Monday , August 24 2026
malware

Top 4 Malware you have to Prepare for in 2025

In 2025, malware attacks will persist. To prepare, organizations should familiarize themselves with common malware families. Here are five to focus on now.

LockBit:

Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

A new hacking technique has been demonstrated to steal data from Elon Musk's Grok AI. It uses a simple trick...
Read More
Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

About thousands of leaked AWS keys Held Full Admin Rights

More than 9,300 AWS access keys that were made public from August 2022 to August 2026 are still active, says...
Read More
About thousands of leaked AWS keys Held Full Admin Rights

US Bank investigates LockBit’s Data Breach Claims

US Bank is looking into LockBit's claims about a breach and stolen data. The ransomware group says they will share...
Read More
US Bank investigates LockBit’s Data Breach Claims

Five new malware families actively targeting Asian Gov.t infra

Central Asian government agencies have been attacked in a cyber spy operation that used a small but different range of...
Read More
Five new malware families actively targeting Asian Gov.t infra

T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move...
Read More
T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

Splunk has issued security fixes for 17 weaknesses in different apps and add-ons, such as Splunk MCP Server, Splunk AI...
Read More
Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

“Zombie Card” attack revels expired Visa card may be used for contactless payments

Security experts have shown that expired credit cards can still be used. A study from the University of Massachusetts Amherst,...
Read More
“Zombie Card” attack revels expired Visa card may be used for contactless payments

Critical Zimbra RCE Flaw Actively Exploited in the Wild

CERT Polska has alerted that bad actors are actively exploiting a security flaw in Zimbra Collaboration Suite to execute code...
Read More
Critical Zimbra RCE Flaw Actively Exploited in the Wild

Operation CameraSwarm
A single hacker compromise 1400+ Dahua camera worldwide 

Operation CameraSwarm compromised 14,500+ Dahua IP cameras mostly in Ukraine and Russia. The operation lasted for at least 35 days...
Read More
Operation CameraSwarm  A single hacker compromise 1400+ Dahua camera worldwide 

Cl0p Ransomware Listed 40+ Victims of PTC Windchill Campaign

The Cl0p ransomware group has listed over 40 organizations that they say they targeted in a recent attack. This attack...
Read More
Cl0p Ransomware Listed 40+ Victims of PTC Windchill Campaign

LockBit is a major ransomware targeting Windows devices and is a significant threat in Ransomware-as-a-Service (RaaS) attacks. Its decentralized structure has allowed it to infiltrate high-profile organizations globally, such as the UK’s Royal Mail and India’s National Aerospace Laboratories in 2024.

Law enforcement has arrested several members of the LockBit group, but it still operates and plans to release LockBit 4.0 in 2025.

Lumma:

Lumma is a widely available malware that steals sensitive information, sold on the Dark Web since 2022. It collects data from apps, including login credentials and financial details.

Regular updates enhance its capabilities, allowing it to log browsing history and cryptocurrency wallet data. Lumma can also install other malware on infected devices. In 2024, it was spread through fake CAPTCHA pages, torrents, and phishing emails.

XWorm:

XWorm is a malware that allows cybercriminals to remotely control infected computers. Since its emergence in July 2022, it collects sensitive data such as financial information, browsing history, passwords, and cryptocurrency wallet details.

It enables attackers to monitor victims through keystroke tracking, webcam captures, audio recording, network scans, and viewing open windows. XWorm can also access and alter the clipboard, which could lead to stealing cryptocurrency credentials.

By 2024, XWorm was implicated in several major attacks, including those that exploited CloudFlare tunnels and used legitimate digital certificates.

AsyncRAT:

AsyncRAT is a remote access trojan first seen in 2019, initially spread through spam emails related to the COVID-19 pandemic. It has since become popular for various cyber attacks.

The malware has developed to include numerous harmful features, such as recording screen activity, logging keystrokes, installing other malware, stealing files, maintaining a presence on infected systems, disabling security software, and launching denial-of-service attacks.

As of 2024, AsyncRAT remains a major threat, often disguised as pirated software, and was one of the first malware types distributed in complex attacks using AI-generated scripts.

You can visit here to know more of the article.

US introduces Cyber Trust Mark for smart devices

Check Also

Thousands of data centers

Thousands of data centers are at risk of compromise due to a 22-year-old flaw

Thousands of data centers are in danger because of a 22-year-old problem in Baseboard Management …