The legitimate VPN service is highly popular for its ability to bypass China's Great Firewall. However, attackers are exploiting its reputation to deploy hidden...
Russian state-sponsored and criminal hacking groups are increasingly abusing exposed Remote Desktop Protocol (RDP) services and vulnerable VPN gateways to quietly break into target...
Cybersecurity researcher ZachXBT ignited this probe by tying the domain luckyguyssite to crypto payments linked to North Korean (DPRK) fake IT workers.
During 30...
In mid-January 2026, Microsoft Defender Experts uncovered a credential theft operation orchestrated by the financially motivated threat actor Storm-2561.
Active since May 2025, this...
Microsoft says a cybercriminal group it tracks as Storm-2561 is running a credential theft campaign that uses fake VPN clients pushed through search engine...