cybersec

#TitleDate
1AI-Driven Pushpaganda Scam Exploits Google Discover to Spread Scareware and Ad FraudApr 14, 4:10 pm
2Microsoft rolls out fast-track to reinstate Windows hardware dev accountsApr 14, 4:10 pm
35 Ways Zero Trust Maximizes Identity SecurityApr 14, 3:10 pm
4Google Adds Rust-Based DNS Parser into Pixel 10 Modem to Enhance SecurityApr 14, 2:10 pm
5Mirax Android RAT Turns Devices into SOCKS5 Proxies, Reaching 220,000 via Meta AdsApr 14, 12:10 pm
6Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report)Apr 14, 10:10 am
7108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 UsersApr 14, 9:10 am
8CISA Adds 6 Known Exploited Flaws in Fortinet, Microsoft, and Adobe SoftwareApr 14, 7:10 am
9ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched ServersApr 14, 7:10 am
10ISC Stormcast For Tuesday, April 14th, 2026 https://isc.sans.edu/podcastdetail/9890, (Tue, Apr 14th)Apr 14, 2:10 am
11European Gym giant Basic-Fit data breach affects 1 million membersApr 13, 10:10 pm
12JanelaRAT Malware Targets Latin American Banks with 14,739 Attacks in Brazil in 2025Apr 13, 8:10 pm
13Critical flaw in wolfSSL library enables forged certificate useApr 13, 8:10 pm
14Stolen Rockstar Games analytics data leaked by extortion gangApr 13, 8:10 pm
15FBI takedown of W3LL phishing service leads to developer arrestApr 13, 7:10 pm
16New Booking.com data breach forces reservation PIN resetsApr 13, 6:10 pm
17OpenAI rotates macOS certs after Axios attack hit code-signing workflowApr 13, 6:10 pm
18FBI and Indonesian Police Dismantle W3LL Phishing Network Behind $20M Fraud AttemptsApr 13, 4:10 pm
19Adobe rolls out emergency fix for Acrobat, Reader zero-day flawApr 13, 4:10 pm
20⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and MoreApr 13, 2:10 pm
21The silent “Storm”: New infostealer hijacks sessions, decrypts server-sideApr 13, 2:10 pm
22Your MTTD Looks Great. Your Post-Alert Gap Doesn'tApr 13, 1:10 pm
23Scans for EncystPHP Webshell, (Mon, Apr 13th)Apr 13, 1:10 pm
24North Korea's APT37 Uses Facebook Social Engineering to Deliver RokRAT MalwareApr 13, 11:10 am
25OpenAI Revokes macOS App Certificate After Malicious Axios Supply Chain IncidentApr 13, 8:10 am
26ISC Stormcast For Monday, April 13th, 2026 https://isc.sans.edu/podcastdetail/9888, (Mon, Apr 13th)Apr 13, 2:10 am
27Critical Marimo pre-auth RCE flaw now under active exploitationApr 12, 3:10 pm
28Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621Apr 12, 6:10 am
29CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor DownloadsApr 12, 6:10 am
30Over 20,000 crypto fraud victims identified in international crackdownApr 11, 3:10 pm
31Citizen Lab: Law Enforcement Used Webloc to Track 500 Million Devices via Ad DataApr 11, 8:10 am
32ChatGPT rolls out new $100 Pro subscription to challenge ClaudeApr 11, 2:10 am
33CPUID hacked to deliver malware via CPU-Z, HWMonitor downloadsApr 10, 5:10 pm
34Nearly 4,000 US industrial devices exposed to Iranian cyberattacksApr 10, 4:10 pm
35Supply chain attack at CPUID pushes malware with CPU-Z/HWMonitorApr 10, 2:10 pm
36GlassWorm Campaign Uses Zig Dropper to Infect Multiple Developer IDEsApr 10, 2:10 pm
37Analysis of one billion CISA KEV remediation records exposes limits of human-scale securityApr 10, 2:10 pm
38Microsoft: Canadian employees targeted in payroll pirate attacksApr 10, 12:10 pm
39Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of DisclosureApr 10, 11:10 am
40Google rolls out Gmail end-to-end encryption on mobile devicesApr 10, 11:10 am
41Browser Extensions Are the New AI Consumption Channel That No One Is Talking AboutApr 10, 11:10 am
42Google Rolls Out DBSC in Chrome 146 to Block Session Theft on WindowsApr 10, 9:10 am
43Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend ServersApr 10, 8:10 am
44Obfuscated JavaScript or Nothing, (Thu, Apr 9th)Apr 10, 7:10 am
45EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallet InstallsApr 10, 6:10 am
46New VENOM phishing attacks steal senior executives' Microsoft loginsApr 9, 10:10 pm
47New ‘LucidRook’ malware used in targeted attacks on NGOs, universitiesApr 9, 10:10 pm
48EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto WalletsApr 9, 8:10 pm
49Healthcare IT solutions provider ChipSoft hit by ransomware attackApr 9, 8:10 pm
50Google Chrome adds infostealer protection against session cookie theftApr 9, 7:10 pm
51Smart Slider updates hijacked to push malicious WordPress, Joomla versionsApr 9, 5:10 pm
52UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing CampaignsApr 9, 5:10 pm
53When attackers already have the keys, MFA is just another door to openApr 9, 3:10 pm
54ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More StoriesApr 9, 2:10 pm
55Webinar: From noise to signal - What threat actors are targeting nextApr 9, 1:10 pm
56Bitter-Linked Hack-for-Hire Campaign Targets Journalists Across MENA RegionApr 9, 12:10 pm
57Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025Apr 9, 12:10 pm
58The Hidden Security Risks of Shadow AI in EnterprisesApr 9, 12:10 pm
59Eurail says December data breach impacts 300,000 individualsApr 9, 11:10 am
60Hackers exploiting Acrobat Reader zero-day flaw since DecemberApr 9, 10:10 am
61Hackers steal $3.6 million from crypto ATM giant Bitcoin DepotApr 9, 8:10 am
62Microsoft suspends dev accounts for high-profile open source projectsApr 9, 7:10 am
63ISC Stormcast For Thursday, April 9th, 2026 https://isc.sans.edu/podcastdetail/9886, (Thu, Apr 9th)Apr 9, 2:10 am
64Number Usage in Passwords: Take Two, (Thu, Apr 9th)Apr 9, 1:10 am
65Hackers use pixel-large SVG trick to hide credit card stealerApr 8, 11:10 pm
