Friday , September 19 2025
malware

Top 4 Malware you have to Prepare for in 2025

In 2025, malware attacks will persist. To prepare, organizations should familiarize themselves with common malware families. Here are five to focus on now.

LockBit:

Hacker claim to breach Link3; 189,000 Users data up for sale

A threat actor claims to have breached Link3, a major IT solutions and internet service provider based in Bangladesh. The...
Read More
Hacker claim to breach Link3; 189,000 Users data up for sale

Check Point Hosts “Securing the Hyperconnected World in the AI Era” in Dhaka

Check point, a cyber security solutions provider hosts an event titled "securing the hyperconnected world in the AI era" at...
Read More
Check Point Hosts “Securing the Hyperconnected World in the AI Era” in Dhaka

Microsoft Confirms 900+ XSS Vulns Found in IT Services

Cross-Site Scripting (XSS) is one of the oldest and most persistent vulnerabilities in modern applications. Despite being recognized for over...
Read More
Microsoft Confirms 900+ XSS Vulns Found in IT Services

Daily Security Update Dated : 15.09.2025

Every day a lot of cyberattack happen around the world including ransomware, Malware attack, data breaches, website defacement and so...
Read More
Daily Security Update Dated : 15.09.2025

IBM QRadar SIEM Vuln Let Attackers Perform Unauthorized Actions

A critical permission misconfiguration in the IBM QRadar Security Information and Event Management (SIEM) platform could allow local privileged users...
Read More
IBM QRadar SIEM Vuln Let Attackers Perform Unauthorized Actions

Major Australian Banks using Army of AI Bots to Scam Scammers

Australian banks are now using bots to combat scammers. These bots mimic potential victims to gather real-time information and drain...
Read More
Major Australian Banks using Army of AI Bots to Scam Scammers

F5 to acquire CalypsoAI for $180M for Advanced AI Security Capabilities

F5 plans to acquire CalypsoAI, which offers adaptive AI security solutions. CalypsoAI's technology will be added to F5's Application Delivery...
Read More
F5 to acquire CalypsoAI for $180M for Advanced AI Security Capabilities

AI Pentesting Tool ‘Villager’ Merges Kali Linux with DeepSeek AI for Automated Attacks

The Villager framework, an AI-powered penetration testing tool, integrates Kali Linux tools with DeepSeek AI to automate cyber attack processes....
Read More
AI Pentesting Tool ‘Villager’ Merges Kali Linux with DeepSeek AI for Automated Attacks

CVE-2025-21043
Samsung Patched Critical Zero-Day Flaw Exploited in Android Attacks

Samsung released its monthly Android security updates, addressing a vulnerability exploited in zero-day attacks. CVE-2025-21043 (CVSS score: 8.8) is a...
Read More
CVE-2025-21043  Samsung Patched Critical Zero-Day Flaw Exploited in Android Attacks

Albania appoints world’s first AI minister, “Diella” to Tackle Corruption

Albania has appointed the first AI-generated government minister to help eliminate corruption. Diella, the digital assistant meaning Sun, has been...
Read More
Albania appoints world’s first AI minister, “Diella” to Tackle Corruption

LockBit is a major ransomware targeting Windows devices and is a significant threat in Ransomware-as-a-Service (RaaS) attacks. Its decentralized structure has allowed it to infiltrate high-profile organizations globally, such as the UK’s Royal Mail and India’s National Aerospace Laboratories in 2024.

Law enforcement has arrested several members of the LockBit group, but it still operates and plans to release LockBit 4.0 in 2025.

Lumma:

Lumma is a widely available malware that steals sensitive information, sold on the Dark Web since 2022. It collects data from apps, including login credentials and financial details.

Regular updates enhance its capabilities, allowing it to log browsing history and cryptocurrency wallet data. Lumma can also install other malware on infected devices. In 2024, it was spread through fake CAPTCHA pages, torrents, and phishing emails.

XWorm:

XWorm is a malware that allows cybercriminals to remotely control infected computers. Since its emergence in July 2022, it collects sensitive data such as financial information, browsing history, passwords, and cryptocurrency wallet details.

It enables attackers to monitor victims through keystroke tracking, webcam captures, audio recording, network scans, and viewing open windows. XWorm can also access and alter the clipboard, which could lead to stealing cryptocurrency credentials.

By 2024, XWorm was implicated in several major attacks, including those that exploited CloudFlare tunnels and used legitimate digital certificates.

AsyncRAT:

AsyncRAT is a remote access trojan first seen in 2019, initially spread through spam emails related to the COVID-19 pandemic. It has since become popular for various cyber attacks.

The malware has developed to include numerous harmful features, such as recording screen activity, logging keystrokes, installing other malware, stealing files, maintaining a presence on infected systems, disabling security software, and launching denial-of-service attacks.

As of 2024, AsyncRAT remains a major threat, often disguised as pirated software, and was one of the first malware types distributed in complex attacks using AI-generated scripts.

You can visit here to know more of the article.

US introduces Cyber Trust Mark for smart devices

Check Also

phone call

1.6M fitness phone call recordings exposed online

Security researcher Jeremiah Fowler discovered a database containing sensitive information from gym customers and staff, …