Chrome Extension Turns Malicious After Ownership Transfer, Enabling Code Injection and Data Theft

Two Google Chrome extensions have turned malicious after what appears to be a case of ownership transfer, offering attackers a way to push malware to downstream customers, inject arbitrary code, and harvest sensitive data.
The extensions in question, b… Continue reading Chrome Extension Turns Malicious After Ownership Transfer, Enabling Code Injection and Data Theft

Posted in Uncategorized

Web Server Exploits and Mimikatz Used in Attacks Targeting Asian Critical Infrastructure

High-value organizations located in South, Southeast, and East Asia have been targeted by a Chinese threat actor as part of a years-long campaign.
The activity, which has targeted aviation, energy, government, law enforcement, pharmaceutical, technolog… Continue reading Web Server Exploits and Mimikatz Used in Attacks Targeting Asian Critical Infrastructure

Posted in Uncategorized

OpenAI Codex Security Scanned 1.2 Million Commits and Found 10,561 High-Severity Issues

OpenAI on Friday began rolling out Codex Security, an artificial intelligence (AI)-powered security agent that’s designed to find, validate, and propose fixes for vulnerabilities.
The feature is available in a research preview to ChatGPT Pro, Enterpris… Continue reading OpenAI Codex Security Scanned 1.2 Million Commits and Found 10,561 High-Severity Issues

Posted in Uncategorized

Transparent Tribe Uses AI to Mass-Produce Malware Implants in Campaign Targeting India

The Pakistan-aligned threat actor known as Transparent Tribe has become the latest hacking group to embrace artificial intelligence (AI)-powered coding tools to strike targets with various implants.
The activity is designed to produce a “high-volume, m… Continue reading Transparent Tribe Uses AI to Mass-Produce Malware Implants in Campaign Targeting India

Posted in Uncategorized

Iran-Linked MuddyWater Hackers Target U.S. Networks With New Dindoor Backdoor

New research from Broadcom’s Symantec and Carbon Black Threat Hunter Team has discovered evidence of an Iranian hacking group embedding itself in several U.S. companies’ networks, including banks, airports, non-profit, and the Israeli arm of a software… Continue reading Iran-Linked MuddyWater Hackers Target U.S. Networks With New Dindoor Backdoor

Posted in Uncategorized

China-Linked Hackers Use TernDoor, PeerTime, BruteEntry in South American Telecom Attacks

A China-linked advanced persistent threat (APT) actor has been targeting critical telecommunications infrastructure in South America since 2024, targeting Windows and Linux systems and edge devices with three different implants.
The activity is being t… Continue reading China-Linked Hackers Use TernDoor, PeerTime, BruteEntry in South American Telecom Attacks

Posted in Uncategorized

Microsoft Reveals ClickFix Campaign Using Windows Terminal to Deploy Lumma Stealer

Microsoft on Thursday disclosed details of a new widespread ClickFix social engineering campaign that has leveraged the Windows Terminal app as a way to activate a sophisticated attack chain and deploy the Lumma Stealer malware.
The activity, observed … Continue reading Microsoft Reveals ClickFix Campaign Using Windows Terminal to Deploy Lumma Stealer

Posted in Uncategorized