66Google: New UNC6783 hackers steal corporate Zendesk support ticketsApr 8, 10:10 pm
67New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS ProxyApr 8, 7:10 pm
68CISA orders feds to patch exploited Ivanti EPMM flaw by SundayApr 8, 7:10 pm
69New macOS stealer campaign uses Script Editor in ClickFix attackApr 8, 7:10 pm
70Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT DevicesApr 8, 6:10 pm
71TeamPCP Supply Chain Campaign: Update 007 - Cisco Source Code Stolen via Trivy-Linked Breach, Google GTIG Tracks TeamPCP as UNC6780, and CISA KEV Deadline Arrives with No Standalone Advisory, (Wed, Apr 8th)Apr 8, 6:10 pm
7213-year-old bug in ActiveMQ lets hackers remotely execute commandsApr 8, 6:10 pm
73APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO AlliesApr 8, 4:10 pm
74More Honeypot Fingerprinting Scans, (Wed, Apr 8th)Apr 8, 3:10 pm
75Is a $30,000 GPU Good at Password Cracking?Apr 8, 2:10 pm
76Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP)Apr 8, 12:10 pm
77Anthropic's Claude Mythos Finds Thousands of Zero-Day Flaws Across Major SystemsApr 8, 10:10 am
78N. Korean Hackers Spread 1,700 Malicious Packages Across npm, PyPI, Go, RustApr 8, 9:10 am
79Microsoft rolls out fix for broken Windows Start Menu searchApr 8, 7:10 am
80Iran-Linked Hackers Disrupt U.S. Critical Infrastructure by Targeting Internet-Exposed PLCsApr 8, 6:10 am
81ISC Stormcast For Wednesday, April 8th, 2026 https://isc.sans.edu/podcastdetail/9884, (Wed, Apr 8th)Apr 8, 2:10 am
82Hackers exploit critical flaw in Ninja Forms WordPress pluginApr 7, 10:10 pm
83FBI: Americans lost a record $21 billion to cybercrime last yearApr 7, 9:10 pm
84Snowflake customers hit in data theft attacks after SaaS integrator breachApr 7, 8:10 pm
85A Little Bit Pivoting: What Web Shells are Attackers Looking for?, (Tue, Apr 7th)Apr 7, 7:10 pm
86Russian State-Linked APT28 Exploits SOHO Routers in Global DNS Hijacking CampaignApr 7, 6:10 pm
87Russia Hacked Routers to Steal Microsoft Office TokensApr 7, 6:10 pm
88US warns of Iranian hackers targeting critical infrastructureApr 7, 6:10 pm
89Max severity Flowise RCE vulnerability now exploited in attacksApr 7, 5:10 pm
90Docker CVE-2026-34040 Lets Attackers Bypass Authorization and Gain Host AccessApr 7, 4:10 pm
91Authorities disrupt router DNS hijacks used to steal Microsoft 365 loginsApr 7, 4:10 pm
92Over 1,000 Exposed ComfyUI Instances Targeted in Cryptomining Botnet CampaignApr 7, 2:10 pm
93Why Your Automated Pentesting Tool Just Hit a WallApr 7, 2:10 pm
94The Hidden Cost of Recurring Credential IncidentsApr 7, 1:10 pm
95[Webinar] How to Close Identity Gaps in 2026 Before AI Exploits Enterprise RiskApr 7, 1:10 pm
96New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-FlipsApr 7, 10:10 am
97China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa RansomwareApr 7, 8:10 am
98Flowise AI Agent Builder Under Active CVSS 10.0 RCE Exploitation; 12,000+ Instances ExposedApr 7, 6:10 am
99German authorities identify REvil and GandCrab ransomware bossesApr 7, 4:10 am
100ISC Stormcast For Tuesday, April 7th, 2026 https://isc.sans.edu/podcastdetail/9882, (Tue, Apr 7th)Apr 7, 2:10 am
101German authorities identify REvil and GangCrab ransomware bossesApr 7, 12:10 am
102New GPUBreach attack enables system takeover via GPU rowhammerApr 6, 10:10 pm
103Iran-Linked Password-Spraying Campaign Targets 300+ Israeli Microsoft 365 OrganizationsApr 6, 8:10 pm
104Microsoft fixes Classic Outlook bug causing email delivery issuesApr 6, 8:10 pm
105Disgruntled researcher leaks “BlueHammer” Windows zero-day exploitApr 6, 8:10 pm
106DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South KoreaApr 6, 6:10 pm
107Microsoft removes Support and Recovery Assistant from WindowsApr 6, 6:10 pm
108CISA orders feds to patch exploited Fortinet EMS flaw by FridayApr 6, 5:10 pm
109Drift $280M crypto theft linked to 6-month in-person operationApr 6, 5:10 pm
110Microsoft links Medusa ransomware affiliate to zero-day attacksApr 6, 5:10 pm
111CISA orders feds to patch Fortinet flaw exploited in attacks by FridayApr 6, 4:10 pm
112⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and MoreApr 6, 3:10 pm
113Multi-OS Cyberattacks: How SOCs Close a Critical Risk in 3 StepsApr 6, 3:10 pm
114Why Simple Breach Monitoring is No Longer EnoughApr 6, 2:10 pm
115How LiteLLM Turned Developer Machines Into Credential Vaults for AttackersApr 6, 1:10 pm
116Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR ToolsApr 6, 11:10 am
117How often are redirects used in phishing in 2026?, (Mon, Apr 6th)Apr 6, 9:10 am
118BKA Identifies REvil Leaders Behind 130 German Ransomware AttacksApr 6, 7:10 am
119Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrabApr 6, 3:10 am
120ISC Stormcast For Monday, April 6th, 2026 https://isc.sans.edu/podcastdetail/9880, (Mon, Apr 6th)Apr 6, 2:10 am
121$285 Million Drift Hack Traced to Six-Month DPRK Social Engineering OperationApr 5, 8:10 pm
122Traffic violation scams switch to QR codes in new phishing textsApr 5, 8:10 pm
123New FortiClient EMS flaw exploited in attacks, emergency patch releasedApr 5, 7:10 pm
124Hackers exploit React2Shell in automated credential theft campaignApr 5, 3:10 pm
125Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMSApr 5, 6:10 am
12636 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent ImplantsApr 5, 6:10 am
127Axios npm hack used fake Teams error fix to hijack maintainer accountApr 4, 9:10 pm
128LinkedIn secretly scans for 6,000+ Chrome extensions, collects dataApr 4, 3:10 pm
129Device code phishing attacks surge 37x as new kits spread onlineApr 4, 3:10 pm
