Criminal services that hide malware are becoming easier to buy. These services, known as crypters, change a malicious file so that security tools struggle…
Category: Cyber Security News
Dysphoria Botnet Turns Compromised Routers and Cameras Into DDoS Bots and C2 Relay Nodes
Dysphoria has turned a large number of everyday internet-connected devices into a potential attack network. The botnet is linked to roughly 296,000…
HACKERAI Malware Turns GitHub Gists Into a Command-and-Control Channel
A newly identified malware framework called HACKERAI C2 Agent is using GitHub Gists as a hidden channel for attacker commands and stolen data. The…
Hackers Using New Blackhat AI Tool MessiahGPT to Generate Ransomware and Phishing Kits
A newly surfaced criminal AI service called MessiahGPT is being openly marketed on BreachForums as a purpose-built offensive model that writes ransomware,…
Hackers Using New BlackHat AI Tool MessiahGPT to Generate Ransomware and Phishing Kits
A newly surfaced criminal AI service called MessiahGPT is being openly marketed on BreachForums as a purpose-built offensive model that writes ransomware,…
OpenAI Unveils Ultrafast Mode in GPT‑5.6 Sol That Works 14× Faster Than Standard Mode
OpenAI has introduced Ultrafast, a new service tier for GPT-5.6 Sol that it says can run up to 14× faster than Standard processing. The feature launches…
AI Token Jacking Lets Hackers Steal API Keys and Rack Up Nearly $1 Million in Charges
AI credentials are drawing criminal attention. A growing form of abuse, called AI token jacking, lets intruders take API keys and consume expensive model…
GeoServer 0-Day Vulnerability Enables Remote Code Execution Attacks
A newly disclosed zero-day vulnerability in GeoServer is being targeted by attackers, raising concern for organizations that publish or manage geospatial…
The Endpoint-to-Cloud Privilege Security Checklist: 21 Controls to Eliminate Standing Access
PAM secured the endpoint; privilege moved on. Work through these 21 controls to find out where standing access is accumulating in your cloud, SaaS, and AI…
Download More RAM Attack Bypasses Windows VBS and Disables Defender Through Memory Aliasing
A new attack dubbed “Download More RAM” can bypass Windows Virtualization-Based Security (VBS), weaken Hypervisor-Enforced Code Integrity (HVCI), and…
Aeternum Botnet Uses Polygon Smart Contracts for Takedown-Resistant Malware C2
Aeternum is a new botnet loader designed to resist takedowns. It stores instructions on Polygon, a public blockchain, creating a widely replicated control…
Top 10 Best Microsegmentation Tools in 2026
Microsegmentation tools stop attackers from moving sideways. Once ransomware operators land on one machine, everything that follows credential harvesting,…
10 Best Secure Web Gateway Vendors In 2026
A secure web gateway inspects outbound web traffic blocking malicious sites, enforcing acceptable-use policy, decrypting TLS, and stopping malware before…
New DRAM Scrambling Attack Exposes CPU’s Most Protected Memory Zones
A new attack technique that manipulates a computer’s memory controller to bypass some of the strongest hardware security boundaries built into modern…
Apple Urges Mercenary Spyware Targets to Enable Lockdown Mode Immediately
Apple has quietly rolled out a new wave of high-confidence “Apple Threat Notification” alerts, warning selected iPhone users in 110 countries that their…
Beacon CRM Confirms Full Database Theft After AWS Access Key Breach
Beacon, the customer relationship management (CRM) platform relied on by over a thousand UK charities and non-profit organizations, has confirmed that a…
AmnesiaStealer macOS Malware Hijacks Browser Sessions via Fake GitHub Lure
A newly identified macOS infostealer called AmnesiaStealer is spreading via a convincing fake GitHub download page, tricking Mac users into pasting a…
Fortinet Patches Multiple Authentication Vulnerabilities in FortiWeb, FortiManager, and FortiClient
Fortinet has rolled out fixes for a batch of authentication-related vulnerabilities across its FortiWeb, FortiManager, and FortiClient product lines,…
North Korean IT Workers Use AI-Forged IDs and Remote Desktops to Become Trusted Employees
A joint undercover investigation has pulled back the curtain on how North Korean IT worker operatives don’t just slip past hiring checks; they settle in,…
Microsoft Exchange Server Vulnerabilities Enable DoS, Privilege Escalation, and RCE Attacks
Microsoft has released security updates for multiple Exchange Server vulnerabilities that could allow denial-of-service, privilege escalation, remote code…