Cyber Security News

DanaBot Returns To Reclaim Title Of Cybercrime Juggernaut
Date

DanaBot Returns To Reclaim Title Of Cybercrime Juggernaut

After a six-month hiatus, DanaBot malware has reemerged, signaling the return of one of cybercrime's most adaptive threats. Once a banking trojan, DanaBot has evolved into a modular, multipurpose framework supporting espionage, data theft, and ransomware delivery. Moreover, its return also follows

Landfall - A New Commercial Grade Spyware
Date

Landfall - A New Commercial Grade Spyware

In November 2025, researchers publicly disclosed a previously unknown Android spyware family, now called Landfall. The security team at Unit 42 (part of Palo Alto Networks) described it in a blog post as "new commercial-grade Android spyware in an exploit chain targeting Samsung devices." The

SesameOp Backdoor Abuses OpenAI API
Date

SesameOp Backdoor Abuses OpenAI API

In a striking demonstration of how cyber-threats adapt to emerging technologies, Microsoft's Incident Response team has uncovered a sophisticated new malware known as SesameOp, which uniquely exploits the OpenAI Assistants API for command-and-control (C2) operations. This discovery marks one of the

New Atroposia Malware - A Sign Of The AI Times
Date

New Atroposia Malware - A Sign Of The AI Times

The emergence of the Atroposia malware marks another significant step forward in the evolution of cyber threats. Where earlier remote-access trojans (RATs) focused on giving attackers control over compromised computers, Atroposia takes it a step further by combining that control with active intellig

ColdRiver's "I Am Not a Robot" ClickFix Attack Campaign
Date

ColdRiver's "I Am Not a Robot" ClickFix Attack Campaign

In 2025, cybersecurity researchers uncovered a new and unusual scam from a Russian hacking group known as ColdRiver. The group, also known as Star Blizzard or the Callisto Group, had discovered a way to exploit one of the Internet's most familiar security tools, the "I am not a robot" CAPTCHA, and t

Threat Actors Abusing Google Ads To Deploy Odyssey And AMOS
Date

Threat Actors Abusing Google Ads To Deploy Odyssey And AMOS

A recent campaign demonstrates how modern malvertising, ads pointing to malicious websites, can use legitimate search channels to trick technically sophisticated users into installing powerful macOS information-stealing malware. Operators bought Google Ads that pointed to convincing fake download p

New Android Spyware ClayRat Targets Russian Speakers
Date

New Android Spyware ClayRat Targets Russian Speakers

ClayRat, a newly discovered Android spyware family, has emerged as a sophisticated and rapidly proliferating threat that researchers say primarily targets Russian-speaking users. Security analysts at Zimperium first cataloged the campaign and published detailed technical notes and indicators of comp

Medusa Ransomware's Actively Exploiting CVE-2025-10035
Date

Medusa Ransomware's Actively Exploiting CVE-2025-10035

In September 2025, security researchers disclosed a critical vulnerability in Fortra's GoAnywhere Managed File Transfer (MFT) platform. Tracked as CVE-2025-10035, the flaw has rapidly become a favored target for ransomware actors, particularly those deploying Medusa ransomware. The vulnerability an