cybersec

#TitleDate
1Fake CAPTCHA IRSF Scam and 120 Keitaro Campaigns Drive Global SMS, Crypto FraudApr 27, 9:10 am
2American utility firm Itron discloses breach of internal IT networkApr 26, 3:10 pm
3Microsoft rolls out revamped Windows Insider ProgramApr 25, 5:10 pm
4Threat actor uses Microsoft Teams to deploy new “Snow” malwareApr 25, 4:10 pm
5Researchers Uncover Pre-Stuxnet ‘fast16’ Malware Targeting Engineering SoftwareApr 25, 10:10 am
6CISA Adds 4 Exploited Flaws to KEV, Sets May 2026 Federal DeadlineApr 25, 6:10 am
7ADT confirms data breach after ShinyHunters leak threatApr 24, 11:10 pm
8Firestarter malware survives Cisco firewall updates, security patchesApr 24, 9:10 pm
9Windows Update gets new controls to reduce forced restartsApr 24, 8:10 pm
10Microsoft to roll out Entra passkeys on Windows in late AprilApr 24, 7:10 pm
11New BlackFile extortion group linked to surge of vishing attacksApr 24, 7:10 pm
12FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security PatchesApr 24, 6:10 pm
13New ‘Pack2TheRoot’ flaw gives hackers root Linux accessApr 24, 6:10 pm
14NASA Employees Duped in Chinese Phishing Scheme Targeting U.S. Defense SoftwareApr 24, 4:10 pm
15DORA and operational resilience: Credential management as a financial risk controlApr 24, 3:10 pm
16Over 10,000 Zimbra servers vulnerable to ongoing XSS attacksApr 24, 2:10 pm
17Microsoft now lets admins uninstall Copilot on enterprise devicesApr 24, 12:10 pm
1826 FakeWallet Apps Found on Apple App Store Targeting Crypto Seed PhrasesApr 24, 12:10 pm
19Bridging the AI Agent Authority Gap: Continuous Observability as the Decision EngineApr 24, 12:10 pm
20UNC6692 Impersonates IT Help Desk via Microsoft Teams to Deploy SNOW MalwareApr 24, 10:10 am
21Tropic Trooper Uses Trojanized SumatraPDF and GitHub to Deploy AdaptixC2Apr 24, 10:10 am
22LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of DisclosureApr 24, 9:10 am
23ISC Stormcast For Friday, April 24th, 2026 https://isc.sans.edu/podcastdetail/9906, (Fri, Apr 24th)Apr 24, 2:10 am
24Hackers exploit file upload bug in Breeze Cache WordPress pluginApr 23, 10:10 pm
25Bitwarden CLI npm package compromised to steal developer credentialsApr 23, 8:10 pm
26UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW MalwareApr 23, 7:10 pm
27Trigona ransomware attacks use custom exfiltration tool to steal dataApr 23, 7:10 pm
28New Checkmarx supply-chain breach affects KICS analysis toolApr 23, 4:10 pm
29ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New StoriesApr 23, 3:10 pm
30Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain CampaignApr 23, 3:10 pm
31Regular Password Resets Aren’t as Safe as You ThinkApr 23, 3:10 pm
32Cosmetics giant Rituals discloses data breach affecting customersApr 23, 3:10 pm
33Microsoft: Some Teams users can’t join meetings after Edge updateApr 23, 2:10 pm
34Project Glasswing Proved AI Can Find the Bugs. Who's Going to Fix Them?Apr 23, 1:10 pm
35[Webinar] Mythos Reality Check: Beating Automated Exploitation at AI SpeedApr 23, 1:10 pm
36UK warns of Chinese hackers using proxy networks to evade detectionApr 23, 1:10 pm
37New GopherWhisper APT group abuses Outlook, Slack, Discord for commsApr 23, 12:10 pm
38Apple Fixes iOS Flaw That Let FBI Recover Deleted Signal MessagesApr 23, 11:10 am
39Apple Patches Exploited Notification Flaw, (Thu, Apr 23rd)Apr 23, 11:10 am
40CISA orders feds to patch BlueHammer flaw exploited as zero-dayApr 23, 11:10 am
41Vercel Finds More Compromised Accounts in Context.ai-Linked BreachApr 23, 10:10 am
42China-Linked GopherWhisper Infects 12 Mongolian Government Systems with Go BackdoorsApr 23, 10:10 am
43Apple Patches iOS Flaw That Stored Deleted Signal Notifications in FBI Forensic CaseApr 23, 9:10 am
44Apple fixes bug that let the FBI recover deleted Signal messagesApr 23, 6:10 am
45ISC Stormcast For Thursday, April 23rd, 2026 https://isc.sans.edu/podcastdetail/9904, (Thu, Apr 23rd)Apr 23, 2:10 am
46Apple fixes iOS bug that retained deleted notification dataApr 22, 9:10 pm
47New Mirai campaign exploits RCE flaw in EoL D-Link routersApr 22, 8:10 pm
48Malicious KICS Docker Images and VS Code Extensions Hit Checkmarx Supply ChainApr 22, 7:10 pm
49Kyber ransomware gang toys with post-quantum encryption on WindowsApr 22, 7:10 pm
50Self-Propagating Supply Chain Worm Hijacks npm Packages to Steal Developer TokensApr 22, 6:10 pm
51Harvester Deploys Linux GoGra Backdoor in South Asia Using Microsoft Graph APIApr 22, 4:10 pm
52Spain dismantles major $4.7M manga piracy platform, arrests fourApr 22, 3:10 pm
53Inside Caller-as-a-Service Fraud: The Scam Economy Has a Hiring ProcessApr 22, 2:10 pm
54Microsoft Teams to get efficiency mode on PCs with limited resourcesApr 22, 1:10 pm
55New npm supply-chain attack self-spreads to steal auth tokensApr 22, 1:10 pm
56Toxic Combinations: When Cross-App Permissions Stack into RiskApr 22, 12:10 pm
57Lotus Wiper Malware Targets Venezuelan Energy Systems in Destructive AttackApr 22, 12:10 pm
58Microsoft traces Universal Print issues to Graph API code changeApr 22, 11:10 am
59Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation BugApr 22, 10:10 am
60New GoGra malware for Linux uses Microsoft Graph API for commsApr 22, 10:10 am
61Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container EscapeApr 22, 9:10 am
62Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy CirclesApr 22, 9:10 am
63Microsoft releases emergency patches for critical ASP.NET flawApr 22, 9:10 am
64Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacksApr 22, 7:10 am
