A phishing campaign is using a fake Google Account security page to deliver a web-based app capable of stealing one-time ...
The Hacker News is the top cybersecurity news platform, delivering real-time updates, threat intelligence, data breach ...
IntroductionIn December 2025, Zscaler ThreatLabz discovered a campaign linked to APT37 (also known as ScarCruft, Ruby Sleet, and Velvet Chollima), which is a DPRK-backed threat group. In this campaign ...
A seemingly legitimate security notification from a Google account turns out to be part of a sophisticated phishing campaign ...
What makes this campaign so striking is not just the malware, but where it is being stored. By shifting malicious code into ...