North Korea's Lazarus group has been caught exploiting a Windows kernel 0-day vulnerability to deploy an upgraded version of its…
A new "Pass-the-Passkey" family of attack techniques demonstrates how systemic implementation flaws surrounding WebAuthn can undermine passkey security even when…
Swiss federal authorities have confirmed a cyberattack targeting SharePoint servers operated by the Federal Office for Information Technology and Telecommunication…
Cybercriminals are weaponizing pirated downloads of the blockbuster theatrical release "The Odyssey (2026)" to deliver Lumma Stealer. This prolific information-stealing…
Three distinct Phishing-as-a-Service (PhaaS) platforms, Sneaky 2FA, EvilTokens, and EvilProxy, are actively targeting US organizations to steal Microsoft 365 (M365) credentials and…
Attackers have compromised the GitHub account of the maintainer behind keyv, a popular key-value storage library that pulls in roughly…
Adform, a major advertising technology company serving roughly 14,000 businesses and holding nearly 30% of the demand-side platform market, has…
Anthropic has disclosed that its Claude AI models gained unauthorized access to the real systems of three organizations after reaching…
Between July 9 and July 13, 2026, security researchers documented what is being called the first fully autonomous AI agent…
Infostealer malware has quietly become the single most important initial-access commodity in the cybercrime economy, replacing traditional phishing and exploit-driven…