65ISC Stormcast For Wednesday, April 22nd, 2026 https://isc.sans.edu/podcastdetail/9902, (Wed, Apr 22nd)Apr 22, 2:10 am
66[Guest Diary] Beyond Cryptojacking: Telegram tdata as a Credential Harvesting Vector, Lessons from a Honeypot Incident, (Wed, Apr 22nd)Apr 22, 12:10 am
67French govt agency confirms breach as hacker offers to sell dataApr 21, 10:10 pm
68SystemBC C2 Server Reveals 1,570+ Victims in The Gentlemen Ransomware OperationApr 21, 8:10 pm
69New Lotus data wiper used against Venezuelan energy, utility firmsApr 21, 7:10 pm
7022 BRIDGE:BREAK Flaws Expose Thousands of Lantronix and Silex Serial-to-IP ConvertersApr 21, 5:10 pm
7122 BRIDGE:BREAK Flaws Expose 20,000 Lantronix and Silex Serial-to-IP ConvertersApr 21, 4:10 pm
72Ransomware Negotiator Pleads Guilty to Aiding BlackCat Attacks in 2023Apr 21, 3:10 pm
73‘Scattered Spider’ Member ‘Tylerb’ Pleads GuiltyApr 21, 3:10 pm
745 Places where Mature SOCs Keep MTTR Fast and Others Waste TimeApr 21, 2:10 pm
75UK probes Telegram, teen chat sites over CSAM sharing concernsApr 21, 2:10 pm
76Stopping Fraud at Each Stage of the Customer Journey Without Adding FrictionApr 21, 2:10 pm
77CISA flags new SD-WAN flaw as actively exploited in attacksApr 21, 1:10 pm
78Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code ExecutionApr 21, 12:10 pm
79NGate Campaign Targets Brazil, Trojanizes HandyPay to Steal NFC Data and PINsApr 21, 12:10 pm
80Actively exploited Apache ActiveMQ flaw impacts 6,400 serversApr 21, 12:10 pm
81No Exploit Needed: How Attackers Walk Through the Front Door via Identity-Based AttacksApr 21, 12:10 pm
82Former ransomware negotiator pleads guilty to BlackCat attacksApr 21, 11:10 am
83NGate Android malware uses HandyPay NFC app to steal card dataApr 21, 9:10 am
84A .WAV With A Payload, (Tue, Apr 21st)Apr 21, 8:10 am
85CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal DeadlinesApr 21, 7:10 am
86ISC Stormcast For Tuesday, April 21st, 2026 https://isc.sans.edu/podcastdetail/9900, (Tue, Apr 21st)Apr 21, 2:10 am
87KelpDAO suffers $290 million heist tied to Lazarus hackersApr 20, 11:10 pm
88China's Apple App Store infiltrated by crypto-stealing wallet appsApr 20, 10:10 pm
89The Gentlemen ransomware now uses SystemBC for bot-powered attacksApr 20, 8:10 pm
90SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model FilesApr 20, 7:10 pm
91Seiko USA website defaced as hacker claims customer data theftApr 20, 7:10 pm
92Microsoft: Teams increasingly abused in helpdesk impersonation attacksApr 20, 4:10 pm
93⚡ Weekly Recap: Vercel Hack, Push Fraud, QEMU Abused, New Android RATs Emerge & MoreApr 20, 3:10 pm
94British Scattered Spider hacker pleads guilty to crypto theft chargesApr 20, 2:10 pm
95The backup myth that is putting businesses at riskApr 20, 2:10 pm
96Why Most AI Deployments Stall After the DemoApr 20, 1:10 pm
97Microsoft tests Windows Explorer speed, performance improvementsApr 20, 1:10 pm
98Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply ChainApr 20, 11:10 am
99Microsoft pulls service update causing Teams launch failuresApr 20, 10:10 am
100Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT SystemsApr 20, 9:10 am
101Microsoft releases emergency updates to fix Windows Server issuesApr 20, 9:10 am
102Handling the CVE Flood With EPSS, (Mon, Apr 20th)Apr 20, 7:10 am
103Vercel Breach Tied to Context AI Hack Exposes Limited Customer CredentialsApr 20, 5:10 am
104ISC Stormcast For Monday, April 20th, 2026 https://isc.sans.edu/podcastdetail/9898, (Mon, Apr 20th)Apr 20, 2:10 am
105Vercel confirms breach as hackers claim to be selling stolen dataApr 19, 6:10 pm
106Apple account change alerts abused to send phishing emailsApr 19, 4:10 pm
107NIST to stop rating non-priority flaws due to volume increaseApr 19, 3:10 pm
108Critical flaw in Protobuf library enables JavaScript code executionApr 18, 4:10 pm
109Microsoft Teams right-click paste broken by Edge update bugApr 18, 3:10 pm
110NAKIVO v11.2: Ransomware Defense, Faster Replication, vSphere 9, and Proxmox VE 9.0 SupportApr 18, 2:10 pm
111$13.74M Hack Shuts Down Sanctioned Grinex Exchange After Intelligence ClaimsApr 18, 9:10 am
112[Webinar] Eliminate Ghost Identities Before They Expose Your Enterprise DataApr 18, 9:10 am
113Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack TBK DVRs for DDoS BotnetApr 18, 7:10 am
114Payouts King ransomware uses QEMU VMs to bypass endpoint securityApr 17, 8:10 pm
115Inside an Underground Guide: How Threat Actors Vet Stolen Credit Card ShopsApr 17, 3:10 pm
116Grinex exchange blames "Western intelligence" for $13.7M crypto hackApr 17, 3:10 pm
117Three Microsoft Defender Zero-Days Actively Exploited; Two Still UnpatchedApr 17, 2:10 pm
118Webinar: From phishing to fallout — Why MSPs must rethink both security and recoveryApr 17, 1:10 pm
119Google Blocks 8.3B Policy-Violating Ads in 2025, Launches Android 17 Privacy OverhaulApr 17, 12:10 pm
120CISA flags Apache ActiveMQ flaw as actively exploited in attacksApr 17, 10:10 am
121Man gets 30 months for selling thousands of hacked DraftKings accountsApr 17, 8:10 am
122NIST Limits CVE Enrichment After 263% Surge in Vulnerability SubmissionsApr 17, 8:10 am
123Microsoft: Some Windows servers enter reboot loops after April patchesApr 17, 8:10 am
124Operation PowerOFF Seizes 53 DDoS Domains, Exposes 3 Million Criminal AccountsApr 17, 7:10 am
125Recently leaked Windows zero-days now exploited in attacksApr 17, 7:10 am
126Apache ActiveMQ CVE-2026-34197 Added to CISA KEV Amid Active ExploitationApr 17, 4:10 am
127ISC Stormcast For Friday, April 17th, 2026 https://isc.sans.edu/podcastdetail/9896, (Fri, Apr 17th)Apr 17, 2:10 am
