Researchers from Cado Security Labs (now part of Darktrace) identified a recent Docusign spearphishing email campaign targeting tech executives. Docusign email phishing is a type of email phishing ...
The DanaBot Lab simulates the investigation of a malware infection that begins with the delivery of an obfuscated JavaScript file through a malicious website. The investigation combines network ...
Adobe patched CVE-2026-48294, a flaw in Adobe Acrobat Chrome extension that could let attackers steal WhatsApp Web chats by luring users to a webpage. Guardio Labs researcher Shaked Biner disclosed ...
I've spent years building and auditing web applications, and one pattern keeps coming up: developers who are careful about backend security will ship a SaaS product and leave a surprising amount of ...
Attackers were found using a Lua-based malware loader posing as a TrueType font tile, with layered obfuscation and fileless execution to deploy stealers and persistent trojans. Threat actors are now ...
Abstract: JavaScript is the primary programming language for web applications. With the increasing security requirements for web applications, more and more applications are using code obfuscation ...
The PolinRider campaign has compromised more than 100 legitimate open source packages and repositories to deliver a backdoor and information stealer to developers. North Korean hackers are targeting ...
North Korean PolinRider supply-chain attack expands, steals crypto via infected developer tools. The threat actors masquerade as recruiters on platforms like LinkedIn, using elaborate front companies ...
The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing 108 unique packages and web browser extensions spanning npm, Packagist, Go, and Google Chrome ...
Vulnerabilities in remote monitoring and management (RMM) tools can give attackers a direct path into enterprise environments, often with the same trusted access that IT administrators rely on to ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results