Cybercriminals are using a counterfeit Claude desktop application to compromise Windows systems, disable key security checks, and install remote-access malware.
The campaign turns a familiar AI software search into a route for credential theft and long-term access. It also...
A criminal service is hiding behind a website that appears to offer Adobe Acrobat Reader. The site, acrobatreaderonline.com, is not a document service. Instead, it appears to expose an operator panel for building and managing attacks against Windows users.
The...
Cybercriminals are abusing interest in generative AI to trick users into downloading malware. In a newly documented incident, a file posing as a Google Gemini installer delivered the Vidar information stealer, putting saved browser passwords and other sensitive data...
Central Asian government bodies have been targeted in a cyberespionage operation using a compact but varied set of remote access tools.
The activity, tracked as SilkParasite, relied on convincing government-themed documents and trusted Windows programs to quietly place malware...
The identity lifecycle management process governs how access is provisioned, maintained, reviewed, and revoked for employees, contractors, service accounts, API keys, machine credentials, OAuth tokens, and autonomous agents. It is part of identity and access management because identity state...
Octagon is an Android theft tool that turns an infected phone into a platform for account takeover.
It can steal login details, watch the screen, and capture verification codes that banks and exchanges use to protect accounts.
It is sold...
The average global data breach now costs $4.4 million, with AI-driven attacks accelerating both scale and sophistication, according to IBM’s report. At the same time, organizations using AI and automation in defense save nearly $1.9 million per breach, highlighting...
Kimwolf v7 is raising the stakes for attacks launched from everyday Android TV boxes and set-top devices.
The latest version can make disruptive web traffic look more like a real visitor browsing a site, making defensive filtering harder at...
Akira ransomware has added a new way to weaken Windows security before it tries to lock files.
In a recent intrusion, an affiliate rebooted a compromised system into Safe Mode with Networking, leaving the device connected while most third-party...
DeadLock ransomware has emerged as a financially motivated threat that locks files while threatening to publish stolen information.
First observed in July 2025, it had listed more than 80 alleged victims on its leak site by July 2026, with...