130LinkedIn secretely scans for 6,000+ Chrome extensions, collects dataApr 3, 9:10 pm
131Microsoft Details Cookie-Controlled PHP Web Shells Persisting via Cron on Linux ServersApr 3, 6:10 pm
132China-Linked TA416 Targets European Governments with PlugX and OAuth-Based PhishingApr 3, 6:10 pm
133Hims & Hers warns of data breach after Zendesk support ticket breachApr 3, 6:10 pm
134Die Linke German political party confirms data stolen by Qilin ransomwareApr 3, 5:10 pm
135Evolution of Ransomware: Multi-Extortion Ransomware AttacksApr 3, 3:10 pm
136TeamPCP Supply Chain Campaign: Update 006 - CERT-EU Confirms European Commission Cloud Breach, Sportradar Details Emerge, and Mandiant Quantifies Campaign at 1,000+ SaaS Environments, (Fri, Apr 3rd)Apr 3, 2:10 pm
137Why Third-Party Risk Is the Biggest Gap in Your Clients' Security PostureApr 3, 1:10 pm
138UNC1069 Social Engineering of Axios Maintainer Led to npm Supply Chain AttackApr 3, 1:10 pm
139Microsoft still working to fix Exchange Online mailbox access issuesApr 3, 12:10 pm
140Drift Loses $285 Million in Durable Nonce Social Engineering Attack Linked to DPRKApr 3, 10:10 am
141New SparkCat Variant in iOS, Android Apps Steals Crypto Wallet Recovery Phrase ImagesApr 3, 10:10 am
142Man admits to locking thousands of Windows devices in extortion plotApr 3, 9:10 am
143Microsoft now force upgrades unmanaged Windows 11 24H2 PCsApr 3, 8:10 am
144CERT-EU: European Commission hack exposes data of 30 EU entitiesApr 3, 7:10 am
145Drift loses $280 million North Korean hackers seize Security Council powersApr 3, 6:10 am
146ISC Stormcast For Friday, April 3rd, 2026 https://isc.sans.edu/podcastdetail/9878, (Fri, Apr 3rd)Apr 3, 2:10 am
147Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal CredentialsApr 2, 9:10 pm
148Claude Code leak used to push infostealer malware on GitHubApr 2, 9:10 pm
149Drift loses $280 million as hackers seize Security Council powersApr 2, 7:10 pm
150Cisco Patches 9.8 CVSS IMC and SSM Flaws Allowing Remote System CompromiseApr 2, 5:10 pm
151Residential proxies evaded IP reputation checks in 78% of 4B sessionsApr 2, 4:10 pm
152Attempts to Exploit Exposed "Vite" Installs (CVE-2025-30208), (Thu, Apr 2nd)Apr 2, 3:10 pm
153ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More StoriesApr 2, 2:10 pm
154Medtech giant Stryker fully operational after data-wiping attackApr 2, 2:10 pm
155New Progress ShareFile flaws can be chained in pre-auth RCE attacksApr 2, 2:10 pm
156Adversaries Exploit Vacant Homes to Intercept Mail in Hybrid CybercrimeApr 2, 2:10 pm
157The State of Trusted Open Source ReportApr 2, 12:10 pm
158Researchers Uncover Mining Operation Using ISO Lures to Spread RATs and Crypto MinersApr 2, 12:10 pm
159WhatsApp Alerts 200 Users After Fake iOS App Installed Spyware; Italian Firm Faces ActionApr 2, 11:10 am
160Critical Cisco IMC auth bypass gives attackers Admin accessApr 2, 11:10 am
161Microsoft links Classic Outlook issue to email delivery problemsApr 2, 10:10 am
162Over 14,000 F5 BIG-IP APM instances still exposed to RCE attacksApr 2, 9:10 am
163Apple Expands iOS 18.7.7 Update to More Devices to Block DarkSword ExploitApr 2, 8:10 am
164ISC Stormcast For Thursday, April 2nd, 2026 https://isc.sans.edu/podcastdetail/9876, (Thu, Apr 2nd)Apr 2, 2:10 am
165New CrystalRAT malware adds RAT, stealer and prankware featuresApr 2, 12:10 am
166Hackers exploit TrueConf zero-day to push malicious software updatesApr 1, 10:10 pm
167Apple expands iOS 18 updates to more iPhones to block DarkSword attacksApr 1, 10:10 pm
168New EvilTokens service fuels Microsoft device code phishing attacksApr 1, 8:10 pm
169CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million EmailsApr 1, 6:10 pm
170'NoVoice' Android malware on Google Play infected 2.3 million devicesApr 1, 6:10 pm
171Routine Access Is Powering Modern Intrusions, a New Threat Report FindsApr 1, 3:10 pm
172New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation — Patch ReleasedApr 1, 2:10 pm
173Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC BypassApr 1, 2:10 pm
174Casbaneiro Phishing Targets Latin America and Europe Using Dynamic PDF LuresApr 1, 2:10 pm
175Block the Prompt, Not the Work: The End of "Doctor No"Apr 1, 2:10 pm
176TeamPCP Supply Chain Campaign: Update 005 - First Confirmed Victim Disclosure, Post-Compromise Cloud Enumeration Documented, and Axios Attribution Narrows, (Wed, Apr 1st)Apr 1, 2:10 pm
1773 Reasons Attackers Are Using Your Trusted Tools Against You (And Why You Don’t See It Coming)Apr 1, 12:10 pm
178FBI warns against using Chinese mobile apps due to privacy risksApr 1, 12:10 pm
179Google fixes fourth Chrome zero-day exploited in attacks in 2026Apr 1, 11:10 am
180Malicious Script That Gets Rid of ADS, (Wed, Apr 1st)Apr 1, 11:10 am
181Google Attributes Axios npm Supply Chain Attack to North Korean Group UNC1069Apr 1, 8:10 am
182Claude Code Source Leaked via npm Packaging Error, Anthropic ConfirmsApr 1, 7:10 am
183Google Drive ransomware detection now on by default for paying usersApr 1, 7:10 am
184New Windows 11 emergency update fixes preview update install issuesApr 1, 6:10 am
185ISC Stormcast For Wednesday, April 1st, 2026 https://isc.sans.edu/podcastdetail/9874, (Wed, Apr 1st)Apr 1, 2:10 am
186Claude Code source code accidentally leaked in NPM packageApr 1, 1:10 am
187Google now allows you to change your @gmail.com addressApr 1, 12:10 am
188GIGABYTE Control Center vulnerable to arbitrary file write flawMar 31, 11:10 pm
189Proton launches new "Meet" privacy-focused conferencing platformMar 31, 11:10 pm
190Claude AI finds Vim, Emacs RCE bugs that trigger on file openMar 31, 10:10 pm
