Malicious Chrome and Edge add-ons and ClickFix attacks
What do malicious browser extensions, crypto theft, and fake Chrome update guides have in common? We look at a recent campaign involving 19 infected add-ons.
237 articles
What do malicious browser extensions, crypto theft, and fake Chrome update guides have in common? We look at a recent campaign involving 19 infected add-ons.
It steals passwords, banking credentials, and verification codes, and lets attackers control a smartphone remotely. Here’s why this new Android threat is so dangerous, and how it manages to transfer stolen data home.
We break down the file formats that can be unfamiliar to some users, and that aren’t always scanned by security solutions but can still pose cyberthreats.
Attackers have found yet another source of free computing resources: automotive head units. We take a look at the first malware specifically targeting cars for infection.
Steam forums are the latest battleground for ClickFix attacks. We break down how attackers disguise themselves as helpful commenters to trick gamers into installing a crypto miner on their PCs.
Attackers are crafting files that devices can read as two different document types at once, and using these “nesting dolls” to smuggle in malware. How to detect and neutralize these two-faced files?
ClickFix attacks, which were once seen mostly on Windows, are now spreading to macOS. We break down the mechanics of the attack, and ways to protect your device.
A targeted supply chain attack via popular software for mounting disk images.
As tax-return season rolls around, cybercriminals worldwide are shifting into high gear. They peddle fraudulent services, spoof official tax agency websites, and drain the bank accounts of unsuspecting taxpayers. Here’s how to spot phishing attempts and scams, along with tips for handling your tax documents securely
The emergence of DarkSword and Coruna — new malware targeting iOS — shows exactly how government intelligence tools are being repurposed as weapons for cybercriminals. We break down how these attacks work, why they’re so dangerous, and what you can do to not get infected.
Threat actors are promoting pages containing malicious instructions for installing AI agents intended for workflow automation.
Cybercriminals are distributing malware that deploys an infostealer and masks its activity in network and system logs.
We’ve identified a new infostealer named Stealka, which masquerades as pirated software and game mods. It targets data stored inside browsers, locally installed applications, and crypto wallets.
How automation turns legitimate tools into a channel for malware delivery.
Two campaigns by the BlueNoroff APT group target developers and executives in the crypto industry.
Official gaming websites and platforms may seem safe, but even there gamers occasionally encounter malware. We break down infection cases involving Endgame Gear, Steam, and Minecraft.
Unknown attackers have compromised several popular npm packages in a supply-chain attack.
Attackers hijack Discord invite links and redirect victims to scam servers to install malware using the ClickFix technique.
Archives are being used in targeted phishing and other attacks on organizations. What tools, settings, and policies can mitigate the threat?
Attackers use the polyglot technique to disguise malware. We explain what it is and how to protect your company against attacks.
We discovered over 200 repositories with fake projects on GitHub. Using them, attackers distribute stealers, clippers, and backdoors.