The Strela Stealer malware targets specific email clients, especially Microsoft Outlook and Mozilla Thunderbird. Launched in late 2022, the malware has been used in phishing campaigns across Europe. The Strela Stealer is delivered via phishing emails containing a ZIP file that, once opened, connects to a server to download and execute a file. The malware steals email credentials and sends them to a Russian server, with the threat actor behind the malware employing sophisticated tactics to maintain its effectiveness.

IXON VPN Vulnerabilities Let Attackers Gain Access to Windows & Linux Systems
A security assessment by Shelltrail revealed three critical vulnerabilities in the IXON VPN client, allowing privilege escalation on Windows and Linux. Identified as CVE-2025-ZZZ-01, CVE-2025-ZZZ-02,