191Android Developer Verification Rollout Begins Ahead of September EnforcementMar 31, 8:10 pm
192Cisco source code stolen in Trivy-linked dev environment breachMar 31, 6:10 pm
193TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government NetworksMar 31, 5:10 pm
194Vertex AI Vulnerability Exposes Google Cloud Data and Private ArtifactsMar 31, 2:10 pm
195Hackers compromise Axios npm package to drop cross-platform malwareMar 31, 2:10 pm
196How to Categorize AI Agents and Prioritize RiskMar 31, 2:10 pm
197The AI Arms Race – Why Unified Exposure Management Is Becoming a Boardroom PriorityMar 31, 1:10 pm
198Silver Fox Expands Asia Cyber Campaign with AtlasCross RAT and Fake DomainsMar 31, 1:10 pm
199Microsoft fixes Outlook Classic crashes caused by Teams Meeting add-inMar 31, 12:10 pm
200Hacker charged with stealing $53 million from Uranium crypto exchangeMar 31, 10:10 am
201Application Control Bypass for Data Exfiltration, (Tue, Mar 31st)Mar 31, 8:10 am
202Dutch Finance Ministry takes treasury banking portal offline after breachMar 31, 8:10 am
203Axios Supply Chain Attack Pushes Cross-Platform RAT via Compromised npm AccountMar 31, 7:10 am
204CISA orders feds to patch actively exploited Citrix flaw by ThursdayMar 31, 7:10 am
205ISC Stormcast For Tuesday, March 31st, 2026 https://isc.sans.edu/podcastdetail/9872, (Tue, Mar 31st)Mar 31, 2:10 am
206Healthcare tech firm CareCloud says hackers stole patient dataMar 30, 10:10 pm
207New RoadK1ll WebSocket implant used to pivot on breached networksMar 30, 9:10 pm
208OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token VulnerabilityMar 30, 8:10 pm
209Critical Citrix NetScaler memory flaw actively exploited in attacksMar 30, 7:10 pm
210DeepLoad Malware Uses ClickFix and WMI Persistence to Steal Browser CredentialsMar 30, 5:10 pm
2113 SOC Process Fixes That Unlock Tier 1 ProductivityMar 30, 3:10 pm
212⚡ Weekly Recap: Telecom Sleeper Cells, LLM Jailbreaks, Apple Forces U.K. Age Checks and MoreMar 30, 3:10 pm
213How to Evaluate AI SOC Agents: 7 Questions Gartner Says You Should Be AskingMar 30, 3:10 pm
214Apple adds macOS Terminal warning to block ClickFix attacksMar 30, 3:10 pm
215TeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Compromise, TeamPCP Runs Dual Ransomware Operations, and AstraZeneca Data Released, (Mon, Mar 30th)Mar 30, 3:10 pm
216The State of Secrets Sprawl 2026: 9 Takeaways for CISOsMar 30, 12:10 pm
217Hackers now exploit critical F5 BIG-IP flaw in attacks, patch nowMar 30, 11:10 am
218Microsoft pulls KB5079391 Windows update over install issuesMar 30, 10:10 am
219Russian CTRL Toolkit Delivered via Malicious LNK Files Hijacks RDP via FRP TunnelsMar 30, 10:10 am
220Three China-Linked Clusters Target Southeast Asian Government in 2025 Cyber CampaignMar 30, 8:10 am
221Critical Fortinet Forticlient EMS flaw now exploited in attacksMar 30, 8:10 am
222European Commission confirms data breach after Europa.eu hackMar 30, 7:10 am
223ISC Stormcast For Monday, March 30th, 2026 https://isc.sans.edu/podcastdetail/9870, (Mon, Mar 30th)Mar 30, 2:10 am
224DShield (Cowrie) Honeypot Stats and When Sessions Disconnect, (Mon, Mar 30th)Mar 30, 12:10 am
225FBI confirms hack of Director Patel's personal email inboxMar 29, 9:10 pm
226File read flaw in Smart Slider plugin impacts 500K WordPress sitesMar 29, 3:10 pm
227Iran-Linked Hackers Breach FBI Director’s Personal Email, Hit Stryker With Wiper AttackMar 28, 5:10 pm
228TeamPCP Supply Chain Campaign: Update 003 - Operational Tempo Shift as Campaign Enters Monetization Phase With No New Compromises in 48 Hours, (Sat, Mar 28th)Mar 28, 4:10 pm
229New Infinity Stealer malware grabs macOS data via ClickFix luresMar 28, 3:10 pm
230Citrix NetScaler Under Active Recon for CVE-2026-3055 (CVSS 9.3) Memory Overread BugMar 28, 10:10 am
231TA446 Deploys DarkSword iOS Exploit Kit in Targeted Spear-Phishing CampaignMar 28, 9:10 am
232CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM ExploitationMar 28, 8:10 am
233TA446 Deploys Leaked DarkSword iOS Exploit Kit in Targeted Spear-Phishing CampaignMar 28, 8:10 am
234Backdoored Telnyx PyPI package pushes malware hidden in WAV audioMar 27, 10:10 pm
235Apple Sends Lock Screen Alerts to Outdated iPhones Over Active Web-Based ExploitsMar 27, 7:10 pm
236TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides Stealer in WAV FilesMar 27, 6:10 pm
237European Commission investigating breach after Amazon cloud account hackMar 27, 5:10 pm
238Fake VS Code alerts on GitHub spread malware to developersMar 27, 5:10 pm
239Open VSX Bug Let Malicious VS Code Extensions Bypass Pre-Publish Security ChecksMar 27, 3:10 pm
240TeamPCP Supply Chain Campaign: Update 002 - Telnyx PyPI Compromise, Vect Ransomware Mass Affiliate Program, and First Named Victim Claim, (Fri, Mar 27th)Mar 27, 3:10 pm
241Agentic GRC: Teams Get the Tech. The Mindset Shift Is What's Missing.Mar 27, 2:10 pm
242Bearlyfy Hits Russian Firms with Custom GenieLocker RansomwareMar 27, 1:10 pm
243AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile EvasionMar 27, 1:10 pm
244European Commission investigating breach after Amazon cloud hackMar 27, 1:10 pm
245We Are At WarMar 27, 12:10 pm
246Anti-piracy coalition takes down AnimePlay app with 5 million usersMar 27, 11:10 am
247Windows 11 KB5079391 update rolls out Smart App Control improvementsMar 27, 10:10 am
248Bearlyfy Hits 70+ Russian Firms with Custom GenieLocker RansomwareMar 27, 10:10 am
249LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI FrameworksMar 27, 9:10 am
250Dutch Police discloses security breach after phishing attackMar 27, 9:10 am
