The attack chain relies on delayed execution, trusted Windows utilities, and legitimate hosting services to maintain ...
On March 31, 2026, the popular HTTP client Axios experienced a supply chain attack, causing two newly published npm packages ...
Microsoft warns of a malware campaign that delivers malicious software via WhatsApp messages and compromises systems.
Hackers hijacked the npm account of the Axios package, a JavaScript HTTP client with 100M+ weekly downloads, to deliver ...
Malicious telnyx 4.87.1/4.87.2 on PyPI used audio steganography March 27, 2026, enabling cross-platform credential theft.
Augmented Marauder targets Latin America and Europe since 2020, using dynamic PDF phishing to spread Casbaneiro via Horabot.
Windows can now behave like a Linux machine.
The massive amount of junk code that hides the malware's logic from security scans was almost certainly generated by AI, ...
When custom tools beat built-in ones.
Looking for the best AI voice generators? These 8 that have perfected the art of turning your text into realistic human ...
A fake $TEMU crypto airdrop uses the ClickFix trick to make victims run malware themselves and quietly installs a remote-access backdoor.
The NPM package for Axios, a popular JavaScript HTTP client library, was briefly compromised this week, possibly by North ...