128Lumma Stealer infection with Sectop RAT (ArechClient2), (Fri, Apr 17th)Apr 17, 1:10 am
129Operation PowerOFF identifies 75k DDoS users, takes down 53 domainsApr 16, 11:10 pm
130ZionSiphon malware designed to sabotage water treatment systemsApr 16, 10:10 pm
131New Microsoft Defender “RedSun” zero-day PoC grants SYSTEM privilegesApr 16, 9:10 pm
132Newly Discovered PowMix Botnet Hits Czech Workers Using Randomized C2 TrafficApr 16, 7:10 pm
133Hackers exploit Marimo flaw to deploy NKAbuse malware from Hugging FaceApr 16, 5:10 pm
134Google expands Gemini AI use to fight malicious ads on its platformApr 16, 4:10 pm
135ThreatsDay Bulletin: Defender 0-Day, SonicWall Brute-Force, 17-Year-Old Excel RCE and 15 More StoriesApr 16, 2:10 pm
136Most "AI SOCs" Are Just Faster Triage. That's Not Enough.Apr 16, 2:10 pm
137New ATHR vishing platform uses AI voice agents for automated attacksApr 16, 2:10 pm
138[Webinar] Find and Eliminate Orphaned Non-Human Identities in Your EnvironmentApr 16, 1:10 pm
139Hidden Passenger? How Taboola Routes Logged-In Banking Sessions to TemuApr 16, 12:10 pm
140Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto AttacksApr 16, 12:10 pm
141Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code ExecutionApr 16, 12:10 pm
142Cisco says critical Webex Services flaw requires customer actionApr 16, 12:10 pm
143Data breach at edtech giant McGraw Hill affects 13.5 million accountsApr 16, 11:10 am
144US nationals behind DPRK IT worker 'laptop farm' sent to prisonApr 16, 9:10 am
145Microsoft: April Windows Server 2025 update may fail to installApr 16, 8:10 am
146UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware CampaignApr 16, 7:10 am
147ISC Stormcast For Thursday, April 16th, 2026 https://isc.sans.edu/podcastdetail/9894, (Thu, Apr 16th)Apr 16, 2:10 am
148[Guest Diary] Compromised DVRs and Finding Them in the Wild, (Thu, Apr 16th)Apr 16, 12:10 am
149Critical Nginx UI auth bypass flaw now actively exploited in the wildApr 15, 11:10 pm
150New AgingFly malware used in attacks on Ukraine govt, hospitalsApr 15, 10:10 pm
151WordPress plugin suite hacked to push malware to thousands of sitesApr 15, 9:10 pm
152n8n Webhooks Abused Since October 2025 to Deliver Malware via Phishing EmailsApr 15, 6:10 pm
153Signed software abused to deploy antivirus-killing scriptsApr 15, 6:10 pm
154Microsoft pays $2.3M for cloud and AI flaws at Zero Day QuestApr 15, 5:10 pm
155CISA flags Windows Task Host vulnerability as exploited in attacksApr 15, 3:10 pm
156April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and MoreApr 15, 2:10 pm
157Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server TakeoverApr 15, 2:10 pm
158Rolling Networks: Securing the Transportation SectorApr 15, 2:10 pm
159Deterministic + Agentic AI: The Architecture Exposure Validation RequiresApr 15, 1:10 pm
160Microsoft: April updates trigger BitLocker key prompts on some serversApr 15, 12:10 pm
161Microsoft fixes bug behind Windows Server 2025 automatic upgradesApr 15, 11:10 am
162Microsoft Issues Patches for SharePoint Zero-Day and 168 Other New VulnerabilitiesApr 15, 9:10 am
163OpenAI Launches GPT-5.4-Cyber with Expanded Access for Security TeamsApr 15, 6:10 am
164ISC Stormcast For Wednesday, April 15th, 2026 https://isc.sans.edu/podcastdetail/9892, (Wed, Apr 15th)Apr 15, 2:10 am
165Scanning for AI Models, (Tue, Apr 14th)Apr 15, 1:10 am
166Microsoft adds Windows protections for malicious Remote Desktop filesApr 14, 11:10 pm
167Over 100 Chrome Web Store extensions steal user accounts, dataApr 14, 10:10 pm
168Patch Tuesday, April 2026 EditionApr 14, 10:10 pm
169Crypto-exchange Kraken extorted by hackers after insider breachApr 14, 10:10 pm
170Over 100 Chrome extensions in Web Store target users accounts and dataApr 14, 9:10 pm
171Microsoft April 2026 Patch Tuesday fixes 167 flaws, 2 zero-daysApr 14, 6:10 pm
172Microsoft Patch Tuesday April 2026., (Tue, Apr 14th)Apr 14, 6:10 pm
173Windows 11 cumulative updates KB5083769 & KB5082052 releasedApr 14, 6:10 pm
174McGraw-Hill confirms data breach following extortion threatApr 14, 6:10 pm
175Microsoft releases Windows 10 KB5082200 extended security updateApr 14, 6:10 pm
176New PHP Composer Flaws Enable Arbitrary Command Execution — Patches ReleasedApr 14, 5:10 pm
177Fake Ledger Live app on Apple’s App Store stole $9.5M in cryptoApr 14, 5:10 pm
178AI-Driven Pushpaganda Scam Exploits Google Discover to Spread Scareware and Ad FraudApr 14, 4:10 pm
179Microsoft rolls out fast-track to reinstate Windows hardware dev accountsApr 14, 4:10 pm
1805 Ways Zero Trust Maximizes Identity SecurityApr 14, 3:10 pm
181Google Adds Rust-Based DNS Parser into Pixel 10 Modem to Enhance SecurityApr 14, 2:10 pm
182Mirax Android RAT Turns Devices into SOCKS5 Proxies, Reaching 220,000 via Meta AdsApr 14, 12:10 pm
183Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report)Apr 14, 10:10 am
184108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 UsersApr 14, 9:10 am
185CISA Adds 6 Known Exploited Flaws in Fortinet, Microsoft, and Adobe SoftwareApr 14, 7:10 am
186ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched ServersApr 14, 7:10 am
187ISC Stormcast For Tuesday, April 14th, 2026 https://isc.sans.edu/podcastdetail/9890, (Tue, Apr 14th)Apr 14, 2:10 am
188European Gym giant Basic-Fit data breach affects 1 million membersApr 13, 10:10 pm
189JanelaRAT Malware Targets Latin American Banks with 14,739 Attacks in Brazil in 2025Apr 13, 8:10 pm
190Critical flaw in wolfSSL library enables forged certificate useApr 13, 8:10 pm
