Smishing on a Massive Scale: ‘Panda Shop’ Chinese Carding Syndicate

Resecurity found a new smishing kit called ‘Panda Shop,’ mimicking Smishing Triad tactics with improved features and new templates. Resecurity (USA) was the first company to identify the Smishing Triad, a group of Chinese cybercriminals targeting consumers across the globe. In August 2023, our team was able to identify their activity and locate the smishing […]

May 6, 2025
Read More >>

Indian Army Tightens Cybersecurity After Defence-Linked Websites Come Under Attack

In the wake of a coordinated wave of cyberattacks targeting Indian defence-linked websites, the Indian Army has moved swiftly to reinforce its digital security infrastructure.The attacks, which have intensified following the Pahalgam terror incident in April 2025, have primarily targeted educational and welfare institutions under the Army, as well as a public sector defence unit, raising serious

May 6, 2025
Read More >>

Sansec uncovered a supply chain attack via 21 backdoored Magento extensions

Supply chain attack via 21 backdoored Magento extensions hit 500–1,000 e-stores, including a $40B multinational. Sansec researchers reported that multiple vendors were hacked in a coordinated supply chain attack, the experts discovered that a backdoor was hidden in 21 applications. Curiously, the malicious code was injected 6 years ago, but the supply chain attack was […]

May 5, 2025
Read More >>

US authorities have indicted Black Kingdom ransomware admin

A 36-year-old Yemeni man behind Black Kingdom ransomware is indicted in the U.S. for 1,500 attacks on Microsoft Exchange servers. U.S. authorities have indicted Rami Khaled Ahmed (aka “Black Kingdom,” of Sana’a, Yemen), a 36-year-old Yemeni national, suspected of being the administrator of the Black Kingdom ransomware operation. He is believed to have carried out […]

May 5, 2025
Read More >>

Malicious Go Modules designed to wipe Linux systems

Researchers found 3 malicious Go modules with hidden code that can download payloads to wipe a Linux system’s main disk, making it unbootable. The malicious modules contain obfuscated code to fetch next-stage payloads that can wipe a Linux system’s primary disk and make it unbootable. “Socket’s Threat Research Team uncovered a stealthy and highly destructive […]

May 4, 2025
Read More >>

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 44

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape io_uring Is Back, This Time as a Rootkit   I StealC You: Tracking the Rapid Changes To StealC Interesting WordPress Malware Disguised as Legitimate Anti-Malware Plugin Using Trusted Protocols Against You: Gmail as a C2 Mechanism         […]

May 4, 2025
Read More >>

Pakistan Has Launches A Disinformation Campaign: Indian Army

In the aftermath of the deadly April 22, 2025, Pahalgam terror attack that claimed the lives of 26 civilians, the Indian Army has publicly accused Pakistan of orchestrating a coordinated disinformation campaign targeting senior Indian Armed Forces officers.According to Indian defence officials, this campaign was launched by Pakistan-based media outlets and proxy social media handles, with the

May 4, 2025
Read More >>

Rhysida Ransomware gang claims the hack of the Government of Peru

The Rhysida Ransomware gang claims the hack of the Government of Peru, the gang breached Gob.pe, the Single Digital Platform of the Peruvian State. The Rhysida ransomware gang claims responsibility for hacking the Government of Peru, breaching Gob.pe, which is the country’s official digital platform. The group published the images of multiple documents allegedly stolen […]

May 3, 2025
Read More >>

DragonForce group claims the theft of data after Co-op cyberattack

Hackers claim Co-op cyberattack is worse than admitted, with major customer and employee data stolen, and provide proof to the BBC. The attackers behind the recent Co-op cyberattack, who go online with the name DragonForce, told the BBC that they had stolen data from the British retail and provided proof of the data breach. Hackers […]

May 3, 2025
Read More >>