251ISC Stormcast For Friday, March 27th, 2026 https://isc.sans.edu/podcastdetail/9868, (Fri, Mar 27th)Mar 27, 2:10 am
252Ajax football club hack exposed fan data, enabled ticket hijackMar 26, 9:10 pm
253CISA: New Langflow flaw actively exploited to hijack AI workflowsMar 26, 8:10 pm
254China-Linked Red Menshen Uses Stealthy BPFDoor Implants to Spy via Telecom NetworksMar 26, 6:10 pm
255TeamPCP Supply Chain Campaign: Update 001 - Checkmarx Scope Wider Than Reported, CISA KEV Entry, and Detection Tools Available, (Thu, Mar 26th)Mar 26, 6:10 pm
256UK sanctions Xinbi marketplace linked to Asian scam centersMar 26, 4:10 pm
257ThreatsDay Bulletin: PQC Push, AI Vuln Hunting, Pirated Traps, Phishing Kits & 20 More StoriesMar 26, 2:10 pm
258Masters of Imitation: How Hackers and Art Forgers Perfect the Art of DeceptionMar 26, 2:10 pm
259Coruna iOS exploit framework linked to Triangulation attacksMar 26, 2:10 pm
260Claude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any WebsiteMar 26, 2:10 pm
261Inside a Modern Fraud Attack: From Bot Signups to Account TakeoversMar 26, 2:10 pm
262WhatsApp rolls out more AI features, iOS multi-account supportMar 26, 2:10 pm
263TikTok for Business accounts targeted in new phishing campaignMar 26, 2:10 pm
264Russia arrests suspected owner of LeakBase cybercrime forumMar 26, 1:10 pm
265[Webinar] Stop Guessing. Learn to Validate Your Defenses Against Real AttacksMar 26, 12:10 pm
266Coruna iOS Kit Reuses 2023 Triangulation Exploit Code in New Mass AttacksMar 26, 12:10 pm
267Suspected RedLine infostealer malware admin extradited to USMar 26, 12:10 pm
268WebRTC Skimmer Bypasses CSP to Steal Payment Data from E-Commerce SitesMar 26, 9:10 am
269ISC Stormcast For Thursday, March 26th, 2026 https://isc.sans.edu/podcastdetail/9866, (Thu, Mar 26th)Mar 26, 2:10 am
270GitHub adds AI-powered bug detection to expand security coverageMar 26, 12:10 am
271Apple Patches (almost) everything again. March 2026 edition., (Wed, Mar 25th)Mar 25, 10:10 pm
272PolyShell attacks target 56% of all vulnerable Magento storesMar 25, 10:10 pm
273Bubble AI app builder abused to steal Microsoft account credentialsMar 25, 8:10 pm
274New Torg Grabber infostealer malware targets 728 crypto walletsMar 25, 7:10 pm
275LeakBase Admin Arrested in Russia Over Massive Stolen Credential MarketplaceMar 25, 6:10 pm
276Citrix urges admins to patch NetScaler flaws as soon as possibleMar 25, 4:10 pm
277GlassWorm Malware Uses Solana Dead Drops to Deliver RAT and Steal Browser, Crypto DataMar 25, 3:10 pm
278Paid AI Accounts Are Now a Hot Underground CommodityMar 25, 2:10 pm
279Device Code Phishing Hits 340+ Microsoft 365 Orgs Across Five Countries via OAuth AbuseMar 25, 1:10 pm
280Russian Hacker Sentenced to 2 Years for TA551 Botnet-Driven Ransomware AttacksMar 25, 1:10 pm
281The Kill Chain Is Obsolete When Your AI Agent Is the ThreatMar 25, 1:10 pm
282Kali Linux 2026.1 released with 8 new tools, new BackTrack modeMar 25, 1:10 pm
283TP-Link warns users to patch critical router auth bypass flawMar 25, 12:10 pm
284Manager of botnet used in ransomware attacks gets 2 years in prisonMar 25, 9:10 am
285FCC Bans New Foreign-Made Routers Over Supply Chain and Cyber Risk ConcernsMar 25, 8:10 am
286TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 via Trivy CI/CD CompromiseMar 25, 7:10 am
287ISC Stormcast For Wednesday, March 25th, 2026 https://isc.sans.edu/podcastdetail/9864, (Wed, Mar 25th)Mar 25, 2:10 am
288SmartApeSG campaign pushes Remcos RAT, NetSupport RAT, StealC, and Sectop RAT (ArechClient2), (Wed, Mar 25th)Mar 25, 1:10 am
289Popular LiteLLM PyPI package backdoored to steal credentials, auth tokensMar 25, 12:10 am
290Popular LiteLLM PyPI package compromised in TeamPCP supply chain attackMar 24, 11:10 pm
291PTC warns of imminent threat from critical Windchill, FlexPLM RCE bugMar 24, 11:10 pm
292FCC bans new routers made outside the USA over security risksMar 24, 9:10 pm
293TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD CompromiseMar 24, 8:10 pm
294Tax Search Ads Deliver ScreenConnect Malware Using Huawei Driver to Disable EDRMar 24, 6:10 pm
295Firefox now has a free built-in VPN with 50GB monthly data limitMar 24, 6:10 pm
296Hackers Use Fake Resumes to Steal Enterprise Credentials and Deploy Crypto MinerMar 24, 5:10 pm
297Microsoft fixes bug causing Classic Outlook sync issues with GmailMar 24, 4:10 pm
298Yanluowang ransomware access broker gets 81 months in prisonMar 24, 2:10 pm
299Infinite Campus warns of breach after ShinyHunters claims data theftMar 24, 2:10 pm
300Detecting IP KVMs, (Tue, Mar 24th)Mar 24, 2:10 pm
301HackerOne discloses employee data breach after Navia hackMar 24, 2:10 pm
302Zero Trust: Bridging the Gap Between Authentication and TrustMar 24, 2:10 pm
3035 Learnings from the First-Ever Gartner Market Guide for Guardian AgentsMar 24, 12:10 pm
304Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and CredentialsMar 24, 12:10 pm
305Dutch Ministry of Finance discloses breach affecting employeesMar 24, 12:10 pm
306TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI CredentialsMar 24, 11:10 am
307The Hidden Cost of Cybersecurity Specialization: Losing Foundational SkillsMar 24, 11:10 am
308Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data LeaksMar 24, 8:10 am
309U.S. Sentences Russian Hacker to 6.75 Years for Role in $9M Ransomware DamageMar 24, 8:10 am
310ISC Stormcast For Tuesday, March 24th, 2026 https://isc.sans.edu/podcastdetail/9862, (Tue, Mar 24th)Mar 24, 2:10 am
311OpenAI rolls out ChatGPT Library to store your personal filesMar 24, 12:10 am
312Mazda discloses security breach exposing employee and partner dataMar 23, 11:10 pm
