Threats

China-Nexus JadeProx Uses New TriBack Loader to Target Governments, Hospitals, and Universities

An exposed directory on an operator-controlled Alibaba Cloud server revealed the inner workings of the JadeProx intrusion set, including bash history, webshell paths, phishing...

New Stealer Combines Credential Theft, HVNC, SOCKS5 Proxy, and AI Victim Scoring

A newly marketed Windows stealer and remote-access tool that combines large-scale credential theft, hidden virtual network computing (HVNC), SOCKS5 proxying, and an AI-based victim-ranking...

Ransomware Groups Claim Record 7,551 Victims as Qilin Activity Jumps 443%

Ransomware groups publicly named 7,551 victims from April 2025 through March 2026, a 24.9% rise from the previous reporting period. The surge was led...

Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide RATs and Infostealers

The tool combines payload encryption with advanced Windows evasion methods, helping attackers bypass endpoint defenses and complicate incident response. Cruciferra is a Mono-based crypter marketed...

ClickFix Detections Surge 108% as AI-fix and CrashFix Expand Social Engineering Attacks

Cybercriminals are aggressively evolving their social engineering tactics, marked by a massive 108% surge in ClickFix detections. Threat actors are rolling out new deceptive...

Popular

Subscribe