191Stolen Rockstar Games analytics data leaked by extortion gangApr 13, 8:10 pm
192FBI takedown of W3LL phishing service leads to developer arrestApr 13, 7:10 pm
193New Booking.com data breach forces reservation PIN resetsApr 13, 6:10 pm
194OpenAI rotates macOS certs after Axios attack hit code-signing workflowApr 13, 6:10 pm
195FBI and Indonesian Police Dismantle W3LL Phishing Network Behind $20M Fraud AttemptsApr 13, 4:10 pm
196Adobe rolls out emergency fix for Acrobat, Reader zero-day flawApr 13, 4:10 pm
197⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and MoreApr 13, 2:10 pm
198The silent “Storm”: New infostealer hijacks sessions, decrypts server-sideApr 13, 2:10 pm
199Your MTTD Looks Great. Your Post-Alert Gap Doesn'tApr 13, 1:10 pm
200Scans for EncystPHP Webshell, (Mon, Apr 13th)Apr 13, 1:10 pm
201North Korea's APT37 Uses Facebook Social Engineering to Deliver RokRAT MalwareApr 13, 11:10 am
202OpenAI Revokes macOS App Certificate After Malicious Axios Supply Chain IncidentApr 13, 8:10 am
203ISC Stormcast For Monday, April 13th, 2026 https://isc.sans.edu/podcastdetail/9888, (Mon, Apr 13th)Apr 13, 2:10 am
204Critical Marimo pre-auth RCE flaw now under active exploitationApr 12, 3:10 pm
205Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621Apr 12, 6:10 am
206CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor DownloadsApr 12, 6:10 am
207Over 20,000 crypto fraud victims identified in international crackdownApr 11, 3:10 pm
208Citizen Lab: Law Enforcement Used Webloc to Track 500 Million Devices via Ad DataApr 11, 8:10 am
209ChatGPT rolls out new $100 Pro subscription to challenge ClaudeApr 11, 2:10 am
210CPUID hacked to deliver malware via CPU-Z, HWMonitor downloadsApr 10, 5:10 pm
211Nearly 4,000 US industrial devices exposed to Iranian cyberattacksApr 10, 4:10 pm
212Supply chain attack at CPUID pushes malware with CPU-Z/HWMonitorApr 10, 2:10 pm
213GlassWorm Campaign Uses Zig Dropper to Infect Multiple Developer IDEsApr 10, 2:10 pm
214Analysis of one billion CISA KEV remediation records exposes limits of human-scale securityApr 10, 2:10 pm
215Microsoft: Canadian employees targeted in payroll pirate attacksApr 10, 12:10 pm
216Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of DisclosureApr 10, 11:10 am
217Google rolls out Gmail end-to-end encryption on mobile devicesApr 10, 11:10 am
218Browser Extensions Are the New AI Consumption Channel That No One Is Talking AboutApr 10, 11:10 am
219Google Rolls Out DBSC in Chrome 146 to Block Session Theft on WindowsApr 10, 9:10 am
220Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend ServersApr 10, 8:10 am
221Obfuscated JavaScript or Nothing, (Thu, Apr 9th)Apr 10, 7:10 am
222EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallet InstallsApr 10, 6:10 am
223New VENOM phishing attacks steal senior executives' Microsoft loginsApr 9, 10:10 pm
224New ‘LucidRook’ malware used in targeted attacks on NGOs, universitiesApr 9, 10:10 pm
225EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto WalletsApr 9, 8:10 pm
226Healthcare IT solutions provider ChipSoft hit by ransomware attackApr 9, 8:10 pm
227Google Chrome adds infostealer protection against session cookie theftApr 9, 7:10 pm
228Smart Slider updates hijacked to push malicious WordPress, Joomla versionsApr 9, 5:10 pm
229UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing CampaignsApr 9, 5:10 pm
230When attackers already have the keys, MFA is just another door to openApr 9, 3:10 pm
231ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More StoriesApr 9, 2:10 pm
232Webinar: From noise to signal - What threat actors are targeting nextApr 9, 1:10 pm
233Bitter-Linked Hack-for-Hire Campaign Targets Journalists Across MENA RegionApr 9, 12:10 pm
234Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025Apr 9, 12:10 pm
235The Hidden Security Risks of Shadow AI in EnterprisesApr 9, 12:10 pm
236Eurail says December data breach impacts 300,000 individualsApr 9, 11:10 am
237Hackers exploiting Acrobat Reader zero-day flaw since DecemberApr 9, 10:10 am
238Hackers steal $3.6 million from crypto ATM giant Bitcoin DepotApr 9, 8:10 am
239Microsoft suspends dev accounts for high-profile open source projectsApr 9, 7:10 am
240ISC Stormcast For Thursday, April 9th, 2026 https://isc.sans.edu/podcastdetail/9886, (Thu, Apr 9th)Apr 9, 2:10 am
241Number Usage in Passwords: Take Two, (Thu, Apr 9th)Apr 9, 1:10 am
242Hackers use pixel-large SVG trick to hide credit card stealerApr 8, 11:10 pm
243Google: New UNC6783 hackers steal corporate Zendesk support ticketsApr 8, 10:10 pm
244New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS ProxyApr 8, 7:10 pm
245CISA orders feds to patch exploited Ivanti EPMM flaw by SundayApr 8, 7:10 pm
246New macOS stealer campaign uses Script Editor in ClickFix attackApr 8, 7:10 pm
247Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT DevicesApr 8, 6:10 pm
248TeamPCP Supply Chain Campaign: Update 007 - Cisco Source Code Stolen via Trivy-Linked Breach, Google GTIG Tracks TeamPCP as UNC6780, and CISA KEV Deadline Arrives with No Standalone Advisory, (Wed, Apr 8th)Apr 8, 6:10 pm
24913-year-old bug in ActiveMQ lets hackers remotely execute commandsApr 8, 6:10 pm
250APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO AlliesApr 8, 4:10 pm
251More Honeypot Fingerprinting Scans, (Wed, Apr 8th)Apr 8, 3:10 pm
252Is a $30,000 GPU Good at Password Cracking?Apr 8, 2:10 pm
253Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP)Apr 8, 12:10 pm
254Anthropic's Claude Mythos Finds Thousands of Zero-Day Flaws Across Major SystemsApr 8, 10:10 am
