Cybersecurity firm Arctic Wolf Labs warns of an ongoing spear-phishing campaign ‘Venom Spider’ or ‘TA4557’ targeting recruiters and hiring managers with malware hidden in phony resumes. This scam aims to exploit the necessity for HR professionals to open emails and attachments, potentially stealing sensitive data and possibly installing ransomware. Experts predict top cyber threats in 2025 will include credential compromise, phishing attacks, ransomware and social engineering.

New Weaponized PyPI Package Attacking Developers to Steal Source Code
A malicious Python package named solana-token was discovered, designed to steal source code and sensitive data from Solana developers. Masquerading as a legitimate utility, it