⤷ Title: The Ghost in the Terminal: How “Ghost Tap” Malware Hijacks Your NFC Card
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 08:07:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Android malware #Contactless Fraud #Cybercrime 2026 #Ghost Tap #Group_IB #mobile security #NFC Relay #NFU Pay #Point of Sale #TX_NFC
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 08:07:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Android malware #Contactless Fraud #Cybercrime 2026 #Ghost Tap #Group_IB #mobile security #NFC Relay #NFU Pay #Point of Sale #TX_NFC
Information Security News
The Ghost in the Terminal: How “Ghost Tap” Malware Hijacks Your NFC Card
Group-IB researchers have identified a burgeoning proliferation of Android malware within subterranean marketplaces designed to exploit Near Field Communication (NFC) technology for fraudulent con…
⤷ Title: The Blockchain Ghost: DeadLock Ransomware Uses Smart Contracts to Defy Bans
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 Jan 2026 03:26:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BYOVD #Cisco Talos #Cyber Security 2026 #DeadLock #EtherHiding #Group_IB #Infosec News #Polygon Blockchain #ransomware #Session App #smart contracts
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 Jan 2026 03:26:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BYOVD #Cisco Talos #Cyber Security 2026 #DeadLock #EtherHiding #Group_IB #Infosec News #Polygon Blockchain #ransomware #Session App #smart contracts
Penetration Testing Tools
The Blockchain Ghost: DeadLock Ransomware Uses Smart Contracts to Defy Bans
The DeadLock syndicate, which emerged within the cyber threat landscape during the summer of 2025, persists as one
⤷ Title: DeadLock Ransomware: New Strain Hides C2 in Polygon Smart Contracts
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 Jan 2026 02:10:20 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Blockchain security #C2 Infrastructure #Cyber Security #DeadLock #EtherHiding #Group_IB #Polygon Network #ransomware #Session Messenger #smart contracts
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 Jan 2026 02:10:20 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Blockchain security #C2 Infrastructure #Cyber Security #DeadLock #EtherHiding #Group_IB #Polygon Network #ransomware #Session Messenger #smart contracts
Daily CyberSecurity
DeadLock Ransomware: New Strain Hides C2 in Polygon Smart Contracts
A new ransomware family is turning the decentralized dream of blockchain into a cybersecurity nightmare. Analysts at Group-IB have uncovered DeadLock, a ransomware strain discovered in July 2025 t…
⤷ Title: The Invisible Landlord: ShadowSyndicate Rotates Keys to Hide Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:42:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #bulletproof hosting #C2 Servers #Cobalt Strike #Cybercrime #Group_IB #initial access broker #Ransomware Infrastructure #ShadowSyndicate #SSH Key Rotation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:42:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #bulletproof hosting #C2 Servers #Cobalt Strike #Cybercrime #Group_IB #initial access broker #Ransomware Infrastructure #ShadowSyndicate #SSH Key Rotation
Daily CyberSecurity
The Invisible Landlord: ShadowSyndicate Rotates Keys to Hide Infrastructure
Group-IB reveals ShadowSyndicate is evolving. The cybercrime cluster now rotates SSH keys to hide its infrastructure. Is it a BPH or IAB?
⤷ Title: Industrialized Theft: GoldFactory Malware Hijacks Tax Season via Fake ‘Coretax’ Apps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 00:06:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Coretax Fraud #Gigabud.RAT #GoldFactory #Group_IB #MaaS #Malware_as_a_Service #MMRat #Mobile Banking Fraud #social engineering #Vishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 00:06:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Coretax Fraud #Gigabud.RAT #GoldFactory #Group_IB #MaaS #Malware_as_a_Service #MMRat #Mobile Banking Fraud #social engineering #Vishing
Daily CyberSecurity
Industrialized Theft: GoldFactory Malware Hijacks Tax Season via Fake 'Coretax' Apps
Group-IB exposes an industrialized mobile banking fraud campaign in Indonesia. GoldFactory hackers use fake Coretax apps and Gigabud.RAT to drain accounts.
