Cyber Attack News

Hackers Abuse Notepad++ Plugins to Compromise Your System Silently

A stealthy new campaign in which the UAC-0099 threat cluster hijacks a legitimate Notepad++ plugin to quietly plant malware on…

2 months ago

Fake Bahrain Civil Defense App Deploys Android RAT to Steal PINs, OTPs, and Banking Credentials

A sophisticated Android malware campaign is exploiting heightened geopolitical tensions in the Gulf region by masquerading as an official Bahrain…

2 months ago

NadMesh Uses Shodan to Find and Hijack Exposed AI and MCP Infrastructure

A sharp structural shift has been identified in the botnet landscape. Security researchers at XLab have uncovered NadMesh, a Go-based…

2 months ago

New ClickLock macOS Stealer Kills Every App to Force Password Entry

A newly discovered macOS malware dubbed ClickLock is raising alarms in the cybersecurity community for its aggressive and deceptive credential-harvesting…

2 months ago

New Rust-Based LabubaRAT Impersonates NVIDIA Software to Hijack Windows Systems

A previously undocumented remote access tool dubbed LabubaRAT, a Rust-based implant that masquerades as NVIDIA software to compromise Windows systems.…

2 months ago

Chinese Hackers Embed Claude Code and DeepSeek in AI-Powered Government Cyberattacks

An active, highly structured intrusion campaign co-opting commercial artificial intelligence platforms as operational engines for state-sponsored operations. Rather than acting…

2 months ago

Gamers Download Fake Cheats and Hand Attackers a Live Remote Control of Their Windows PCs

New research uncovered 11 malicious NuGet packages disguised as game cheats, bots, and management panels for popular online titles. The…

2 months ago

15-Year-Old Arrested Over Bandai Channel Cyberattack Using a ChatGPT-Assisted Tool

Japanese police have arrested a 15-year-old high school student from Tokorozawa City, Saitama Prefecture, on suspicion of fraudulent obstruction of…

2 months ago

400+ Arch Linux AUR Packages Compromised in a Supply Chain Attack Deploying Infostealers

A massive supply chain attack targeting the Arch User Repository (AUR) has compromised more than 400 community-maintained packages, with attackers…

3 months ago

Oracle PeopleSoft 0-Day RCE Vulnerability Exploited in Attacks by ShinyHunters

Mandiant and Google Threat Intelligence Group (GTIG) have issued a critical warning after identifying an active compromise-and-extortion campaign targeting Oracle…

3 months ago