yohanmanuja

former bug bounty hunter ,web pentester

QR code cybersecurity risk - malware hidden in steganographic QR codes inside npm package

NPM Package Malware Uses Steganographic QR Codes to Steal Data

Cybersecurity researchers have uncovered a new form of supply chain attack hidden within the npm ecosystem. A malicious npm package was discovered embedding malware inside steganographic QR codes, a technique designed to slip past traditional security defenses. The attack highlights growing risks in opensource software dependencies and developer tools How the Malware Works The compromised…

Read More

TikTok Algorithm Faces U.S. Control Data, Politics, and Security Concerns

TikTok’s future in the United States is undergoing a dramatic shift. Under a new deal, the app’s powerful recommendation algorithm will be retrained exclusively on U.S. user data, with a consortium of American investors taking control. While framed as a national security safeguard, experts warn the move could reshape TikTok’s content, amplify political influence, and…

Read More

Exposed Docker Daemons Fuel ShadowV2 Botnet Attacks

A new cloud native botnet called ShadowV2 is taking aim at organizations worldwide. By abusing exposed Docker daemons and blending into legitimate cloud environments, the malware enables large scale distributed denial of service (DDoS) attacks while evading traditional defenses. With over 24,000 Docker instances exposed online, the potential for exploitation is significant What is ShadowV2?…

Read More

Japan’s Cybersecurity Shortcomings Exposed!! Rising Threats, Weak Defenses

Japan is facing a cybersecurity crisis. A government review revealed hundreds of security incidents in 2024 alone, exposing systemic weaknesses across critical infrastructure. While Tokyo has introduced new laws to expand its defensive capabilities, experts warn that outdated systems and poor planning leave the nation vulnerable to both cybercriminals and nation-state hackers Scale of the…

Read More

Drone Sightings Halt Flights in Copenhagen and Oslo, Aviation Security on Alert

Airports in Copenhagen and Oslo faced unexpected disruptions this weekend after drones were spotted near their airspace. With both airports temporarily halting flights, the incidents highlight growing concerns over drone misuse and the potential risks to aviation, national security, and public safety Drone Disruption in Copenhagen Copenhagen Airport, one of Scandinavia’s busiest hubs, suspended air…

Read More

Ransomware Reality: 47 Victims, $115M Lost to Scattered Spider

Who Is Scattered Spider? Scattered Spider is a cybercrime group known for executing high-impact ransomware attacks across the United States. They gained notoriety for their clever use of social engineering, SIM-swapping, and remote access tools to infiltrate major organizations. Operating with international ties, the group targeted companies with sophisticated techniques and insider manipulation to extort…

Read More