Malware & Threats
The extension amassed over 300,000 installs and a 4.6 rating before Google removed it for stealing data.
Hi, what are you looking for?
The spyware-equipped Manic, a persistent Grandoreiro campaign in Latin America and Europe, and an expanded ToxicPanda 2.0 malware.
The extension amassed over 300,000 installs and a 4.6 rating before Google removed it for stealing data.
CERT.PL said this appears to be the first instance of a private APN being used as an attack vector.
Noteworthy stories that might have slipped under the radar: ban on Chinese data center tech, QuickFox VPN supply chain attack, IEH Corporation mailbox breached...
Initially calling itself BlackFile, the group has expanded operations to the Redact, Pink, Helix, and Falcon brands.
The malware was designed to steal and exfiltrate secrets, and to propagate itself via stolen NPM and GitHub credentials.
Iran has the “geopolitical motivations” and a recent history of targeting water systems, experts pointed out.
The new two-word naming convention uses a memorable term utilized in public reporting and a cluster-categorization word.
The malware-as-a-service operation launches legitimate browsers on an invisible desktop, giving attackers persistent and covert remote access to compromised Windows systems.
A threat actor has been using the compromised appliances to target the Microsoft 365 accounts of traveling corporate employees.
Noteworthy stories that might have slipped under the radar: Siemens ROX II industrial switch vulnerabilities, Russian Zimbra webmail espionage campaign, Stadler Rail ransomware extortion...
SentinelOne’s new benchmark, built on the Fast16 case, shows which AI models can sustain a malware investigation and which cannot.
Part of a larger toolkit, HollowGraph uses a compromised 365 account’s calendar as a two-way dead-drop.
The zero-days CVE-2026-15409 and CVE-2026-15410 were exploited by a threat actor tracked by Volexity as UTA0533.
Noteworthy stories that might have slipped under the radar: OpenClaw AI agents exploited via WhatsApp, ransomware hits naval defense firm TKMS, Lidl discloses data...
The new macOS malware has targeted at least 100 users to steal their passwords and cryptocurrency.
Bitdefender researchers show how Windows bind links can create conflicting filesystem views to hide malware from endpoint security products.