255N. Korean Hackers Spread 1,700 Malicious Packages Across npm, PyPI, Go, RustApr 8, 9:10 am
256Microsoft rolls out fix for broken Windows Start Menu searchApr 8, 7:10 am
257Iran-Linked Hackers Disrupt U.S. Critical Infrastructure by Targeting Internet-Exposed PLCsApr 8, 6:10 am
258ISC Stormcast For Wednesday, April 8th, 2026 https://isc.sans.edu/podcastdetail/9884, (Wed, Apr 8th)Apr 8, 2:10 am
259Hackers exploit critical flaw in Ninja Forms WordPress pluginApr 7, 10:10 pm
260FBI: Americans lost a record $21 billion to cybercrime last yearApr 7, 9:10 pm
261Snowflake customers hit in data theft attacks after SaaS integrator breachApr 7, 8:10 pm
262A Little Bit Pivoting: What Web Shells are Attackers Looking for?, (Tue, Apr 7th)Apr 7, 7:10 pm
263Russian State-Linked APT28 Exploits SOHO Routers in Global DNS Hijacking CampaignApr 7, 6:10 pm
264Russia Hacked Routers to Steal Microsoft Office TokensApr 7, 6:10 pm
265US warns of Iranian hackers targeting critical infrastructureApr 7, 6:10 pm
266Max severity Flowise RCE vulnerability now exploited in attacksApr 7, 5:10 pm
267Docker CVE-2026-34040 Lets Attackers Bypass Authorization and Gain Host AccessApr 7, 4:10 pm
268Authorities disrupt router DNS hijacks used to steal Microsoft 365 loginsApr 7, 4:10 pm
269Over 1,000 Exposed ComfyUI Instances Targeted in Cryptomining Botnet CampaignApr 7, 2:10 pm
270Why Your Automated Pentesting Tool Just Hit a WallApr 7, 2:10 pm
271The Hidden Cost of Recurring Credential IncidentsApr 7, 1:10 pm
272[Webinar] How to Close Identity Gaps in 2026 Before AI Exploits Enterprise RiskApr 7, 1:10 pm
273New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-FlipsApr 7, 10:10 am
274China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa RansomwareApr 7, 8:10 am
275Flowise AI Agent Builder Under Active CVSS 10.0 RCE Exploitation; 12,000+ Instances ExposedApr 7, 6:10 am
276German authorities identify REvil and GandCrab ransomware bossesApr 7, 4:10 am
277ISC Stormcast For Tuesday, April 7th, 2026 https://isc.sans.edu/podcastdetail/9882, (Tue, Apr 7th)Apr 7, 2:10 am
278German authorities identify REvil and GangCrab ransomware bossesApr 7, 12:10 am
279New GPUBreach attack enables system takeover via GPU rowhammerApr 6, 10:10 pm
280Iran-Linked Password-Spraying Campaign Targets 300+ Israeli Microsoft 365 OrganizationsApr 6, 8:10 pm
281Microsoft fixes Classic Outlook bug causing email delivery issuesApr 6, 8:10 pm
282Disgruntled researcher leaks “BlueHammer” Windows zero-day exploitApr 6, 8:10 pm
283DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South KoreaApr 6, 6:10 pm
284Microsoft removes Support and Recovery Assistant from WindowsApr 6, 6:10 pm
285CISA orders feds to patch exploited Fortinet EMS flaw by FridayApr 6, 5:10 pm
286Drift $280M crypto theft linked to 6-month in-person operationApr 6, 5:10 pm
287Microsoft links Medusa ransomware affiliate to zero-day attacksApr 6, 5:10 pm
288CISA orders feds to patch Fortinet flaw exploited in attacks by FridayApr 6, 4:10 pm
289⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and MoreApr 6, 3:10 pm
290Multi-OS Cyberattacks: How SOCs Close a Critical Risk in 3 StepsApr 6, 3:10 pm
291Why Simple Breach Monitoring is No Longer EnoughApr 6, 2:10 pm
292How LiteLLM Turned Developer Machines Into Credential Vaults for AttackersApr 6, 1:10 pm
293Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR ToolsApr 6, 11:10 am
294How often are redirects used in phishing in 2026?, (Mon, Apr 6th)Apr 6, 9:10 am
295BKA Identifies REvil Leaders Behind 130 German Ransomware AttacksApr 6, 7:10 am
296Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrabApr 6, 3:10 am
297ISC Stormcast For Monday, April 6th, 2026 https://isc.sans.edu/podcastdetail/9880, (Mon, Apr 6th)Apr 6, 2:10 am
298$285 Million Drift Hack Traced to Six-Month DPRK Social Engineering OperationApr 5, 8:10 pm
299Traffic violation scams switch to QR codes in new phishing textsApr 5, 8:10 pm
300New FortiClient EMS flaw exploited in attacks, emergency patch releasedApr 5, 7:10 pm
301Hackers exploit React2Shell in automated credential theft campaignApr 5, 3:10 pm
302Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMSApr 5, 6:10 am
30336 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent ImplantsApr 5, 6:10 am
304Axios npm hack used fake Teams error fix to hijack maintainer accountApr 4, 9:10 pm
305LinkedIn secretly scans for 6,000+ Chrome extensions, collects dataApr 4, 3:10 pm
306Device code phishing attacks surge 37x as new kits spread onlineApr 4, 3:10 pm
307LinkedIn secretely scans for 6,000+ Chrome extensions, collects dataApr 3, 9:10 pm
308Microsoft Details Cookie-Controlled PHP Web Shells Persisting via Cron on Linux ServersApr 3, 6:10 pm
309China-Linked TA416 Targets European Governments with PlugX and OAuth-Based PhishingApr 3, 6:10 pm
310Hims & Hers warns of data breach after Zendesk support ticket breachApr 3, 6:10 pm
311Die Linke German political party confirms data stolen by Qilin ransomwareApr 3, 5:10 pm
312Evolution of Ransomware: Multi-Extortion Ransomware AttacksApr 3, 3:10 pm
313TeamPCP Supply Chain Campaign: Update 006 - CERT-EU Confirms European Commission Cloud Breach, Sportradar Details Emerge, and Mandiant Quantifies Campaign at 1,000+ SaaS Environments, (Fri, Apr 3rd)Apr 3, 2:10 pm
314Why Third-Party Risk Is the Biggest Gap in Your Clients' Security PostureApr 3, 1:10 pm
315UNC1069 Social Engineering of Axios Maintainer Led to npm Supply Chain AttackApr 3, 1:10 pm
316Microsoft still working to fix Exchange Online mailbox access issuesApr 3, 12:10 pm
317Drift Loses $285 Million in Durable Nonce Social Engineering Attack Linked to DPRKApr 3, 10:10 am
