Arab Security Consultants

  • Home
  • Courses
    • EC-Council Programs
    • EC-Council iWeek Courses
    • PECB
      • ISO/IEC 27001 Lead Implementer
      • ISO/IEC 27001 Lead Auditor
    • Cyber Book
  • Organized Events
    • Arab Security Conference
    • Arab Security Cyber WarGames
  • Services
    • CodeRed
    • OhPhish
    • Risk Assessment
    • Social Engineering
    • Identity & Access Security
    • Vulnerability Assessment
    • Penetration Testing
  • Training centers
  • EC-Council with ASC
  • News
  • Contact Us
  • Home
  • Posts tagged "Digital Forensics"

Tag: Digital Forensics

Hackers Hijack Blender 3D Assets to Deploy StealC V2 Data-Stealing Malware

Thursday, 27 November 2025 by Ayman Hamam

Cybersecurity researchers have disclosed details of a new campaign that has leveraged Blender Foundation files to deliver an information stealer known as StealC V2. “This ongoing operation, active for at least six months, involves implanting malicious .blend files on platforms like CGTrader,” Morphisec researcher Shmuel Uzan said in a report shared with The Hacker News. “Users unknowingly download

  • Published in News
Tagged under: .blend File Attack, 3D Asset Malware, ArabSecurityConsultants, ASC, Auto Run Vulnerability, Blender Malware, Blender Security Risk, Browser Data Theft, CGTrader Threat, credential theft, Crypto Wallet Stealer, Cyber Attack Campaign, Cybersecurity Threats, Digital Forensics, Info-Stealer Campaign, Malware Analysis, Morphisec Research, PowerShell Payload, Python Script Exploit, StealC V2, stealer malware, Threat Intelligence

Hackers Exploiting Triofox Flaw to Install Remote Access Tools via Antivirus Feature

Tuesday, 11 November 2025 by Ayman Hamam

Google’s Mandiant Threat Defense on Monday said it discovered n-day exploitation of a now-patched security flaw in Gladinet’s Triofox file-sharing and remote access platform. The critical vulnerability, tracked as CVE-2025-12480 (CVSS score: 9.1), allows an attacker to bypass authentication and access the configuration pages, resulting in the upload and execution of arbitrary payloads. The tech giant said it observed

  • Published in News
Tagged under: Antivirus Bypass, AnyDesk, ASC, Code Execution, CVE-2025-12480, Cyber Attack, Cyber Defense, Cyber Security, Digital Forensics, Exploit Alert, Gladinet, Google Mandiant, InfoSec, Malware Analysis, Mandiant, Patch Management, Patch Now, Plink, privilege escalation, PuTTY, RDP Attack, Remote Access, Security Update, SSH Tunnel, Threat Hunting, Threat Intelligence, Triofox, UNC6485, vulnerability management, Zoho Assist, Zoho UEMS
  • Home
  • Contact Us
  • Services
  • Training Centers
  • GET SOCIAL

Arab Security Consultants | Copyright © 2023 All rights reserved.

TOP