Cybersecurity experts warn of Scattered Spider’s evolving attacks in 2025, targeting platforms like Klaviyo and HubSpot. The hacker group uses advanced social engineering and sophisticated phishing tactics to steal credentials from major brands, including Nike and Twitter. Their recent malware, Spectre RAT, exhibits complex obfuscation, requiring urgent security reviews for impacted organizations.

“PupkinStealer” A New .NET-Based Malware Steals Browser Credentials & Exfiltrate via Telegram
PupkinStealer is a C# malware that steals sensitive data, including browser credentials and desktop files, using Telegram for stealthy data exfiltration. Discovered in April 2025,