⤷ Title: The Taxman’s Shadow: How a $2M Fraud Syndicate Impersonated Indonesia’s Official Coretax Service
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 03:21:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #accessibility services abuse #Android malware #Coretax Indonesia #DJP Online #Gigabud.RAT #GoldFactory #Group_IB #MMRat #Taotie Trojan #tax fraud 2026 #Vishing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 03:21:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #accessibility services abuse #Android malware #Coretax Indonesia #DJP Online #Gigabud.RAT #GoldFactory #Group_IB #MMRat #Taotie Trojan #tax fraud 2026 #Vishing
Penetration Testing Tools
The Taxman’s Shadow: How a $2M Fraud Syndicate Impersonated Indonesia’s Official Coretax Service
In Indonesia, a sophisticated fraudulent enterprise has been unmasked, masquerading as the official Coretax fiscal service. Adversaries orchestrated
⤷ Title: Operation Olalampo: MuddyWater Unleashes AI-Assisted Rust Malware and Telegram C2 in MENA Espionage Surge
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 24 Feb 2026 00:37:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AI_Assisted Malware #CHAR Backdoor #GhostBackDoor #GhostFetch #Group_IB #MENA Cyber Espionage #MuddyWater APT #Operation Olalampo #Telegram C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 24 Feb 2026 00:37:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AI_Assisted Malware #CHAR Backdoor #GhostBackDoor #GhostFetch #Group_IB #MENA Cyber Espionage #MuddyWater APT #Operation Olalampo #Telegram C2
Daily CyberSecurity
Operation Olalampo: MuddyWater Unleashes AI-Assisted Rust Malware and Telegram C2 in MENA Espionage Surge
Group-IB exposes Operation Olalampo: MuddyWater's new MENA campaign using AI-assisted Rust malware (CHAR) and Telegram bots for stealthy C2 communication.
⤷ Title: The GTFire Scheme: How Cybercriminals are Weaponizing Google’s Trusted Services for Global Phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 02 Mar 2026 00:33:13 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Harvesting #Evasion Tactics #Google Firebase #Google Translate #Group_IB #GTFire #infosec #phishing #SaaS Abuse #threat intelligence #web app
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 02 Mar 2026 00:33:13 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Harvesting #Evasion Tactics #Google Firebase #Google Translate #Group_IB #GTFire #infosec #phishing #SaaS Abuse #threat intelligence #web app
Daily CyberSecurity
The GTFire Scheme: How Cybercriminals are Weaponizing Google’s Trusted Services for Global Phishing
Group-IB uncovers "GTFire," a massive credential-harvesting operation abusing Google Firebase and Translate to bypass security filters in 100+ countries.
⤷ Title: Manual Malice: How Handala Hack Weaponizes AI Wipers and NetBird for Rapid Network Annihilation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 08:45:33 +0000
════════════════════════
⌗ Tags: #Cyber Security #AI_generated malware #Group Policy Exploit #Handala Hack #Iran Cyber Warfare #MOIS #NetBird #NetBird Tunneling #PowerShell Wiper #Ransomware 2026 #Stryker Cyberattack #Void Manticore
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 08:45:33 +0000
════════════════════════
⌗ Tags: #Cyber Security #AI_generated malware #Group Policy Exploit #Handala Hack #Iran Cyber Warfare #MOIS #NetBird #NetBird Tunneling #PowerShell Wiper #Ransomware 2026 #Stryker Cyberattack #Void Manticore
Penetration Testing Tools
Manual Malice: How Handala Hack Weaponizes AI Wipers and NetBird for Rapid Network Annihilation
The Iranian syndicate designated “Handala Hack”—a collective inextricably intertwined with the Void Manticore cluster and the Iranian Ministry
⤷ Title: The Global Takedown: Interpol’s Operation Synergia III Crushes 45,000 Malicious Servers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 09:48:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime Crackdown #Global Security #Group_IB #International Law Enforcement #Interpol #IP Takedown #Operation Synergia III #phishing #ransomware #S2W #Trend Micro
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Mar 2026 09:48:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime Crackdown #Global Security #Group_IB #International Law Enforcement #Interpol #IP Takedown #Operation Synergia III #phishing #ransomware #S2W #Trend Micro
Penetration Testing Tools
The Global Takedown: Interpol’s Operation Synergia III Crushes 45,000 Malicious Servers
An international law enforcement crusade against cybercriminality has yielded monumental results. Constabularies spanning dozens of sovereign nations have