Archives: Out of Band

Lazarus Stealer : Android Malware for Russian Bank Credential Theft Through Overlay and SMS Manipulation
2025-08-16
Lazarus Stealer : Android Malware for Russian Bank Credential Theft Through Overlay and SMS Manipulation

EXECUTIVE SUMMARY At CYFIRMA, we deliver actionable intelligence on emerging cyber threats impacting

REVENANT : EXECUTIONLESS, SELF-ASSEMBLING THREAT HIDDEN IN SYSTEM ENTROPY
2025-08-13
REVENANT : EXECUTIONLESS, SELF-ASSEMBLING THREAT HIDDEN IN SYSTEM ENTROPY

EXECUTIVE SUMMARY The REVENANT project exposes a multi-stage, execution less attack methodology capable

APT PROFILE – LAZARUS GROUP
2025-08-13
APT PROFILE – LAZARUS GROUP

The Lazarus Group is a highly sophisticated, state-sponsored cyber threat group attributed to the

CYFIRMA INDUSTRY REPORT : REAL ESTATE & CONSTRUCTION
2025-08-12
CYFIRMA INDUSTRY REPORT : REAL ESTATE & CONSTRUCTION

EXECUTIVE SUMMARY The CYFIRMA Industry Report delivers original cybersecurity insights and telemetry-driven

GREY ZONE WARFARE IN CHINA’S STALLED SOUTH CHINA SEA AMBITIONS
2025-08-08
GREY ZONE WARFARE IN CHINA’S STALLED SOUTH CHINA SEA AMBITIONS

INTRODUCTION – A DECADE OF AGGRESSION For the past several years, an emboldened China has intensified

TRACKING RANSOMWARE : JULY 2025
2025-08-08
TRACKING RANSOMWARE : JULY 2025

EXECUTIVE SUMMARY In July 2025, ransomware activity remained high, with major impacts on consumer

CYFIRMA INDUSTRIES REPORT – INFORMATION TECHNOLOGY
2025-08-04
CYFIRMA INDUSTRIES REPORT – INFORMATION TECHNOLOGY

EXECUTIVE SUMMARY The CYFIRMA Industries Report delivers original cybersecurity insights and telemetry-driven

FAKE TELEGRAM PREMIUM SITE DISTRIBUTES NEW LUMMA STEALER VARIANT
2025-08-03
FAKE TELEGRAM PREMIUM SITE DISTRIBUTES NEW LUMMA STEALER VARIANT

Executive Summary CYFIRMA Threat Intelligence has observed an ongoing malicious campaign leveraging

Fortnightly Vulnerability Summary
2025-08-03
Fortnightly Vulnerability Summary

Fortnightly Vulnerability Summary CHECK OUT THESE FAST FACTS ON FORTNIGHTLY OBSERVED VULNERABILITIES.

APT36: A PHISHING CAMPAIGN TARGETING INDIAN GOVERNMENT ENTITIES
2025-08-03
APT36: A PHISHING CAMPAIGN TARGETING INDIAN GOVERNMENT ENTITIES

EXECUTIVE SUMMARY A sophisticated phishing campaign, possibly attributed to Pakistan-linked APT36

CYFIRMA INDUSTRY REPORT – TELECOMMUNICATIONS & MEDIA
2025-07-29
CYFIRMA INDUSTRY REPORT – TELECOMMUNICATIONS & MEDIA

EXECUTIVE SUMMARY The CYFIRMA Industries Report delivers original cybersecurity insights and telemetry-driven

RAVEN STEALER UNMASKED: Telegram-Based Data Exfiltration.
2025-07-26
RAVEN STEALER UNMASKED: Telegram-Based Data Exfiltration.

EXECUTIVE SUMMARY Raven Stealer is a modern, lightweight, information-stealing malware developed primarily

ANDROID MALWARE POSING AS INDIAN BANK APPS
2025-07-25
ANDROID MALWARE POSING AS INDIAN BANK APPS

ANDROID MALWARE POSING AS INDIAN BANK APPS EXECUTIVE SUMMARY At CYFIRMA, we are committed to delivering

EdskManager RAT: Multi-Stage Malware with HVNC and Evasion Capabilities
2025-07-22
EdskManager RAT: Multi-Stage Malware with HVNC and Evasion Capabilities

Executive Summary At CYFIRMA, we are dedicated to providing current insights into prevalent threats

CYFIRMA INDUSTRY REPORT – MATERIALS
2025-07-21
CYFIRMA INDUSTRY REPORT – MATERIALS

EXECUTIVE SUMMARY The CYFIRMA Industry Report delivers original cybersecurity insights and telemetry-driven

CVE-2025-5777 – Pre-Auth Memory Leak in Citrix NetScaler (CitrixBleed 2)
2025-07-18
CVE-2025-5777 – Pre-Auth Memory Leak in Citrix NetScaler (CitrixBleed 2)

EXECUTIVE SUMMARY CVE‑2025‑5777 is a critical information disclosure vulnerability in Citrix NetScaler

CYFIRMA INDUSTRY REPORT – MANUFACTURING
2025-07-17
CYFIRMA INDUSTRY REPORT – MANUFACTURING

EXECUTIVE SUMMARY The CYFIRMA Industry Report delivers original cybersecurity insights and telemetry-driven

APT PROFILE – FANCY BEAR
2025-07-16
APT PROFILE – FANCY BEAR

Fancy Bear, also known as APT28, is a notorious Russian cyberespionage group with a long history of

Fortnightly Vulnerability Summary
2025-07-15
Fortnightly Vulnerability Summary

Fortnightly Vulnerability Summary CHECK OUT THESE FAST FACTS ON FORTNIGHTLY OBSERVED VULNERABILITIES.

OCTALYN STEALER UNMASKED
2025-07-12
OCTALYN STEALER UNMASKED

EXECUTIVE SUMMARY The Octalyn Forensic Toolkit, publicly hosted on GitHub, presents itself as a research-oriented