A new kind of Hyper-V ransomware attack is raising alarms across the cybersecurity landscape. RedCurl, a corporate cyber-espionage group known for stealthy attacks since 2018, has pivoted to deploying custom ransomware called QWCrypt. Unlike common ransomware campaigns focused solely on ransom payments, RedCurl’s approach fuses espionage and extortion—targeting Hyper-V environments that form the backbone of […]
The ClickFix attack is a sophisticated phishing campaign that impersonates Booking.com to deliver infostealers and Remote Access Trojans (RATs) to hospitality workers. This phishing attack specifically targets individuals in hospitality organizations in North America, Oceania, South and Southeast Asia, and Northern, Southern, Eastern, and Western Europe, who are most likely to work with Booking.com. Attackers […]