ZCyberNews — Cybersecurity & Tech Intelligence
Mirage Kitten Deploys Node.js, JavaScript RATs in Aviation, FinTech
Mirage Kitten targets aviation and FinTech sectors across the Middle East and Africa with NodeRabbit and PollCat RATs, delivered via trojanized coding challenges on LinkedIn.
See more updates →6 min read
Pro-Ukraine VantaCore Ransomware Hits Russian Firms
Pro-Ukraine group VantaCore, a rebrand of Thor, has hit at least 7 Russian firms with custom ransomware and RATs, demanding millions in ransom, per F6.
CVE-2023-49105
CVE-2023-49105: ownCloud Flaw Exploited to Steal Nuclear Research Data
CVSS 9.8 · government, research
CVE-2023-49105 (CVSS 9.8) added to CISA KEV after Chinese-speaking actor exploited it to steal nuclear research records from a Philippine agency. Patch now.
Read →More from today
See all →- 2dMalwareFive Plead Guilty in Federal ATM Jackpotting Case
- 2dMalwareIranian cyber spies target aviation, fintech developers with new
- 3dMalwareBreaking the Seal: Static Deobfuscation of JSCeal's Compiled V8
- 3dMalwareSpring Ring Vishing Campaign Targets Microsoft Teams Users
- 3dMalwareValleyRAT Backdoor Disguised as Adware Hits Windows Users
Threat Intel

Mirage Kitten Deploys Node.js, JavaScript RATs in Aviation, FinTech
Mirage Kitten targets aviation and FinTech sectors across the Middle East and Africa with NodeRabbit and PollCat RATs, delivered via trojanized coding challenges on LinkedIn.
HelloNet Campaign Hijacks ViPNet Update System to Deploy Malicious
Kaspersky details HelloNet APT campaign targeting Russian government, energy, and transport sectors via ViPNet update system DLL sideloading since May 2026.
Cavern Manticore: Iran-Linked Modular C2 Framework Exposed
Check Point Research tracks Cavern Manticore, an Iran MOIS-linked APT targeting Israeli govt and IT sectors with a modular .NET C2 framework.
Vulnerabilities
9.8
critical
CVE-2023-49105: ownCloud Flaw Exploited to Steal Nuclear Research Data
CVE-2023-49105
9.8
critical
CVE-2026-60004 Gitea RCE Exploited in the Wild, CISA Warns
CVE-2026-60004
9.8
critical
CVE-2026-65400 macOS Flaw Added to CISA KEV, Actively Exploited
CVE-2026-65400
Malware
VantaCore
RANSOMWARE
Pro-Ukraine VantaCore Ransomware Hits Russian Firms
Sep 2 · HIGH
Tren de Aragua
MALWARE
Five Plead Guilty in Federal ATM Jackpotting Case
Sep 1 · —
Mirage Kitten
MALWARE
Iranian cyber spies target aviation, fintech developers with new
Sep 1 · HIGH
Industry News
Boston Scientific Cyberattack
BOSTON SCIENTIFIC
Boston Scientific Cyberattack Disrupts Medical Device Shipments
Aug 27 · HIGH
SickKids Breached Again
HEALTHCARE
SickKids Breached Again as Employee Data Stolen in Third-Party App
Aug 21 · HIGH
SafePal Breach Exposes
SAFEPAL
SafePal Breach Exposes Data of Nearly 40,000 Crypto Wallet Customers
Aug 18 · HIGH
Tools & Techniques

Metasploit Adds Vim Plugin Persistence, Exploits for Three CVEs
Rapid7's Metasploit Framework adds Vim plugin persistence, exploits for CVE-2025-6793 (Marvell QConvergeConsole), CVE-2024-48760 (GestioIP), and CVE-2023-30253 (Dolibarr).
Signal Adds In-App Warnings to Block Russian-Linked Phishing Attacks
Signal introduced new in-app confirmations and warnings to counter phishing attacks linked to Russian state hackers who abused the Linked Device feature to hijack high-profile...
Anthropic Launches Claude Security for AI-Driven Exploit Defense
Anthropic released Claude Security, a defensive AI suite to counter autonomous exploit tools like Mythos that weaponize zero-days in minutes. Targets enterprise SOCs.
AI Security
AI Safety
AI SECURITY
AIs Go Rogue in Cyber Challenges: Supply-Chain Attack Attempts
Aug 21 · HIGH
Black Hat Usa 2026
AI SECURITY
Black Hat USA 2026: AI Outpaces Security Controls, Accountability Gaps
Aug 13 · INFO
AI Security
AI SECURITY
Frontier AI Finds 14,090 Zero-Days in OSS in 2 Months
Aug 4 · CRITICAL
Stay Updated
Get the latest cybersecurity news delivered to your inbox.