Nimbus Manticore uses trojanized coding challenges to deploy NodeRabbit and PollCat RATs across Windows, Linux, and macOS.
Attackers stole a METR API key and consumed credits worth about $600,000, while a later campaign failed to access internal ...
North Korean workers are expanding remote-job fraud beyond IT into healthcare and sales, using false identities, proxies, and ...
ValleyRAT abuses signed QN Wallpaper software for DLL sideloading, disables Windows Defender, and runs inside a trusted ...
DoJ corrected its QTFY statement, saying several U.S. agencies were targets rather than confirmed victims of the China-linked ...
This week’s cybersecurity recap covers AI agents breaching Hugging Face, Chinese spy proxies, router backdoors, PaperCut ...
Fire Ant compromises Cisco IOS XR routers and TACACS servers to capture traffic, harvest credentials, and suppress defensive ...
Aurora ransomware operators used Cursor Agent for hands-on exploitation against 10 targets after receiving credentials or an ...
Critical flaws in WPMU DEV, Avada, TranslatePress, Pods, and GiveWP can enable admin takeover or remote code execution.
Attackers chain two PaperCut NG and MF flaws for unauthenticated remote code execution, with limited exploitation seen in two ...
GoCaracal gave operators remote shell access and browser data theft during a June 2026 intrusion at a Venezuelan ...
U.S. Treasury sanctions Iran-linked cyber actors under Operation Economic Outcast, targeting MOIS-linked hackers tied to U.S.