318New SparkCat Variant in iOS, Android Apps Steals Crypto Wallet Recovery Phrase ImagesApr 3, 10:10 am
319Man admits to locking thousands of Windows devices in extortion plotApr 3, 9:10 am
320Microsoft now force upgrades unmanaged Windows 11 24H2 PCsApr 3, 8:10 am
321CERT-EU: European Commission hack exposes data of 30 EU entitiesApr 3, 7:10 am
322Drift loses $280 million North Korean hackers seize Security Council powersApr 3, 6:10 am
323ISC Stormcast For Friday, April 3rd, 2026 https://isc.sans.edu/podcastdetail/9878, (Fri, Apr 3rd)Apr 3, 2:10 am
324Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal CredentialsApr 2, 9:10 pm
325Claude Code leak used to push infostealer malware on GitHubApr 2, 9:10 pm
326Drift loses $280 million as hackers seize Security Council powersApr 2, 7:10 pm
327Cisco Patches 9.8 CVSS IMC and SSM Flaws Allowing Remote System CompromiseApr 2, 5:10 pm
328Residential proxies evaded IP reputation checks in 78% of 4B sessionsApr 2, 4:10 pm
329Attempts to Exploit Exposed "Vite" Installs (CVE-2025-30208), (Thu, Apr 2nd)Apr 2, 3:10 pm
330ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More StoriesApr 2, 2:10 pm
331Medtech giant Stryker fully operational after data-wiping attackApr 2, 2:10 pm
332New Progress ShareFile flaws can be chained in pre-auth RCE attacksApr 2, 2:10 pm
333Adversaries Exploit Vacant Homes to Intercept Mail in Hybrid CybercrimeApr 2, 2:10 pm
334The State of Trusted Open Source ReportApr 2, 12:10 pm
335Researchers Uncover Mining Operation Using ISO Lures to Spread RATs and Crypto MinersApr 2, 12:10 pm
336WhatsApp Alerts 200 Users After Fake iOS App Installed Spyware; Italian Firm Faces ActionApr 2, 11:10 am
337Critical Cisco IMC auth bypass gives attackers Admin accessApr 2, 11:10 am
338Microsoft links Classic Outlook issue to email delivery problemsApr 2, 10:10 am
339Over 14,000 F5 BIG-IP APM instances still exposed to RCE attacksApr 2, 9:10 am
340Apple Expands iOS 18.7.7 Update to More Devices to Block DarkSword ExploitApr 2, 8:10 am
341ISC Stormcast For Thursday, April 2nd, 2026 https://isc.sans.edu/podcastdetail/9876, (Thu, Apr 2nd)Apr 2, 2:10 am
342New CrystalRAT malware adds RAT, stealer and prankware featuresApr 2, 12:10 am
343Hackers exploit TrueConf zero-day to push malicious software updatesApr 1, 10:10 pm
344Apple expands iOS 18 updates to more iPhones to block DarkSword attacksApr 1, 10:10 pm
345New EvilTokens service fuels Microsoft device code phishing attacksApr 1, 8:10 pm
346CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million EmailsApr 1, 6:10 pm
347'NoVoice' Android malware on Google Play infected 2.3 million devicesApr 1, 6:10 pm
348Routine Access Is Powering Modern Intrusions, a New Threat Report FindsApr 1, 3:10 pm
349New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation — Patch ReleasedApr 1, 2:10 pm
350Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC BypassApr 1, 2:10 pm
351Casbaneiro Phishing Targets Latin America and Europe Using Dynamic PDF LuresApr 1, 2:10 pm
352Block the Prompt, Not the Work: The End of "Doctor No"Apr 1, 2:10 pm
353TeamPCP Supply Chain Campaign: Update 005 - First Confirmed Victim Disclosure, Post-Compromise Cloud Enumeration Documented, and Axios Attribution Narrows, (Wed, Apr 1st)Apr 1, 2:10 pm
3543 Reasons Attackers Are Using Your Trusted Tools Against You (And Why You Don’t See It Coming)Apr 1, 12:10 pm
355FBI warns against using Chinese mobile apps due to privacy risksApr 1, 12:10 pm
356Google fixes fourth Chrome zero-day exploited in attacks in 2026Apr 1, 11:10 am
357Malicious Script That Gets Rid of ADS, (Wed, Apr 1st)Apr 1, 11:10 am
358Google Attributes Axios npm Supply Chain Attack to North Korean Group UNC1069Apr 1, 8:10 am
359Claude Code Source Leaked via npm Packaging Error, Anthropic ConfirmsApr 1, 7:10 am
360Google Drive ransomware detection now on by default for paying usersApr 1, 7:10 am
361New Windows 11 emergency update fixes preview update install issuesApr 1, 6:10 am
362ISC Stormcast For Wednesday, April 1st, 2026 https://isc.sans.edu/podcastdetail/9874, (Wed, Apr 1st)Apr 1, 2:10 am
363Claude Code source code accidentally leaked in NPM packageApr 1, 1:10 am
364Google now allows you to change your @gmail.com addressApr 1, 12:10 am
365GIGABYTE Control Center vulnerable to arbitrary file write flawMar 31, 11:10 pm
366Proton launches new "Meet" privacy-focused conferencing platformMar 31, 11:10 pm
367Claude AI finds Vim, Emacs RCE bugs that trigger on file openMar 31, 10:10 pm
368Android Developer Verification Rollout Begins Ahead of September EnforcementMar 31, 8:10 pm
369Cisco source code stolen in Trivy-linked dev environment breachMar 31, 6:10 pm
370TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government NetworksMar 31, 5:10 pm
371Vertex AI Vulnerability Exposes Google Cloud Data and Private ArtifactsMar 31, 2:10 pm
372Hackers compromise Axios npm package to drop cross-platform malwareMar 31, 2:10 pm
373How to Categorize AI Agents and Prioritize RiskMar 31, 2:10 pm
374The AI Arms Race – Why Unified Exposure Management Is Becoming a Boardroom PriorityMar 31, 1:10 pm
375Silver Fox Expands Asia Cyber Campaign with AtlasCross RAT and Fake DomainsMar 31, 1:10 pm
376Microsoft fixes Outlook Classic crashes caused by Teams Meeting add-inMar 31, 12:10 pm
377Hacker charged with stealing $53 million from Uranium crypto exchangeMar 31, 10:10 am
378Application Control Bypass for Data Exfiltration, (Tue, Mar 31st)Mar 31, 8:10 am
379Dutch Finance Ministry takes treasury banking portal offline after breachMar 31, 8:10 am
