Archives

Cybersecurity Report: Zero-Day Vulnerability in Google Chrome Allowed Attackers to Bypass Browser’s Sandbox Protection System

save

Kaspersky has identified and helped patch a sophisticated zero-day vulnerability in Google Chrome (CVE-2025-2783) that allowed attackers to bypass the browser’s sandbox protection system. The exploit, discovered by Kaspersky’s Global Research and Analysis Team (GReAT), required no user interaction “beyond clicking a malicious link and… Read More

Cybercriminals Become More Resilient as Technology Advances, Pushing Firms to Proactively Adapt Security Measures – Report

According to the recent Kaspersky Incident Response analyst report, long-lasting attacks, carried out by cybercriminals, that persist for more than a month accounted for 35.2% of the total attacks in 2024. The latest Kaspersky Incident Response analyst report and key insights offer extensive analysis of… Read More

Cybersecurity Report: Valid Accounts Being Used as Initial Vector for Cyberattacks

Valid accounts are increasingly being leveraged as an initial attack vector and as part of cyberattacks in 2024, representing 31.4% of cases. This, according to a cybersecurity update from Kapersky. Public-facing apps still hold the top position “with 39.2% of cases.” These research findings were… Read More

Banking Data Theft Attacks on Smartphones Have Increased Significantly – Report

The number of Trojan banker attacks on smartphones surged by 196% in 2024 compared to the previous year, according to a Kaspersky report. Cybercriminals are shifting tactics, relying on “mass malware distribution to steal banking credentials.” Over the past year, Kaspersky detected more than “33.3… Read More

Stealer Malware Leaked More than 2 Million Bank Cards – Report

Kaspersky Digital Footprint Intelligence estimates that 2.3 million bank cards were leaked on the dark web, based on an “analysis of data-stealing malware log files from 2023-2024.” On average, every 14th infostealer infection results in stolen credit card information, with nearly “26 million devices compromised… Read More

Human-Driven Cyber Attacks Continue to Exploit Vulnerabilities Across Sectors – Cybersecurity Report

According to the latest Kaspersky Managed Detection and Response (MDR) analyst report, advanced persistent threats (APTs) have been detected in 25% of companies, accounting for over 43% of all high-severity incidents. This marks a staggering 74% increase compared to 2023. The Managed Detection and Response… Read More

Nearly 900 Million Phishing Attempts Reported By Kaspersky in 2024

In 2024, cybersecurity firm Kaspersky reportedly blocked 26% more phishing attempts worldwide compared to the previous year. Cybercriminals continued to capitalize “on well-known brands like Booking, Airbnb, TikTok and Telegram to steal credentials or install malware.” Additionally, users encountered more than “125 million attacks involving… Read More

Kaspersky Exposes Malware on GitHub Stealing User Data and Bitcoin

Kaspersky Global Research & Analysis Team (GReAT) discovered hundreds of open source repositories with multistaged malware targeting gamers and crypto investors within a new campaign that was dubbed by Kaspersky as GitVenom. The infected projects include an automation instrument for “interacting with Instagram accounts, a… Read More

Malware Report: Crypto Stealing Trojan Discovered by Kaspersky in Apple App Store, Google Play

Kaspersky has discovered a new data-stealing Trojan, SparkCat, active in the Apple App Store and Google Play. This is said to be the “first known instance” of optical recognition-based malware appearing in AppStore. Kaspersky said they found comments in the code written in Chinese, possibly… Read More

Malware Disguised as Open-Source Plugin: Devices Infected via Compromised Archive Files Appearing to be Skill Assessment Tests

Lazarus’ key operation – “Operation DreamJob” – continues to evolve with sophisticated tactics (involving malware and malicious activities) that have persisted for over five years, according to Kaspersky‘s Global Research and Analysis Team. The targets reportedly include workers from a nuclear-related organization, who were infected… Read More

Crypto Malware: Significant Surge in Interest for Crypto Stealing Drainers on Dark Web – Report

Dark web threads discussing crypto-drainers – malware designed to drain cryptocurrency wallets – saw a rise in 2024, as revealed by the Kaspersky Security Bulletin. Kaspersky reported a “40% spike” in corporate database ads on a prominent dark web forum, highlighting cybercriminals’ “growing focus on… Read More

Nearly 500,000 Malicious Files Detected Daily in 2024, Impacting Individuals and Organizations – Report

Kaspersky’s detection systems have reportedly discovered an average of 467,000 malicious files per day in 2024, marking a “14% increase” compared to the previous year. Certain types of threats saw significant growth with experts “reporting a 33% surge in Trojan detections compared to 2023.” These… Read More

Malicious Apps Posing As VPNs Are Becoming Major Cybersecurity Threat – Report

In Q3 of 2024, Kaspersky professionals reportedly discovered that the number of users encountering apps that “pose” as free VPNs increased by 2.5 times compared to Q2 globally. These apps were malware or programs that could be potentially used by malicious actors. The update from… Read More

Cybersecurity Firm Kaspersky Expands Global Transparency Initiative with South Korea Center

Kaspersky is announcing the opening of its latest Transparency Center in Seoul, South Korea, reaffirming its commitment to delivering the best security assurance for its products and services. Located in the Kaspersky office, the new facility will provide “the company’s stakeholders with services ranging from… Read More

SteelFox Exploits Foxit PDF Editor, AutoCAD for Banking Data Theft and Covert Crypto Mining – Report

SteelFox has reportedly exploited Foxit PDF Editor and AutoCAD for banking data theft and covert crypto mining. Kaspersky’s Global Research and Analysis Team has uncovered a new and ongoing malicious campaign that “exploits popular software, such as Foxit PDF Editor, AutoCAD and JetBrains.” The attackers… Read More

Trojan Attacks: Kaspersky Research and Analysis Team Identifies Grandoreiro Malware Targeting Banks in Mexico

Despite the arrest of key operators in early 2024, Grandoreiro continues to be used by its partners in new campaigns. Kaspersky Global Research and Analysis team (GReAT) has reportedly “discovered a new light version focused on Mexico, targeting around 30 banks.” These findings are to… Read More

Nearly 10 Million of Stolen Account Records from Middle East Found on Dark Web – Cybersecurity Report

Kaspersky’s Digital Footprint Intelligence (DFI) team has released a report that is shedding light on the most pervasive cyberthreats facing organizations in the Middle East. The Kaspersky cybersecurity team has recently delved “deep into the dark web” – exploring everything from cybercriminal forums to shadow… Read More

Cybersecurity Firm Kaspersky Reportedly Detects Over 1 Million Daily Tracking Attempts Across Big Tech Platforms

Kaspersky‘s latest analysis of the 25 most prevalent web tracking services, including Google services, New Relic, Microsoft, revealed over 38 billion instances of web trackers collecting user behavior data in 2024, with an average of one million detections per each day. Web tracking involves collecting,… Read More

Cybersecurity Report: Advanced Persistent Threat Campaign Carried Out By Tropic Trooper Group, Targeting Middle East Governmental Entity

Kaspersky’s Global Research and Analysis Team (GReAT) has discovered a new Advanced Persistent Threat (APT) campaign carried out by the Tropic Trooper group. This operation has been targeting a governmental entity in the Middle East “for over a year, aiming to conduct cyberespionage.” To gain… Read More

Cybersecurity Firm Kaspersky Strengthens Business Presence in Latin America, Establishes Colombia Office

To further strengthen its presence in Latin America, Kaspersky is opening new office in Colombia. This move aims to provide an increasing number of the company’s clients and partners in the region with access “to a comprehensive cybersecurity ecosystem, addressing the full spectrum of cybersecurity… Read More

Send this to a friend