Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections and hunting guidance.
Documentation files on more than 100 websites are referencing potentially dangerous executable content that gets installed ...
A fake GTA 6 demo spreads Vidar malware that steals browser passwords and sessions. Learn how to recognize the scam and what ...
Threat actors are increasingly turning legitimate software into part of their attack chains. Instead of deploying an obviously malicious executable, attackers can abuse trusted tools that already have ...
MuddyWater-linked threat actors are using a backdoor named Dindoor that abuses the legitimate Deno runtime to execute ...
Threat actors are abusing npm and its mirrors to host malicious HTML pages that impersonate Cloudflare CAPTCHAs to redirect ...
WordlistLoader delivers Amatera via ClearFake ClickFix attacks, while SynkLoader uses Teams phishing to steal Windows login ...
The Anti-Cheat Not Installed message stops Delta Force before its game window opens. Steam can still show the game as fully ...
SilkParasite targets Central Asian governments with seven RATs, five newly documented, using DLL sideloading and likely ...
Cybercriminals are distributing fake pirated copies of “The Odyssey” to infect Windows users with Lumma Stealer malware. The malicious downloads may contain no movie footage at all, relying instead on ...
Wallpaper Engine remains one of the most popular (non-game) applications on Steam, giving users the ability to customize their desktops with animated and interactive wallpapers. However, a recent ...