380Axios Supply Chain Attack Pushes Cross-Platform RAT via Compromised npm AccountMar 31, 7:10 am
381CISA orders feds to patch actively exploited Citrix flaw by ThursdayMar 31, 7:10 am
382ISC Stormcast For Tuesday, March 31st, 2026 https://isc.sans.edu/podcastdetail/9872, (Tue, Mar 31st)Mar 31, 2:10 am
383Healthcare tech firm CareCloud says hackers stole patient dataMar 30, 10:10 pm
384New RoadK1ll WebSocket implant used to pivot on breached networksMar 30, 9:10 pm
385OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token VulnerabilityMar 30, 8:10 pm
386Critical Citrix NetScaler memory flaw actively exploited in attacksMar 30, 7:10 pm
387DeepLoad Malware Uses ClickFix and WMI Persistence to Steal Browser CredentialsMar 30, 5:10 pm
3883 SOC Process Fixes That Unlock Tier 1 ProductivityMar 30, 3:10 pm
389⚡ Weekly Recap: Telecom Sleeper Cells, LLM Jailbreaks, Apple Forces U.K. Age Checks and MoreMar 30, 3:10 pm
390How to Evaluate AI SOC Agents: 7 Questions Gartner Says You Should Be AskingMar 30, 3:10 pm
391Apple adds macOS Terminal warning to block ClickFix attacksMar 30, 3:10 pm
392TeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Compromise, TeamPCP Runs Dual Ransomware Operations, and AstraZeneca Data Released, (Mon, Mar 30th)Mar 30, 3:10 pm
393The State of Secrets Sprawl 2026: 9 Takeaways for CISOsMar 30, 12:10 pm
394Hackers now exploit critical F5 BIG-IP flaw in attacks, patch nowMar 30, 11:10 am
395Microsoft pulls KB5079391 Windows update over install issuesMar 30, 10:10 am
396Russian CTRL Toolkit Delivered via Malicious LNK Files Hijacks RDP via FRP TunnelsMar 30, 10:10 am
397Three China-Linked Clusters Target Southeast Asian Government in 2025 Cyber CampaignMar 30, 8:10 am
398Critical Fortinet Forticlient EMS flaw now exploited in attacksMar 30, 8:10 am
399European Commission confirms data breach after Europa.eu hackMar 30, 7:10 am
400ISC Stormcast For Monday, March 30th, 2026 https://isc.sans.edu/podcastdetail/9870, (Mon, Mar 30th)Mar 30, 2:10 am
401DShield (Cowrie) Honeypot Stats and When Sessions Disconnect, (Mon, Mar 30th)Mar 30, 12:10 am
402FBI confirms hack of Director Patel's personal email inboxMar 29, 9:10 pm
403File read flaw in Smart Slider plugin impacts 500K WordPress sitesMar 29, 3:10 pm
404Iran-Linked Hackers Breach FBI Director’s Personal Email, Hit Stryker With Wiper AttackMar 28, 5:10 pm
405TeamPCP Supply Chain Campaign: Update 003 - Operational Tempo Shift as Campaign Enters Monetization Phase With No New Compromises in 48 Hours, (Sat, Mar 28th)Mar 28, 4:10 pm
406New Infinity Stealer malware grabs macOS data via ClickFix luresMar 28, 3:10 pm
407Citrix NetScaler Under Active Recon for CVE-2026-3055 (CVSS 9.3) Memory Overread BugMar 28, 10:10 am
408TA446 Deploys DarkSword iOS Exploit Kit in Targeted Spear-Phishing CampaignMar 28, 9:10 am
409CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM ExploitationMar 28, 8:10 am
410TA446 Deploys Leaked DarkSword iOS Exploit Kit in Targeted Spear-Phishing CampaignMar 28, 8:10 am
411Backdoored Telnyx PyPI package pushes malware hidden in WAV audioMar 27, 10:10 pm
412Apple Sends Lock Screen Alerts to Outdated iPhones Over Active Web-Based ExploitsMar 27, 7:10 pm
413TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides Stealer in WAV FilesMar 27, 6:10 pm
414European Commission investigating breach after Amazon cloud account hackMar 27, 5:10 pm
415Fake VS Code alerts on GitHub spread malware to developersMar 27, 5:10 pm
416Open VSX Bug Let Malicious VS Code Extensions Bypass Pre-Publish Security ChecksMar 27, 3:10 pm
417TeamPCP Supply Chain Campaign: Update 002 - Telnyx PyPI Compromise, Vect Ransomware Mass Affiliate Program, and First Named Victim Claim, (Fri, Mar 27th)Mar 27, 3:10 pm
418Agentic GRC: Teams Get the Tech. The Mindset Shift Is What's Missing.Mar 27, 2:10 pm
419Bearlyfy Hits Russian Firms with Custom GenieLocker RansomwareMar 27, 1:10 pm
420AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile EvasionMar 27, 1:10 pm
421European Commission investigating breach after Amazon cloud hackMar 27, 1:10 pm
422We Are At WarMar 27, 12:10 pm
423Anti-piracy coalition takes down AnimePlay app with 5 million usersMar 27, 11:10 am
424Windows 11 KB5079391 update rolls out Smart App Control improvementsMar 27, 10:10 am
425Bearlyfy Hits 70+ Russian Firms with Custom GenieLocker RansomwareMar 27, 10:10 am
426LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI FrameworksMar 27, 9:10 am
427Dutch Police discloses security breach after phishing attackMar 27, 9:10 am
428ISC Stormcast For Friday, March 27th, 2026 https://isc.sans.edu/podcastdetail/9868, (Fri, Mar 27th)Mar 27, 2:10 am
429Ajax football club hack exposed fan data, enabled ticket hijackMar 26, 9:10 pm
430CISA: New Langflow flaw actively exploited to hijack AI workflowsMar 26, 8:10 pm
431China-Linked Red Menshen Uses Stealthy BPFDoor Implants to Spy via Telecom NetworksMar 26, 6:10 pm
432TeamPCP Supply Chain Campaign: Update 001 - Checkmarx Scope Wider Than Reported, CISA KEV Entry, and Detection Tools Available, (Thu, Mar 26th)Mar 26, 6:10 pm
433UK sanctions Xinbi marketplace linked to Asian scam centersMar 26, 4:10 pm
434ThreatsDay Bulletin: PQC Push, AI Vuln Hunting, Pirated Traps, Phishing Kits & 20 More StoriesMar 26, 2:10 pm
435Masters of Imitation: How Hackers and Art Forgers Perfect the Art of DeceptionMar 26, 2:10 pm
436Coruna iOS exploit framework linked to Triangulation attacksMar 26, 2:10 pm
437Claude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any WebsiteMar 26, 2:10 pm