313Tycoon2FA phishing platform returns after recent police disruptionMar 23, 10:10 pm
314Tool updates: lots of security and logic fixes, (Mon, Mar 23rd)Mar 23, 9:10 pm
315North Korean Hackers Abuse VS Code Auto-Run Tasks to Deploy StoatWaffle MalwareMar 23, 8:10 pm
316Crunchyroll probes breach after hacker claims to steal 6.8M users' dataMar 23, 8:10 pm
317TeamPCP deploys Iran-targeted wiper in Kubernetes attacksMar 23, 8:10 pm
318Trivy supply-chain attack spreads to Docker, GitHub reposMar 23, 6:10 pm
319‘CanisterWorm’ Springs Wiper Attack Targeting IranMar 23, 4:10 pm
320Varonis Atlas: Securing AI and the Data That Powers ItMar 23, 3:10 pm
321We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with ThemMar 23, 2:10 pm
322⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & MoreMar 23, 2:10 pm
323Microsoft Exchange Online service change causes email access issuesMar 23, 1:10 pm
324Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM MalwareMar 23, 12:10 pm
325FBI warns of Handala hackers using Telegram in malware attacksMar 23, 10:10 am
326Trivy Hack Spreads Infostealer via Docker, Triggers Worm and Kubernetes WiperMar 23, 9:10 am
327CISA orders feds to patch DarkSword iOS flaws exploited attacksMar 23, 9:10 am
328New KB5085516 emergency update fixes Microsoft account sign-inMar 23, 8:10 am
329Hackers Exploit CVE-2025-32975 (CVSS 10.0) to Hijack Unpatched Quest KACE SMA SystemsMar 23, 7:10 am
330ISC Stormcast For Monday, March 23rd, 2026 https://isc.sans.edu/podcastdetail/9860, (Mon, Mar 23rd)Mar 23, 2:10 am
331VoidStealer malware steals Chrome master key via debugger trickMar 22, 3:10 pm
332Trivy vulnerability scanner breach pushed infostealer via GitHub ActionsMar 21, 6:10 pm
333Microsoft Azure Monitor alerts abused for callback phishing attacksMar 21, 5:10 pm
334Microsoft Azure Monitor alerts abused in callback phishing campaignsMar 21, 3:10 pm
335Google adds ‘Advanced Flow’ for safe APK sideloading on AndroidMar 21, 3:10 pm
336FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing AttacksMar 21, 2:10 pm
337Oracle Patches Critical CVE-2026-21992 Enabling Unauthenticated RCE in Identity ManagerMar 21, 11:10 am
338CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026Mar 21, 9:10 am
339Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm PackagesMar 21, 8:10 am
340FBI links Signal phishing attacks to Russian intelligence servicesMar 20, 9:10 pm
341Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD SecretsMar 20, 7:10 pm
342Oracle pushes emergency fix for critical Identity Manager RCE flawMar 20, 7:10 pm
343Police take down 373,000 fake CSAM sites in Operation AliceMar 20, 6:10 pm
344Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of DisclosureMar 20, 5:10 pm
345CISA orders feds to patch max-severity Cisco flaw by SundayMar 20, 3:10 pm
346How CISOs Can Survive the Era of Geopolitical CyberattacksMar 20, 2:10 pm
347Magento PolyShell Flaw Enables Unauthenticated Uploads, RCE and Account TakeoverMar 20, 1:10 pm
348Google Adds 24-Hour Wait for Unverified App Sideloading to Reduce Malware and ScamsMar 20, 12:10 pm
349The Importance of Behavioral Analytics in AI-Enabled Cyber AttacksMar 20, 11:10 am
350Musician admits to $10M streaming royalty fraud using AI botsMar 20, 10:10 am
351GSocket Backdoor Delivered Through Bash Script, (Fri, Mar 20th)Mar 20, 9:10 am
352Microsoft: March Windows updates break Teams, OneDrive sign-insMar 20, 8:10 am
353International joint action disrupts world’s largest DDoS botnetsMar 20, 8:10 am
354DoJ Disrupts 3 Million-Device IoT Botnets Behind Record 31.4 Tbps Global DDoS AttacksMar 20, 7:10 am
355Ex-data analyst stole company data in $2.5M extortion schemeMar 20, 7:10 am
35654 EDR Killers Use BYOVD to Exploit 35 Signed Vulnerable Drivers and Disable SecurityMar 20, 6:10 am
357Apple Warns Older iPhones Vulnerable to Coruna, DarkSword Exploit Kit AttacksMar 20, 6:10 am
358ISC Stormcast For Friday, March 20th, 2026 https://isc.sans.edu/podcastdetail/9858, (Fri, Mar 20th)Mar 20, 2:10 am
359Feds Disrupt IoT Botnets Behind Huge DDoS AttacksMar 20, 1:10 am
360Speagle Malware Hijacks Cobra DocGuard to Steal Data via Compromised ServersMar 19, 9:10 pm
361Navia discloses data breach impacting 2.7 million peopleMar 19, 9:10 pm
36254 EDR Killers Use BYOVD to Exploit 34 Signed Vulnerable Drivers and Disable SecurityMar 19, 8:10 pm
363New ‘PolyShell’ flaw allows unauthenticated RCE on Magento e-storesMar 19, 8:10 pm
364FBI seizes Handala data leak site after Stryker cyberattackMar 19, 5:10 pm
365Bitrefill blames North Korean Lazarus group for cyberattackMar 19, 5:10 pm
366ThreatsDay Bulletin: FortiGate RaaS, Citrix Exploits, MCP Abuse, LiveChat Phish & MoreMar 19, 3:10 pm
367Russian hackers exploit Zimbra flaw in Ukrainian govt attacksMar 19, 3:10 pm
368New Perseus Android Banking Malware Monitors Notes Apps to Extract Sensitive DataMar 19, 2:10 pm
3697 Ways to Prevent Privilege Escalation via Password ResetsMar 19, 2:10 pm
370Max severity Ubiquiti UniFi flaw may allow account takeoverMar 19, 1:10 pm
371New ‘Perseus’ Android malware checks user notes for secretsMar 19, 11:10 am
372How Ceros Gives Security Teams Visibility and Control in Claude CodeMar 19, 11:10 am
373CISA urges US orgs to secure Microsoft Intune systems after Stryker breachMar 19, 11:10 am
374DarkSword iOS Exploit Kit Uses 6 Flaws, 3 Zero-Days for Full Device TakeoverMar 19, 10:10 am
375Critical Microsoft SharePoint flaw now exploited in attacksMar 19, 10:10 am
376CISA Warns of Zimbra, SharePoint Flaw Exploits; Cisco Zero-Day Hit in Ransomware AttacksMar 19, 7:10 am
