Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer

Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer Source: The Hacker News Cybersecurity researchers have disclosed details of a long-running npm supply chain malware campaign that pushes information stealers and remote access trojans (RAT) to compromised hosts. The campaign has been codenamed MALFEX by CloudSEK and Checkmarx. The activity is assessed to be the work of a Read original

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2 Source: The Hacker News Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling. “Cling is notable not because it introduces a new propagation technique, but because it repurposes ordinar Read original

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2 Source: The Hacker News Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling. “Cling is notable not because it introduces a new propagation technique, but because it repurposes ordinar Read original

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2 Source: The Hacker News Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling. “Cling is notable not because it introduces a new propagation technique, but because it repurposes ordinar Read original

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware Source: The Hacker News The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries. The activity, observed by the Symantec and Carbon Black Threat H Read original

October 3, 2026 Updated: October 8, 2026 1 min

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware Source: The Hacker News The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries. The activity, observed by the Symantec and Carbon Black Threat H Read original

October 3, 2026 Updated: October 8, 2026 1 min

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware Source: The Hacker News The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries. The activity, observed by the Symantec and Carbon Black Threat H Read original

October 3, 2026 Updated: October 8, 2026 1 min

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware Source: The Hacker News The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries. The activity, observed by the Symantec and Carbon Black Threat H Read original

October 3, 2026 Updated: October 8, 2026 1 min

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware Source: The Hacker News The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries. The activity, observed by the Symantec and Carbon Black Threat H Read original

October 3, 2026 Updated: October 8, 2026 1 min

Warlock ransomware breach SharePoint in water, telecom operator attacks

Warlock ransomware breach SharePoint in water, telecom operator attacks Source: BleepingComputer The China-linked ransomware group Warlock targeted a water utility, a telecom provider, a regional government body, and a university by exploiting SharePoint vulnerabilities to gain initial access. […] Read original