Cyber Security News

OneClik Attack Abuses Microsoft's ClickOnce Service
Date

OneClik Attack Abuses Microsoft's ClickOnce Service

Researchers have uncovered a sophisticated cyber-espionage campaign known as OneClik, which targets organizations in the energy, oil, and gas sectors. The attackers exploit Microsoft's ClickOnce deployment technology—a tool designed to streamline the installation and updating of Windows applications

Anubis Ransomware Becomes More Destructive With Wiper Addition
Date

Anubis Ransomware Becomes More Destructive With Wiper Addition

The Anubis ransomware operation, which emerged in December 2024, represents a chilling evolution in cyber extortion techniques. Unlike conventional ransomware, which encrypts files for ransom, Anubis enhances its menace with a destructive "wipe mode" feature. This dual functionality blurs the line b

Chinese IoT Consumer Devices Are The Playground For BadBox 2.0
Date

Chinese IoT Consumer Devices Are The Playground For BadBox 2.0

The Federal Bureau of Investigation (FBI) has recently alerted the public about cyber criminals exploiting Internet of Things (IoT) devices connected to home networks through the BadBox 2.0 botnet. These criminals gain unauthorized access to home networks by compromising IoT devices such as TV strea

PumaBot Presents A New Threat To IoT Surveillance Devices
Date

PumaBot Presents A New Threat To IoT Surveillance Devices

In May 2025, cybersecurity firm Darktrace identified a novel botnet named "PumaBot" targeting Internet of Things (IoT) surveillance devices. Unlike traditional botnets that scan the internet indiscriminately, PumaBot employs a more focused approach, retrieving specific targets from a command-and-con

Scattered Spider Seen Targeting US Companies
Date

Scattered Spider Seen Targeting US Companies

Threat actors behind recent ransomware attacks targeting UK-based Marks & Spencer and Harrods are now targeting retailers in the United States, as Google Threat Intelligence Group reported. Speaking to Bleeping Computer, John Hultquist, Chief Analyst at Google Threat Intelligence Group, sa

StealC Malware Receives A Massive Upgrade
Date

StealC Malware Receives A Massive Upgrade

According to security firm ZScaler, the popular information stealer and malware downloader StealC has received a massive upgrade in recent months and is currently tracked by multiple sources as Stealc_v2. StealC has been sold on underground hacking forums since January 2023. In March 2025, Ste

RaaS Groups Are Evolving
Date

RaaS Groups Are Evolving

Despite several international law enforcement operations cracking down on ransomware operations, cybercriminals still make significant profits despite the risk. Law enforcement operations have forced certain ransomware groups, particularly those in the Ransomware-as-a-Service (RaaS) sphere, to evolv