "GPUGate," abuses Google Ads and GitHub's repository structure to trick users into downloading malicious software.…

1 year ago

Hackers Weaponize Fake Microsoft Teams Site to Deploy Odyssey macOS Stealer

A sophisticated cyber campaign is targeting macOS users by distributing the potent "Odyssey" information stealer through a deceptive website impersonating…

1 year ago

Hackers Leverage Built-in MacOS Protection Features to Deploy Malware

macOS has long been recognized for its robust, integrated security stack, but cybercriminals are finding ways to weaponize these very…

1 year ago

Hackers Exploiting Apache ActiveMQ Flaw to Infiltrate Cloud-Based Linux Systems

A sophisticated campaign uncovered where adversaries are exploiting CVE-2023-46604, a critical remote code execution vulnerability in Apache ActiveMQ, to compromise…

1 year ago

PipeMagic Malware Mimic as ChatGPT App Exploits Windows Vulnerability to Deploy Ransomware

A sophisticated malware campaign has been identified, utilizing PipeMagic, a highly modular backdoor deployed by the financially motivated threat actor…

1 year ago