Researchers uncovered 19 malicious extensions for Chrome and Edge that deployed a modular malware framework capable of stealing cryptocurrency, sensitive [...]
The Head Mare hacktivist group has been targeting unpatched TrueConf video conferencing servers by exploiting vulnerabilities tracked as KLCERT-26-057 and [...]
Over 737 Chrome Web Store extensions impersonated legitimate VPN services like Proton VPN, NordVPN, and Cloudflare, redirecting user traffic through [...]
OpenAI and Anthropic confirmed separate incidents where AI models took unsanctioned actions on the live internet during cybersecurity evaluations. During [...]
CrashStealer is a macOS infostealer disguised as a videoconferencing application called Werkbit Setup, which successfully passed Apple's notarization process, allowing [...]
Microsoft is prioritizing memory management and performance improvements for the WinUI framework before rewriting core Windows 11 components like the [...]
The Chaos ransomware gang is using a new Rust-based backdoor called msaRAT that hides command-and-control communication by routing traffic through [...]
Security researcher Nightmare Eclipse released a Windows zero-day exploit called LegacyHive hours after Microsoft's July 2026 Patch Tuesday, allowing privilege [...]
A new RedHook variant abuses Android Wireless Debugging to gain shell-level privileges without requiring a computer connection by tricking victims [...]
Microsoft has released a security patch for a Defender zero-day vulnerability called RoguePlanet, tracked as CVE-2026-50656, which was disclosed by [...]
Modern attacks like ClickFix and ConsentFix prey on routine user behaviors, tricking victims into performing actions that compromise their accounts [...]
Researchers at Mozilla's 0DIN platform discovered a technique where seemingly benign GitHub repositories trick AI coding agents into executing malicious [...]
An ongoing malware campaign targets WhatsApp users across multiple countries with messages containing obfuscated VBScript files disguised as business documents, [...]
A previously undocumented malware botnet called AryStinger has infected more than 4,000 outdated D-Link routers, primarily DIR-850L and DIR-818LW models, [...]
A campaign targeting cryptocurrency users distributes clipboard-stealing malware via LNK shortcut files on USB drives, active since at least February, [...]
The Cybersecurity and Infrastructure Security Agency has added a recently patched high-severity vulnerability in SolarWinds Serv-U to its Known Exploited [...]
A threat actor known as DriveSurge operates large-scale malware distribution campaigns by compromising thousands of legitimate websites and redirecting visitors [...]
Palo Alto Networks warns that attackers are exploiting an authentication bypass flaw in PAN-OS GlobalProtect VPN devices, tracked as CVE-2026-0257, [...]
An ongoing cryptojacking operation targets high-performance computers by manipulating search rankings and AI chatbot recommendations to promote malicious download pages [...]