Threat Actors Hide Behind School-Themed Domains In Newly Uncovered Bulletproof Infrastructure

A sophisticated traffic distribution system (TDS) hiding behind education-themed domains. The operation uses bulletproof hosting to deliver phishing pages, scams, and malware files. Analysts triaged a first-stage JavaScript loader from hxxps[:]//toxicsnake-wifes[.]com/promise/script.js. This revealed a commodity cybercrime farm routing victims to…

Hugging Face Repositories Hijacked For Android RAT Delivery, Bypassing Traditional Defenses

A sophisticated Android RAT campaign that exploits Hugging Face’s popular machine learning platform to host and distribute malicious payloads. Attackers combine social engineering, legitimate infrastructure abuse, and Accessibility Services exploitation to gain deep device control, evading hash-based detection through rapid…

Over 200 Magento Stores Compromised In Rootkit Rampage via Zero-Day Exploit

A dangerous wave of attacks exploiting CVE-2025-54236, dubbed “SessionReaper,” in Magento e-commerce platforms. This vulnerability lets attackers bypass authentication by reusing invalid session tokens, paving the way for session hijacking and full server takeovers. Researchers uncovered multiple intrusion campaigns hitting…

Hacking Network Targets Vulnerable Children

A report by the Molly Rose Foundation warns of a global hacking network known as the Com that targets vulnerable children for extreme exploitation and self-harm. This article has been indexed from CyberMaterial Read the original article: Hacking Network Targets…

Former Google Engineer Convicted

A former Google engineer has been convicted of economic espionage and trade secret theft after stealing thousands of confidential AI-related documents to launch a startup in China. This article has been indexed from CyberMaterial Read the original article: Former Google…

Two High Severity n8n Flaws Enable RCE

Security researchers recently uncovered two critical vulnerabilities in the n8n automation platform that could allow authenticated users to execute malicious code remotely. This article has been indexed from CyberMaterial Read the original article: Two High Severity n8n Flaws Enable RCE

Crypto Hackers Target Hinge And Match

The hacking group ShinyHunters claims to have leaked over 10 million user records from major dating platforms including Match, Hinge, and OKCupid. This article has been indexed from CyberMaterial Read the original article: Crypto Hackers Target Hinge And Match

Canada Computers Data Breach Leaks Info

Canada Computers and Electronics has confirmed a data breach involving customer personal data and credit card information, though the retailer has shared very few specifics about the event. This article has been indexed from CyberMaterial Read the original article: Canada…

FBI Seizes Site Catering To Online Crime

The FBI has successfully seized the domains of RAMP, a prominent cybercrime forum that specialized in the trade of ransomware services. This article has been indexed from CyberMaterial Read the original article: FBI Seizes Site Catering To Online Crime