Fileless malware stories
A default Windows utility is giving attackers a way to run malicious scripts through trusted processes and dodge security tools.
Phishing and malware activity has doubled in Gulf markets since late February, with attackers exploiting conflict themes to target finance and energy links.
Healthcare providers face a new malware route as Varist's engine scans DICOM, HL7 and FHIR files for hidden threats in imaging systems.
Businesses are facing harder-to-spot intrusions as attackers use valid Microsoft 365 logins, fake AI sites and fileless malware to evade detection.
Attackers were exploiting a critical Weaver E-cology flaw within five days of the vendor patch, Vega said, with repeated attempts blocked.
The Sydney move follows a USD $250 million funding round as the cloud security firm bets on real-time protection for fast-growing AI workloads.
Businesses face credential theft and reinfection risks as DeepLoad hides inside trusted Windows processes and evades routine clean-up.
ManageEngine folds EDR and Zero Trust private access into Endpoint Central, unifying endpoint management and security in one console.
Cohesity bakes Sophos malware scanning into its Data Cloud to spot hidden threats in backups and cut reinfection risk during recovery.
ManageEngine turns Endpoint Central into a unified endpoint security and access platform by adding built-in EDR and zero trust private access.
Ransomware group LeakNet adopts ClickFix lures and a Deno-based fileless loader to scale attacks and evade traditional endpoint defences.
Hackers are abusing the trusted Deno JavaScript runtime to run fileless CastleRAT malware solely in memory and evade endpoint defences.
A stealthy BlackSanta malware spree is hijacking HR recruitment workflows, killing endpoint defence tools and exfiltrating sensitive data.
LummaStealer roars back after domain takedown, using fake CAPTCHA ClickFix tricks and CastleLoader to spread via routine user actions.
Google flags surging attempts to steal AI models as state-backed hackers weaponise Gemini for phishing, intel gathering and malware support.
Indian defence faces a decade-long silent siege as APT36 refines cross-platform cyber espionage with stealthy, persistent RAT campaigns.
Attackers are abusing LinkedIn private messages to deliver Python-based malware via booby-trapped archives, ReliaQuest has warned.
Storm-0249 hijacks trusted security and Windows tools to stealthily broker high-value network access for ransomware operators.
Fake torrents of Leonardo DiCaprio film One Battle After Another are spreading Agent Tesla malware that hijacks Windows PCs, experts warn.
Hackers linked to CL0P exploited an Oracle E-Business Suite zero-day from July 2025, stealing data and extorting dozens of organisations worldwide.