Aggregator
New XWorm V6 Variant Injects Malicious Code into a Legitimate Windows Program
The resurgence of XWorm in mid-2025 marks a significant escalation in malware sophistication. After a lull following the abrupt discontinuation of official support for version 5.6 in late 2024, threat actors unveiled XWorm V6.0 on June 4, 2025. A post on hackforums.net by an account named XCoderTools first announced this release, claiming to patch a […]
The post New XWorm V6 Variant Injects Malicious Code into a Legitimate Windows Program appeared first on Cyber Security News.
0,1% изображений - 100% рисков. Microsoft расправилась со SVG в Outlook
Researchers Warn of Self-Spreading WhatsApp Malware Named SORVEPOTEL
Identity-Centric Security: ICAM as a Mission Advantage
New GhostSocks Malware-as-a-Service Enables Threat Actors to Convert Compromised Devices into Proxies
An operator known as GhostSocks advertised a novel Malware-as-a-Service (MaaS) on the Russian cybercrime forum XSS.is on October 15, 2023, promising to transform compromised devices into residential SOCKS5 proxies. The service capitalized on the inherent trust placed in residential IP addresses to bypass anti-fraud systems and avoid detection by network defenders. Early promotional posts showcased […]
The post New GhostSocks Malware-as-a-Service Enables Threat Actors to Convert Compromised Devices into Proxies appeared first on Cyber Security News.
Top 10 Best Digital Footprint Monitoring Tools For Organizations in 2025
In today’s hyperconnected digital environment, organizations face increasing threats to their online presence and reputations. From cyberattacks and phishing campaigns to data breaches and brand impersonation, businesses must actively safeguard their digital footprint. Digital footprint monitoring tools are designed to provide organizations with deep insights into risk exposure across surface web, deep web, and dark […]
The post Top 10 Best Digital Footprint Monitoring Tools For Organizations in 2025 appeared first on Cyber Security News.
ИИ нашёл сотни багов в curl, sudo и Squid. Но два года до этого засыпал проект мусорными отчётами
Product Walkthrough: How Passwork 7 Addresses Complexity of Enterprise Security
GhostSocks Malware-as-a-Service Turns Compromised Devices into Proxies for Threat Actors
On October 15, 2023, a threat actor using the handle GhostSocks published a sales post on the Russian cybercrime forum xss[.]is advertising a novel Malware-as-a-Service (MaaS) offering. The post introduced GhostSocks, a service designed to turn compromised Windows machines into residential SOCKS5 proxies, enabling cybercriminals to bypass anti-fraud defenses and monetize infected hosts. The initial […]
The post GhostSocks Malware-as-a-Service Turns Compromised Devices into Proxies for Threat Actors appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Gmail business users can now send encrypted emails to anyone
CVE-2025-11234 | Red Hat Enterprise Linux/OpenShift Container Platform QEMU use after free
"Хирургическая" атака на Linux 6.9: руткит FlipSwitch взломал «непробиваемое» ядро
【安全圈】恶意软件 LockBit “升级”至 5.0 版本,同时针对多种系统环境
【安全圈】加拿大第二大航司西捷遭遇网络攻击,约 120 万名乘客个人信息被窃
【安全圈】宇树机器人被曝漏洞,机器人之间可相互感染,官方火速回应
Hackers Target Unpatched Flaws in Oracle E-Business Suite
When One Phish Poisons the Pipeline: Supply Chain Phishing on the Rise
Modern supply chains run on code, models, and email. The last one is still the easiest way to start a very bad day.
The post When One Phish Poisons the Pipeline: Supply Chain Phishing on the Rise appeared first on Security Boulevard.
Wi-Fi 7, новый цикл поддержки и фокус на киберзащите. Microsoft выкатила Windows 11 25H2
SideWinder Hacker Group Targets Users with Fake Outlook/Zimbra Portals to Steal Login Credentials
The notorious SideWinder APT group has intensified its credential harvesting operations across South Asia, deploying sophisticated phishing campaigns that target government, defense, and critical infrastructure organizations through fake webmail portals. The campaign represents a significant escalation from the group’s August 2024 activities, which initially focused on 14 malicious webpages hosted on Netlify and pages.dev platforms. […]
The post SideWinder Hacker Group Targets Users with Fake Outlook/Zimbra Portals to Steal Login Credentials appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.