Category: News


  • This Malicious PyPI Package Stole Ethereum Private Keys via Polygon RPC Transactions

    Mar 07, 2025Ravie LakshmananMalware / Blockchain Cybersecurity researchers have discovered a malicious Python package on the Python Package Index (PyPI) repository that’s equipped to steal a victim’s Ethereum private keys by impersonating popular libraries. The package in question is set-utils, which has received 1,077 downloads to date. It’s no longer available for download from the…

  • U.S. Secret Service Seizes Russian Garantex Crypto Exchange Website

    Mar 07, 2025Ravie LakshmananCryptocurrency / Ransomware A coalition of international law enforcement agencies has seized the website associated with the cryptocurrency exchange Garantex (“garantex[.]org”), nearly three years after the service was sanctioned by the U.S. Treasury Department in April 2022. “The domain for Garantex has been seized by the United States Secret Service pursuant to…

  • What PCI DSS v4 Really Means – Lessons from A&F Compliance Journey

    Mar 07, 2025The Hacker NewsPayment Security / Compliance Access on-demand webinar here Avoid a $100,000/month Compliance Disaster March 31, 2025: The Clock is Ticking. What if a single overlooked script could cost your business $100,000 per month in non-compliance fines? PCI DSS v4 is coming, and businesses handling payment card data must be prepared. Beyond…

  • Webinar: Learn How ASPM Transforms Application Security from Reactive to Proactive

    Mar 07, 2025The Hacker NewsSoftware Security / AppSec Are you tired of dealing with outdated security tools that never seem to give you the full picture? You’re not alone. Many organizations struggle with piecing together scattered information, leaving your apps vulnerable to modern threats. That’s why we’re excited to introduce a smarter, unified approach: Application…

  • FIN7, FIN8, and Others Use Ragnar Loader for Persistent Access and Ransomware Operations

    Mar 07, 2025Ravie Lakshmanan Threat hunters have shed light on a “sophisticated and evolving malware toolkit” called Ragnar Loader that’s used by various cybercrime and ransomware groups like Ragnar Locker (aka Monstrous Mantis), FIN7, FIN8, and Ruthless Mantis (ex-REvil). “Ragnar Loader plays a key role in keeping access to compromised systems, helping attackers stay in…

  • Microsoft Warns of Malvertising Campaign Infecting Over 1 Million Devices Worldwide

    Mar 07, 2025Ravie LakshmananMalvertising / Open Source Microsoft has disclosed details of a large-scale malvertising campaign that’s estimated to have impacted over one million devices globally as part of what it said is an opportunistic attack designed to steal sensitive information. The tech giant, which detected the activity in early December 2024, is tracking it…

  • Published: March 7, 2025Author: Nico Forty years in IT, scars to prove it—snapped a golf shaft, bled on a motherboard, and faced a worm that nearly broke the internet. March 26, 1999: a quiet Friday ‘til one email hit. The Melissa worm—a digital Goliath—crashed Microsoft, Intel, even the Marines. Inboxes drowned, servers fried, $80 million…

  • Dark Caracal Uses Poco RAT to Target Spanish-Speaking Enterprises in Latin America

    Mar 05, 2025Ravie LakshmananCyber Espionage / Malware The threat actor known as Dark Caracal has been attributed to a campaign that deployed a remote access trojan called Poco RAT in attacks targeting Spanish-speaking targets in Latin America in 2024. The findings come from Russian cybersecurity company Positive Technologies, which described the malware as loaded with…

  • Over 1,000 WordPress Sites Infected with JavaScript Backdoors Enabling Persistent Attacker Access

    Mar 06, 2025Ravie LakshmananData Breach / Website Security Over 1,000 websites powered by WordPress have been infected with a third-party JavaScript code that injects four separate backdoors. “Creating four backdoors facilitates the attackers having multiple points of re-entry should one be detected and removed,” c/side researcher Himanshu Anand said in a Wednesday analysis. The malicious…

  • U.S. Charges 12 Chinese Nationals in State-Backed Hacking Operations

    The U.S. Department of Justice (DoJ) has announced charges against 12 Chinese nationals for their alleged participation in a wide-ranging scheme designed to steal data and suppress free speech and dissent globally. The individuals include two officers of the People’s Republic of China’s (PRC) Ministry of Public Security (MPS), eight employees of an ostensibly private…