377ISC Stormcast For Thursday, March 19th, 2026 https://isc.sans.edu/podcastdetail/9856, (Thu, Mar 19th)Mar 19, 2:10 am
378Interesting Message Stored in Cowrie Logs, (Wed, Mar 18th)Mar 19, 1:10 am
379Aura confirms data breach exposing 900,000 marketing contactsMar 18, 11:10 pm
380CISA orders feds to patch Zimbra XSS flaw exploited in attacksMar 18, 8:10 pm
381ConnectWise patches new flaw allowing ScreenConnect hijackingMar 18, 7:10 pm
382OFAC Sanctions DPRK IT Worker Network Funding WMD Programs Through Fake Remote JobsMar 18, 6:10 pm
383Interlock Ransomware Exploits Cisco FMC Zero-Day CVE-2026-20131 for Root AccessMar 18, 5:10 pm
384Ransomware gang exploits Cisco flaw in zero-day attacks since JanuaryMar 18, 5:10 pm
385Marquis: Ransomware gang stole data of 672K people in cyberattackMar 18, 4:10 pm
386Scans for "adminer", (Wed, Mar 18th)Mar 18, 2:10 pm
387Nordstrom's email system abused to send crypto scams to customersMar 18, 2:10 pm
388New “Darksword” iOS exploit used in infostealer attack on iPhonesMar 18, 2:10 pm
389The Refund Fraud Economy: Exploiting Major Retailers and Payment PlatformsMar 18, 2:10 pm
3909 Critical IP KVM Flaws Enable Unauthenticated Root Access Across Four VendorsMar 18, 1:10 pm
391Claude Code Security and Magecart: Getting the Threat Model RightMar 18, 1:10 pm
392Critical Unpatched Telnetd Flaw (CVE-2026-32746) Enables Unauthenticated Root RCEMar 18, 1:10 pm
393Product Walkthrough: How Mesh CSMA Reveals and Breaks Attack Paths to Crown JewelsMar 18, 12:10 pm
394ISC Stormcast For Wednesday, March 18th, 2026 https://isc.sans.edu/podcastdetail/9854, (Wed, Mar 18th)Mar 18, 11:10 am
395Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing ExploitMar 18, 9:10 am
396Apple Fixes WebKit Vulnerability Enabling Same-Origin Policy Bypass on iOS and macOSMar 18, 7:10 am
397Critical Unpatched Telnetd Flaw (CVE-2026-32746) Enables Unauthenticated Root RCE via Port 23Mar 18, 6:10 am
398Apple pushes first Background Security Improvements update to fix WebKit flawMar 18, 1:10 am
399GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSXMar 17, 10:10 pm
400Europe sanctions Chinese and Iranian firms for cyberattacksMar 17, 7:10 pm
401AI Flaws in Amazon Bedrock, LangSmith, and SGLang Enable Data Exfiltration and RCEMar 17, 6:10 pm
402LeakNet Ransomware Uses ClickFix via Hacked Sites, Deploys Deno In-Memory LoaderMar 17, 3:10 pm
403Microsoft stops force-installing the Microsoft 365 Copilot appMar 17, 2:10 pm
404New font-rendering trick hides malicious commands from AI toolsMar 17, 2:10 pm
405Top 5 Things CISOs Need to Do Today to Secure AI AgentsMar 17, 2:10 pm
406LeakNet ransomware uses ClickFix, Deno runtime in stealthy attacksMar 17, 1:10 pm
407AI is Everywhere, But CISOs are Still Securing It with Yesterday's Skills and Tools, Study FindsMar 17, 12:10 pm
408IPv4 Mapped IPv6 Addresses, (Tue, Mar 17th)Mar 17, 12:10 pm
409Microsoft shares fix for Windows C: drive access issues on Samsung PCsMar 17, 12:10 pm
410LeakNet ransomware uses ClickFix and Deno runtime for stealthy attacksMar 17, 12:10 pm
411Konni Deploys EndRAT Through Phishing, Uses KakaoTalk to Propagate MalwareMar 17, 11:10 am
412Microsoft: Enabling Teams Meeting add-in breaks Outlook ClassicMar 17, 11:10 am
413New Windows 11 hotpatch fixes Bluetooth device visibility issueMar 17, 11:10 am
414CISA Flags Actively Exploited Wing FTP Vulnerability Leaking Server PathsMar 17, 6:10 am
415ISC Stormcast For Tuesday, March 17th, 2026 https://isc.sans.edu/podcastdetail/9852, (Tue, Mar 17th)Mar 17, 2:10 am
416Stryker attack wiped tens of thousands of devices, no malware neededMar 16, 8:10 pm
417GlassWorm Attack Uses Stolen GitHub Tokens to Force-Push Malware Into Python ReposMar 16, 8:10 pm
418CISA flags Wing FTP Server flaw as actively exploited in attacksMar 16, 6:10 pm
419UK’s Companies House confirms security flaw exposed business dataMar 16, 5:10 pm
420⚡ Weekly Recap: Chrome 0-Days, Router Botnets, AWS Breach, Rogue AI Agents & MoreMar 16, 4:10 pm
421Microsoft Exchange Online outage blocks access to mailboxesMar 16, 4:10 pm
422Microsoft pulls Samsung app blocking Windows C: drive from StoreMar 16, 2:10 pm
423/proxy/ URL scans with IP addresses, (Mon, Mar 16th)Mar 16, 2:10 pm
424Shadow AI is everywhere. Here’s how to find and secure it.Mar 16, 2:10 pm
425ClickFix Campaigns Spread MacSync macOS Infostealer via Fake AI Tool InstallersMar 16, 1:10 pm
426Why Security Validation Is Becoming AgenticMar 16, 1:10 pm
427DRILLAPP Backdoor Targets Ukraine, Abuses Microsoft Edge Debugging for Stealth EspionageMar 16, 10:10 am
428Android 17 Blocks Non-Accessibility Apps from Accessibility API to Prevent Malware AbuseMar 16, 6:10 am
429ISC Stormcast For Monday, March 16th, 2026 https://isc.sans.edu/podcastdetail/9850, (Mon, Mar 16th)Mar 16, 2:10 am
430OpenAI says ChatGPT ads are not rolling out globally for nowMar 16, 12:10 am
431Betterleaks, a new open-source secrets scanner to replace GitleaksMar 15, 3:10 pm
432Microsoft releases Windows 11 OOB hotpatch to fix RRAS RCE flawMar 14, 10:10 pm
433OpenClaw AI Agent Flaws Could Enable Prompt Injection and Data ExfiltrationMar 14, 6:10 pm
434AppsFlyer Web SDK hijacked to spread crypto-stealing JavaScript codeMar 14, 3:10 pm
435GlassWorm Supply-Chain Attack Abuses 72 Open VSX Extensions to Target DevelopersMar 14, 2:10 pm
436SmartApeSG campaign uses ClickFix page to push Remcos RAT, (Sat, Mar 14th)Mar 14, 2:10 am
437Microsoft: Windows 11 users can't access C: drive on some Samsung PCsMar 13, 11:10 pm
438FBI seeks victims of Steam games used to spread malwareMar 13, 9:10 pm
439Fake enterprise VPN sites used to steal company credentialsMar 13, 6:10 pm
