Fake AI Installer Campaign Delivering an In-Memory Stealer via the ClickFix Technique
The latest ClickFix campaign has evolved beyond fake CAPTCHA prompts, ClickFix is now disguised as installation instructions for coding assistant software.
The latest ClickFix campaign has evolved beyond fake CAPTCHA prompts, ClickFix is now disguised as installation instructions for coding assistant software.
The rise of online gambling in Indonesia has created a loophole that is often exploited as a means of spreading spyware targeting mobile device users.
Ever wondered how hackers actually break into devices over public Wi-Fi? In this article, We walk through a real brute-force attack simulation, from scanning a network with Nmap to cracking login credentials using Hydra and SecLists.
Analyzing RagaSerpent’s “Tax Audit” malware campaign to uncover new indicators of compromise, enhancing detection accuracy and strengthening threat intelligence capabilities while staying ahead of evolving attack techniques.
Originally published on LinkedIn — reposting here because the thesis lands hardest in security work, where the gap between code that looks right and code that is right is the difference between green dashboards and a breach. A product manager asks an AI for a "one-click buy button."...
SmartLoader Campaign The SmartLoader campaign represents a significant escalation in the sophistication of commodity malware distribution, establishing a critical new threat vector for organizational defense. By combining advanced evasion techniques with large-scale automation, this multi-stage loader poses a significant threat that demands an immediate reassessment of existing security...
Akira (REDBIKE) ransomware, emerging in 2023, is a sophisticated operation linked to the former Conti syndicate, extorting $42M from over 350 SMBs. It targets Windows, Linux, and ESXi systems, using a complex hybrid cryptosystem with ChaCha20, AES-256, and RSA-4096 via the Nettle library.
Jetpack Compose offers more than simplicity—it brings security through code obfuscation. Unlike XML layouts easily decompiled by hackers, Compose UI code gets scrambled by R8 with Kotlin functions, making your app's structure harder to reverse-engineer while boosting productivity.
Akira (REDBIKE) ransomware, emerging in 2023, is a sophisticated operation linked to the former Conti syndicate, extorting $42M from over 350 SMBs. It targets Windows, Linux, and ESXi systems, using a complex hybrid cryptosystem with ChaCha20, AES-256, and RSA-4096 via the Nettle library.
with Renaldi Antonio The internet is full of useful information, but not every website is safe. Some malicious sites secretly attempt to steal personal data without us even realize. And this time, we are trying to addresses this risk by creating a DNS Resolver App. IntelliBroń Aman - Apps on Google...
by Ihsan Alamal Ahmad Network traffic has always been one of the richest sources of truth in cybersecurity. Every packet has its own story, whether it is a harmless web request, a misconfigured service, or a stealthy connection to a command-and-control server. For an analyst, this is both...
by Mulyadi Santosa Since the early release of IntelliBroń security suite, ITSEC team deployed Mini PC based sensors to clients, either in production or demo stage. The device is small yet powerful in terms of computing power. There is also yet another from of deployment that we release. A docker...
This research highlight methodology to visualize the cyber threat from public report using LLM and MCP. Introduction This article introduces our approach to Cyber Threat Visualization, leveraging automation to transform raw, text-based threat reports into structured, actionable intelligence. By utilizing a suite of Model Context Protocol (MCP) tools, we...