Aggregator
GLOBAL GROUP: AI-Powered Ransomware Threatens Global Critical Infrastructure
A cybercriminal collective has launched a new Ransomware-as-a-Service (RaaS) platform known as GLOBAL GROUP, actively targeting organizations across Australia, Brazil, Europe, and the United States since early June 2025. According to EclecticIQ, the operation...
The post GLOBAL GROUP: AI-Powered Ransomware Threatens Global Critical Infrastructure appeared first on Penetration Testing Tools.
HazyBeacon: New Windows Backdoor Uses AWS Lambda for Stealthy Cyber-Espionage in Southeast Asia
Government institutions across Southeast Asia have found themselves at the center of a new cyber-espionage campaign aimed at harvesting sensitive information through a previously unknown Windows malware tool known as HazyBeacon. Tracked by Palo...
The post HazyBeacon: New Windows Backdoor Uses AWS Lambda for Stealthy Cyber-Espionage in Southeast Asia appeared first on Penetration Testing Tools.
AsyncRAT’s Dark Evolution: How Open-Source Code Fuels a Growing Malware Empire
AsyncRAT, first introduced on GitHub in January 2019, has evolved into one of the most formidable tools in the cybercriminal arsenal. Its open-source architecture, written in C#, has laid the foundation for a multitude...
The post AsyncRAT’s Dark Evolution: How Open-Source Code Fuels a Growing Malware Empire appeared first on Penetration Testing Tools.
英国零售巨头 Co-op 证实 650 万会员数据在网络攻击中被盗
Ex-US Army Soldier “kiberphant0m” Pleads Guilty to $1M Telecom Hacking & Extortion
A former U.S. Army servicemember has pleaded guilty to orchestrating an extensive scheme involving the hacking of telecommunications companies, extortion, and the sale of stolen data. Cameron John Wagenius, 21, who last served in...
The post Ex-US Army Soldier “kiberphant0m” Pleads Guilty to $1M Telecom Hacking & Extortion appeared first on Penetration Testing Tools.
Cloudflare Q2 2025: DDoS Attack Volume Drops, But Hyper-Volumetric Assaults Skyrocket
Cloudflare recorded a dramatic decline in the number of DDoS attacks during the second quarter of 2025, mitigating 7.3 million incidents—down sharply from the 20.5 million reported in the first quarter. However, despite the...
The post Cloudflare Q2 2025: DDoS Attack Volume Drops, But Hyper-Volumetric Assaults Skyrocket appeared first on Penetration Testing Tools.
Hidden in Plain Sight: Hackers Conceal Malware and AI Prompts in DNS Records
Hackers have devised a method to conceal malware in places where detection is nearly impossible—in DNS records that map domain names to IP addresses. This technique enables the delivery of malicious binaries without relying...
The post Hidden in Plain Sight: Hackers Conceal Malware and AI Prompts in DNS Records appeared first on Penetration Testing Tools.
GateSentinel:为实战而生的现代化 C2 框架(雏形)
边境争端之际,泰国追查涉嫌关联网络诈骗的柬埔寨大亨
IDA Hex-Rays Microcode技术入门
Critical Cisco ISE Vulnerability Allows Remote Attacker to Execute Commands as Root User
Cisco has disclosed multiple critical security vulnerabilities in its Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) that could allow unauthenticated remote attackers to execute arbitrary commands with root privileges on affected systems. The vulnerabilities, assigned CVE identifiers CVE-2025-20281, CVE-2025-20282, and CVE-2025-20337, all carry the maximum CVSS score of 10.0, indicating the most […]
The post Critical Cisco ISE Vulnerability Allows Remote Attacker to Execute Commands as Root User appeared first on Cyber Security News.