440Meta to Shut Down Instagram End-to-End Encrypted Chat Support Starting May 2026Mar 13, 6:10 pm
441Poland's nuclear research centre targeted by cyberattackMar 13, 6:10 pm
442Chinese Hackers Target Southeast Asian Militaries with AppleChris and MemFun MalwareMar 13, 6:10 pm
443Microsoft investigates classic Outlook sync and connection issuesMar 13, 5:10 pm
444INTERPOL Dismantles 45,000 Malicious IPs, Arrests 94 in Global CybercrimeMar 13, 4:10 pm
445Storm-2561 Spreads Trojan VPN Clients via SEO Poisoning to Steal CredentialsMar 13, 3:10 pm
446From VMware to what’s next: Protecting data during hypervisor migrationMar 13, 3:10 pm
447Fake enterprise VPN downloads used to steal company credentialsMar 13, 2:10 pm
448Investigating a New Click-Fix VariantMar 13, 2:10 pm
449Police sinkholes 45,000 IP addresses in cybercrime crackdownMar 13, 2:10 pm
450Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container IsolationMar 13, 10:10 am
451Google Fixes Two Chrome Zero-Days Exploited in the Wild Affecting Skia and V8Mar 13, 10:10 am
452Starbucks discloses data breach affecting hundreds of employeesMar 13, 9:10 am
453A React-based phishing page with credential exfiltration via EmailJS, (Fri, Mar 13th)Mar 13, 8:10 am
454Authorities Disrupt SocksEscort Proxy Botnet Exploiting 369,000 IPs Across 163 CountriesMar 13, 7:10 am
455Google fixes two new Chrome zero-days exploited in attacksMar 13, 7:10 am
456Veeam Patches 7 Critical Backup & Replication Flaws Allowing Remote Code ExecutionMar 13, 6:10 am
457ISC Stormcast For Friday, March 13th, 2026 https://isc.sans.edu/podcastdetail/9848, (Fri, Mar 13th)Mar 13, 2:10 am
458Canadian retail giant Loblaw notifies customers of data breachMar 12, 10:10 pm
459England Hockey investigating ransomware data breachMar 12, 9:10 pm
460AI-generated Slopoly malware used in Interlock ransomware attackMar 12, 8:10 pm
461Hive0163 Uses AI-Assisted Slopoly Malware for Persistent Access in Ransomware AttacksMar 12, 6:10 pm
462Rust-Based VENON Malware Targets 33 Brazilian Banks with Credential-Stealing OverlaysMar 12, 6:10 pm
463US disrupts SocksEscort proxy network powered by Linux malwareMar 12, 5:10 pm
464Veeam warns of critical flaws exposing backup servers to RCE attacksMar 12, 5:10 pm
465Google paid $17.1 million for vulnerability reports in 2025Mar 12, 4:10 pm
466ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & MoreMar 12, 3:10 pm
467How to Scale Phishing Detection in Your SOC: 3 Steps for CISOsMar 12, 3:10 pm
468Going the Extra Mile: Travel Rewards Turn into Underground Currency.Mar 12, 3:10 pm
469Telus Digital confirms breach after hacker claims 1 petabyte data theftMar 12, 3:10 pm
470Apple patches older iPhones and iPads against Coruna exploitsMar 12, 2:10 pm
471Attackers Don't Just Send Phishing Emails. They Weaponize Your SOC's WorkloadMar 12, 12:10 pm
472US charges another ransomware negotiator linked to BlackCat attacksMar 12, 12:10 pm
473Apple Issues Security Updates for Older iOS Devices Targeted by Coruna WebKit ExploitMar 12, 11:10 am
474Six Android Malware Families Target Pix Payments, Banking Apps, and Crypto WalletsMar 12, 9:10 am
475CISA Flags Actively Exploited n8n RCE Bug as 24,700 Instances Remain ExposedMar 12, 6:10 am
476When your IoT Device Logs in as Admin, It?s too Late! [Guest Diary], (Wed, Mar 11th)Mar 12, 2:10 am
477ISC Stormcast For Thursday, March 12th, 2026 https://isc.sans.edu/podcastdetail/9846, (Thu, Mar 12th)Mar 12, 2:10 am
478SQLi flaw in Elementor Ally plugin impacts 250k+ WordPress sitesMar 11, 8:10 pm
479WhatsApp introduces parent-managed accounts for pre-teensMar 11, 8:10 pm
480CISA orders feds to patch n8n RCE flaw exploited in attacksMar 11, 7:10 pm
481Researchers Trick Perplexity's Comet AI Browser Into Phishing Scam in Under Four MinutesMar 11, 6:10 pm
482Medtech giant Stryker offline after Iran-linked wiper malware attackMar 11, 6:10 pm
483Iran-Backed Hackers Claim Wiper Attack on Medtech Firm StrykerMar 11, 5:10 pm
484New PhantomRaven NPM attack wave steals dev data via 88 packagesMar 11, 5:10 pm
485Critical n8n Flaws Allow Remote Code Execution and Exposure of Stored CredentialsMar 11, 4:10 pm
486Meta Disables 150K Accounts Linked to Southeast Asia Scam Centers in Global CrackdownMar 11, 2:10 pm
487Meta adds new WhatsApp, Facebook, and Messenger anti-scam toolsMar 11, 2:10 pm
488What Boards Must Demand in the Age of AI-Automated ExploitationMar 11, 1:10 pm
489Dozens of Vendors Patch Security Flaws Across Enterprise Software and Network DevicesMar 11, 1:10 pm
490Microsoft Patches 84 Flaws in March Patch Tuesday, Including Two Public Zero-DaysMar 11, 10:10 am
491Analyzing "Zombie Zip" Files (CVE-2026-0866), (Wed, Mar 11th)Mar 11, 10:10 am
492UNC6426 Exploits nx npm Supply-Chain Attack to Gain AWS Admin Access in 72 HoursMar 11, 9:10 am
493Five Malicious Rust Crates and AI Bot Exploit CI/CD Pipelines to Steal Developer SecretsMar 11, 6:10 am
494Microsoft Patch Tuesday, March 2026 EditionMar 11, 2:10 am
495ISC Stormcast For Wednesday, March 11th, 2026 https://isc.sans.edu/podcastdetail/9844, (Wed, Mar 11th)Mar 11, 2:10 am
496New ‘BlackSanta’ EDR killer spotted targeting HR departmentsMar 10, 11:10 pm
497New BeatBanker Android malware poses as Starlink app to hijack devicesMar 10, 10:10 pm
498New 'Zombie ZIP' technique lets malware slip past security toolsMar 10, 8:10 pm
499Microsoft releases Windows 10 KB5078885 extended security updateMar 10, 7:10 pm
500FortiGate Devices Exploited to Breach Networks and Steal Service Account CredentialsMar 10, 6:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.