PhantomRaven Npm Campaign Hides Bad Code
Since August 2025, a major supply chain attack against the developer community has been active, culminating in the identification of 126 malicious npm
Since August 2025, a major supply chain attack against the developer community has been active, culminating in the identification of 126 malicious npm
Cybersecurity researchers have identified a new threat in the npm ecosystem, consisting of 10 malicious packages designed to deliver a potent information
Herodotus is a novel Android banking Trojan designed to execute device takeover (DTO) attacks, notably targeting users in Italy and Brazil.
Social media platform X has issued a mandatory directive for users who have secured their accounts with passkeys or physical hardware security
LastPass has issued an urgent warning to its users regarding a significant phishing operation that began in mid-October. The campaign uses convincing emails
OpenAI's recently released Atlas web browser, which integrates ChatGPT capabilities for functions like summarization and editing, has been
New research from Kaspersky has uncovered a cyber espionage campaign that exploited a patched zero-day security vulnerability in Google Chrome
The ransomware group known as Qilin (also called Agenda, Gold Feather, and Water Galura) has dramatically escalated its operations throughout 2025,
A large-scale exploitation campaign is actively targeting numerous WordPress websites that have failed to update the GutenKit and Hunk Companion plugins,
A major smishing campaign, linked to a China-based group called the Smishing Triad, has utilized an immense infrastructure of over 194,000 malicious domains
© 2025 | CyberMaterial | All rights reserved