Ivanti Connect Secure instances that remain vulnerable to the patched stack-based buffer overflow bug, tracked as CVE-2025-0282, were reported by the Cybersecurity and Infrastructure Security Agency to have been subjected to attacks spreading the nascent RESURGE malware, according to The Hacker News.
Malware distributed via fake DeepSeek ads on Google Increasingly popular Chinese artificial intelligence platform DeepSeek has been exploited by threat actors in phony sponsored Google ads for malware distribution efforts, reports Security Affairs.
Attacks leveraging fraudulent messaging apps to deploy a new PJobRAT Android trojan variant have been deployed against Taiwan as part of a 22-month cyberespionage campaign, according to Infosecurity Magazine.
BleepingComputer reports that nearly a dozen npm packages, including the widely used 'country-currency-map' package and other cryptocurrency-related packages, have been hijacked with malicious JavaScript code.
Windows devices have been targeted with attacks involving the novel CoffeeLoader malware that masquerades as Taiwanese computer hardware firm ASUS's Armoury Crate utility to covertly distribute the Rhadamanthys information-stealing malware and other malicious payloads, Cybernews reports.
Infosecurity Magazine reports that threat actors have exploited Microsoft's .NET MAUI cross-platform development framework to craft fake apps masquerading as legitimate services that facilitate covert compromise in new Android malware campaigns.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.