438Inside a Modern Fraud Attack: From Bot Signups to Account TakeoversMar 26, 2:10 pm
439WhatsApp rolls out more AI features, iOS multi-account supportMar 26, 2:10 pm
440TikTok for Business accounts targeted in new phishing campaignMar 26, 2:10 pm
441Russia arrests suspected owner of LeakBase cybercrime forumMar 26, 1:10 pm
442[Webinar] Stop Guessing. Learn to Validate Your Defenses Against Real AttacksMar 26, 12:10 pm
443Coruna iOS Kit Reuses 2023 Triangulation Exploit Code in New Mass AttacksMar 26, 12:10 pm
444Suspected RedLine infostealer malware admin extradited to USMar 26, 12:10 pm
445WebRTC Skimmer Bypasses CSP to Steal Payment Data from E-Commerce SitesMar 26, 9:10 am
446ISC Stormcast For Thursday, March 26th, 2026 https://isc.sans.edu/podcastdetail/9866, (Thu, Mar 26th)Mar 26, 2:10 am
447GitHub adds AI-powered bug detection to expand security coverageMar 26, 12:10 am
448Apple Patches (almost) everything again. March 2026 edition., (Wed, Mar 25th)Mar 25, 10:10 pm
449PolyShell attacks target 56% of all vulnerable Magento storesMar 25, 10:10 pm
450Bubble AI app builder abused to steal Microsoft account credentialsMar 25, 8:10 pm
451New Torg Grabber infostealer malware targets 728 crypto walletsMar 25, 7:10 pm
452LeakBase Admin Arrested in Russia Over Massive Stolen Credential MarketplaceMar 25, 6:10 pm
453Citrix urges admins to patch NetScaler flaws as soon as possibleMar 25, 4:10 pm
454GlassWorm Malware Uses Solana Dead Drops to Deliver RAT and Steal Browser, Crypto DataMar 25, 3:10 pm
455Paid AI Accounts Are Now a Hot Underground CommodityMar 25, 2:10 pm
456Device Code Phishing Hits 340+ Microsoft 365 Orgs Across Five Countries via OAuth AbuseMar 25, 1:10 pm
457Russian Hacker Sentenced to 2 Years for TA551 Botnet-Driven Ransomware AttacksMar 25, 1:10 pm
458The Kill Chain Is Obsolete When Your AI Agent Is the ThreatMar 25, 1:10 pm
459Kali Linux 2026.1 released with 8 new tools, new BackTrack modeMar 25, 1:10 pm
460TP-Link warns users to patch critical router auth bypass flawMar 25, 12:10 pm
461Manager of botnet used in ransomware attacks gets 2 years in prisonMar 25, 9:10 am
462FCC Bans New Foreign-Made Routers Over Supply Chain and Cyber Risk ConcernsMar 25, 8:10 am
463TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 via Trivy CI/CD CompromiseMar 25, 7:10 am
464ISC Stormcast For Wednesday, March 25th, 2026 https://isc.sans.edu/podcastdetail/9864, (Wed, Mar 25th)Mar 25, 2:10 am
465SmartApeSG campaign pushes Remcos RAT, NetSupport RAT, StealC, and Sectop RAT (ArechClient2), (Wed, Mar 25th)Mar 25, 1:10 am
466Popular LiteLLM PyPI package backdoored to steal credentials, auth tokensMar 25, 12:10 am
467Popular LiteLLM PyPI package compromised in TeamPCP supply chain attackMar 24, 11:10 pm
468PTC warns of imminent threat from critical Windchill, FlexPLM RCE bugMar 24, 11:10 pm
469FCC bans new routers made outside the USA over security risksMar 24, 9:10 pm
470TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD CompromiseMar 24, 8:10 pm
471Tax Search Ads Deliver ScreenConnect Malware Using Huawei Driver to Disable EDRMar 24, 6:10 pm
472Firefox now has a free built-in VPN with 50GB monthly data limitMar 24, 6:10 pm
473Hackers Use Fake Resumes to Steal Enterprise Credentials and Deploy Crypto MinerMar 24, 5:10 pm
474Microsoft fixes bug causing Classic Outlook sync issues with GmailMar 24, 4:10 pm
475Yanluowang ransomware access broker gets 81 months in prisonMar 24, 2:10 pm
476Infinite Campus warns of breach after ShinyHunters claims data theftMar 24, 2:10 pm
477Detecting IP KVMs, (Tue, Mar 24th)Mar 24, 2:10 pm
478HackerOne discloses employee data breach after Navia hackMar 24, 2:10 pm
479Zero Trust: Bridging the Gap Between Authentication and TrustMar 24, 2:10 pm
4805 Learnings from the First-Ever Gartner Market Guide for Guardian AgentsMar 24, 12:10 pm
481Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and CredentialsMar 24, 12:10 pm
482Dutch Ministry of Finance discloses breach affecting employeesMar 24, 12:10 pm
483TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI CredentialsMar 24, 11:10 am
484The Hidden Cost of Cybersecurity Specialization: Losing Foundational SkillsMar 24, 11:10 am
485Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data LeaksMar 24, 8:10 am
486U.S. Sentences Russian Hacker to 6.75 Years for Role in $9M Ransomware DamageMar 24, 8:10 am
487ISC Stormcast For Tuesday, March 24th, 2026 https://isc.sans.edu/podcastdetail/9862, (Tue, Mar 24th)Mar 24, 2:10 am
488OpenAI rolls out ChatGPT Library to store your personal filesMar 24, 12:10 am
489Mazda discloses security breach exposing employee and partner dataMar 23, 11:10 pm
490Tycoon2FA phishing platform returns after recent police disruptionMar 23, 10:10 pm
491Tool updates: lots of security and logic fixes, (Mon, Mar 23rd)Mar 23, 9:10 pm
492North Korean Hackers Abuse VS Code Auto-Run Tasks to Deploy StoatWaffle MalwareMar 23, 8:10 pm
493Crunchyroll probes breach after hacker claims to steal 6.8M users' dataMar 23, 8:10 pm
494TeamPCP deploys Iran-targeted wiper in Kubernetes attacksMar 23, 8:10 pm
495Trivy supply-chain attack spreads to Docker, GitHub reposMar 23, 6:10 pm
496‘CanisterWorm’ Springs Wiper Attack Targeting IranMar 23, 4:10 pm
497Varonis Atlas: Securing AI and the Data That Powers ItMar 23, 3:10 pm
498We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with ThemMar 23, 2:10 pm
499⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & MoreMar 23, 2:10 pm
500Microsoft Exchange Online service change causes email access issuesMar 23, 1:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.