[email protected] (The Hacker News)

Articles by [email protected] (The Hacker News)

Phantom Stealer Spread by ISO Phishing Emails Hitting Russian Finance Sector

CryptoDecember 16, 2025

Cybersecurity researchers have disclosed details of an active phishing campaign that's targeting a wide range of sectors in Russia with phishing emails that deliver Phantom Stealer via malicious ISO �...

VolkLocker Ransomware Exposed by Hard-Coded Master Key Allowing Free Decryption

CryptoDecember 16, 2025

The pro-Russian hacktivist group known as CyberVolk (aka GLORIAMIST) has resurfaced with a new ransomware-as-a-service (RaaS) offering called VolkLocker that suffers from implementation lapses in tes�...

CISA Adds Actively Exploited Sierra Wireless Router Flaw Enabling RCE Attacks

CryptoDecember 14, 2025

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a high-severity flaw impacting Sierra Wireless AirLink ALEOS routers to its Known Exploited Vulnerabilities (KEV) cata�...

Fake OSINT and GPT Utility GitHub Repos Spread PyStoreRAT Malware Payloads

CryptoDecember 13, 2025

Cybersecurity researchers are calling attention to a new campaign that's leveraging GitHub-hosted Python repositories to distribute a previously undocumented JavaScript-based Remote Access Trojan (RA�...

New Advanced Phishing Kits Use AI and MFA Bypass Tactics to Steal Credentials at Scale

CryptoDecember 13, 2025

Cybersecurity researchers have documented four new phishing kits named BlackForce, GhostFrame, InboxPrime AI, and Spiderman that are capable of facilitating credential theft at scale. BlackForce, fi�...

React2Shell Exploitation Escalates into Large-Scale Global Attacks, Forcing Emergency Mitigation

CryptoDecember 13, 2025

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has urged federal agencies to patch the recent React2Shell vulnerability by December 12, 2025, amid reports of widespread exploitation�...

ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More Stories

CryptoDecember 12, 2025

This week's cyber stories show how fast the online world can turn risky. Hackers are sneaking malware into movie downloads, browser add-ons, and even software updates people trust. Tech giants and go�...

React2Shell Exploitation Delivers Crypto Miners and New Malware Across Multiple Sectors

CryptoDecember 11, 2025

React2Shellcontinues to witness heavy exploitation, with threat actors leveraging the maximum-severity security flaw in React Server Components (RSC) to deliver cryptocurrency miners and an array of �...

North Korea-linked Actors Exploit React2Shell to Deploy New EtherRAT Malware

CryptoDecember 10, 2025

Threat actors with ties to North Korea have likely become the latest to exploit the recently disclosed critical security React2Shell flaw in React Server Components (RSC) to deliver a previously undo�...

⚡ Weekly Recap: USB Malware, React2Shell, WhatsApp Worms, AI IDE Bugs & More

CryptoDecember 9, 2025

It's been a week of chaos in code and calm in headlines. A bug that broke the internet's favorite framework, hackers chasing AI tools, fake apps stealing cash, and record-breaking cyberattacks — all...