Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

eSecurity Planet
esecurityplanet.com > news > news-weedhack-fake-minecraft-malware

WeedHack Malware Persists as Fake Minecraft Sites Survive C2 Disruption

4+ day, 15+ hour ago   (404+ words) Fake Minecraft sites continue distributing WeedHack malware through SEO poisoning and trusted hosting platforms despite disruption of its original C2 infrastructure. Disrupting WeedHack’s command-and-control infrastructure did not stop its distribution. Fake Minecraft client sites and trusted hosting services continued serving the…...

Cyber Security News
cyberpress.org > dormant-npm-worm-returns

npm Supply Chain Worm Returns After Four-Month Dormancy With Same Malicious Payload

4+ day, 20+ hour ago   (330+ words) A previously documented Shai-Hulud npm supply-chain worm payload has reportedly reappeared after 111 days of inactivity, using the exact same malicious file linked to the May 19 compromise of hundreds of @AntV package versions. The reactivation raises concerns about registry-level malware detection…...

kobaran.com
kobaran.com > shai-hulud-malware-returns-to-npm-unchanged-111-days-after-its-hash-was-fingerprinted

Shai-Hulud Malware Returns to npm Unchanged, 111 Days After Its Hash Was Fingerprinted

4+ day, 17+ hour ago   (507+ words) Four packages is a small blast radius next to the 639 malicious versions pushed during the May campaign. The significance sits elsewhere. npm rolled out publish-time scanning in July, a control that briefly holds new publications for automated analysis before they…...

4sysops
4sysops.com > archives > fake-software-installers-use-msiexec-to-bypass-defenses-and-persist-on-windows

Fake software installers use msiexec to bypass defenses and persist on Windows – 4sysops

5+ day, 9+ hour ago   (21+ words) Microsoft is tracking an active fake software campaign that regenerates malicious archives behind familiar download filenames, then uses Windows components such...

MSSP Alert
msspalert.com > brief > new-synkloader-malware-distributed-via-microsoft-teams-phishing

New SynkLoader malware distributed via Microsoft Teams phishing

5+ day, 11+ hour ago   (109+ words) The SynkLoader malware operates through a multi-stage process, beginning with convincing Microsoft Teams messages that mimic IT support communications. These messages aim to lure recipients into downloading and executing malicious files. Once activated, SynkLoader presents a fake Windows lock screen,…...

Cyber Security News
cybersecuritynews.com > fake-minecraft-mod

Fake Minecraft Mod Deploys Myth Stealer RAT to Steal Browser Credentials and Cookies

5+ day, 15+ hour ago   (627+ words) A counterfeit Minecraft optimisation mod is installing Myth Stealer, malware that can steal browser passwords, cookies and data. Its malicious file looks useful because features work as advertised, giving players little reason to suspect a hidden threat. The campaign exploits…...

Google News
cyberpress.org > fake-minecraft-mod-backdoor

Fake Minecraft Mod Steals Passwords and Gives Hackers Remote Control of PCs

5+ day, 17+ hour ago   (365+ words) Cybersecurity researchers have uncovered a fake Minecraft optimisation mod that steals browser passwords, payment-card data, cookies, Discord information, and system details while giving attackers remote control over infected Windows PCs. The malicious Java Archive (JAR) pretends to be Lithium Extras…...

Security Affairs
securityaffairs.com > 198573 > malware > jsceal-hides-crypto-malware-in-v8-bytecode.html

JSCeal Hides Crypto Malware in V8 Bytecode

5+ day, 16+ hour ago   (764+ words) Why AI Agent Sandboxes Are Failing Security Tests Berlin Ransomware Leak Exposes State Secrets Your MikroTik Router May Already Be Compromised: Look for SSH User “-2” AI Agents Hijacked German Wiki to Cheat, OpenAI Delayed Disclosure Security Affairs newsletter Round 593 by…...

Cyber Security News
cybersecuritynews.com > 14-fake-macos-installers

14 Fake macOS Installers Linked to DPRK Campaign Deliver Credential-Stealing RAT

1+ week, 1+ day ago   (612+ words) Mac users are being targeted with 14 fake application installers that appear to offer familiar software but instead start a credential-stealing remote-access trojan. The files were distributed as macOS disk images and installer packages, giving attackers another route into systems used…...

The Hacker News
thehackernews.com > 2026 > 09 > attackers-turn-trusted-nodejs-runtime.html

Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks

1+ week, 2+ day ago   (665+ words) Threat actors are leveraging the trusted Node.js JavaScript runtime in multiple cyber attacks as a way to deploy malicious payloads. According to a new report published by the Symantec Threat Hunter Team today, the attack method has been put…...