Fake OpenAI Codex download tricks macOS users into installing malware

A malware campaign using a sponsored search ad and a fake OpenAI Codex download page to trick macOS users into pasting a malicious command into Terminal has been uncovered by Cato Networks. It’s a variation of ClickFix, a popular social engineeri… Continue reading Fake OpenAI Codex download tricks macOS users into installing malware

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack

Cybersecurity company ReliaQuest has confirmed that one of its own employees fell for a social engineering attack, handing attackers a password and a brief window into the company’s identity system. The admission came after the extortion group Sh… Continue reading ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack

TruffleHog AWS Analyze reduces remediation time on leaked AWS credentials

Truffle Security announced TruffleHog AWS Analyze, a new addition to TruffleHog Enterprise. TruffleHog AWS Analyze enriches found AWS credentials to highlight permissions and access levels, so a security team can assess the risk and prioritize its resp… Continue reading TruffleHog AWS Analyze reduces remediation time on leaked AWS credentials

Cybersecurity job ads demanding AI skills double in a year

Job postings asking for AI skills in cybersecurity have doubled in a single year in G7 countries according to new research from the Cisco-founded AI Workforce Consortium. Analysis from recruitment firms Cornerstone and Indeed covering 24 months, from A… Continue reading Cybersecurity job ads demanding AI skills double in a year

Android car head units infected with proxy botnet malware through built-in software updaters

A newly discovered Android malware, distributed through the built-in updaters in affected Android-based car head units, turns infected devices into ad-fraud tools and nodes in a proxy botnet, Kaspersky has found. According to the researchers, it’s the … Continue reading Android car head units infected with proxy botnet malware through built-in software updaters

Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)

Microsoft has patched a critical remote code execution vulnerability (CVE-2026-69836) in Entra ID, reportedly exploited in the wild. Entra ID is Microsoft’s cloud identity service, formerly Azure Active Directory, that verifies logins and control… Continue reading Critical Microsoft Entra ID vulnerability exploited in the wild (CVE-2026-69836)

Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)

Citrix has patched two vulnerabilities in NetScaler ADC and NetScaler Gateway, including a critical authentication bypass flaw tracked as CVE-2026-19490, and is urging customers to upgrade affected appliances as soon as possible. “We strongly rec… Continue reading Citrix urges customers to fix critical NetScaler authentication bypass (CVE-2026-19490)