Extradited Russian Hacker Faces Charges Over Excel Malware Campaign That Infected Thousands

The U.S. Department of Justice (DoJ) has charged a Russian national, extradited from Cyprus on August 28, with using roughly 255 fake accounts on a freelance platform to send malware-laced Excel attachments to about 80,000 of its users in 2016 and 2017… Continue reading Extradited Russian Hacker Faces Charges Over Excel Malware Campaign That Infected Thousands→

Posted in Uncategorized

Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another

Forescout Research – Vedere Labs said it used Anthropic’s Claude to port a working pre-authentication remote code execution (RCE) exploit from one WAGO programmable logic controller (PLC) to another, executing attacker-supplied ARM shellcode on live ha… Continue reading Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another→

Posted in Uncategorized

Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials

Threat actors are exploiting a severe security vulnerability in Sangoma Switchvox, an enterprise VoIP platform, that could allow unauthenticated remote code execution.

The vulnerability in question is CVE-2026-9586 (CVSS score: 9.3), a critical unauth… Continue reading Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials→

Posted in Uncategorized

Authorities Turn Sality’s P2P Network Against Itself, Cutting Off New Malware Payloads

The U.S. Department of Justice (DoJ) on Tuesday announced the takedown of a long-standing peer-to-peer (P2P) botnet known as Sality as part of a coordinated law enforcement operation.

The effort was undertaken on August 31, 2026, by authorities from t… Continue reading Authorities Turn Sality’s P2P Network Against Itself, Cutting Off New Malware Payloads→

Posted in Uncategorized

Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure

Threat actors are exploiting a newly patched critical security flaw impacting JFrog Artifactory merely days after public disclosure, according to watchTowr.

The vulnerability in question is CVE-2026-82329 (CVSS score: 9.8), a case of authentication by… Continue reading Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure→

Posted in Uncategorized

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

Brazilian financial services, retail, and e-commerce organizations have become the target of a financially motivated threat actor dubbed Breeze Comet (formerly UNC5669) since 2024.

Google Threat Intelligence Group (GTIG) and Mandiant teams described t… Continue reading Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems→

Posted in Uncategorized

13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds

Cybersecurity researchers have identified a set of 13 malicious Composer theme packages on Packagist that are designed to inject JavaScript into Vietnamese movie and comic streaming sites that install those libraries and initiate the deployment of spyw… Continue reading 13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds→

Posted in Uncategorized

Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests

The Iranian Nimbus Manticore hacking group has been attributed to two previously undocumented malware families that highlight the continued evolution of its toolset and likely expand its targeting footprint to infect Linux and Apple macOS systems using… Continue reading Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests→

Posted in Uncategorized