Anthropic is changing how Claude Code handles risky commands, moving away from constant human approval prompts and toward an automated safety classifier…
Category: Cyber Security News
HP ThinPro TPM Disk Encryption Flaw Lets Attackers Extract LUKS Keys
A security researcher has disclosed a boot-chain weakness in HP ThinPro 8 and 9 that could allow attackers with physical access to a thin client to…
GitHub Expands Supply Chain Malware Detection From npm to 8 Package Registries
GitHub has expanded its malware detection capabilities beyond npm, providing developers with broader protection against malicious open-source packages.…
CISA Warns of Progress LoadMaster Command Injection Vulnerability Exploited in Attacks
CISA has added a critical Progress LoadMaster vulnerability to its Known Exploited Vulnerabilities catalog after attackers were observed targeting exposed…
Windows WalletService Vulnerability Allows Attackers to Escalate Privileges – PoC Released
Microsoft has patched a Windows WalletService vulnerability that could let local attackers gain SYSTEM privileges, with a public proof of concept urging…
Red Hat ACM Privilege Escalation Vulnerability Lets Attackers Gain Full Cluster-Admin Access
Red Hat has disclosed a critical privilege escalation flaw, tracked as CVE-2026-10090, affecting the Application Subscription controller in Red Hat…
Fake GoogleTranslate Chrome Extension Lets Attackers Remotely Control Your Browsers
A malicious Chrome extension masquerading as GoogleTranslate that can steal sensitive browser data, live-stream web sessions, and allow threat actors to…
Google Play Apps Use Stealth Loaders to Deliver Anatsa Banking Malware
Android users are facing a fresh reminder that a familiar app-store listing can hide a financial threat. Researchers have observed malicious loaders on…
Top 10 Malware Threats of the Week – AsyncRAT, Remcos, and Xworm Lead the Surge
Global malware activity climbed sharply over the past week, with remote access trojans (RATs), information stealers, and loaders all posting significant…
Malicious Solidity Pro VS Code Extension Steals Crypto Wallets, API Keys and SSH Keys via Telegram
Malicious extensions are turning a routine developer task into a route for theft. A package named Solidity Pro, promoted as a useful tool for Solidity…
Apple Private Cloud Compute Flaw Enables Root File Writes and AI Inference Telemetry Leakage
CVE-2026-20685 is a path traversal vulnerability affecting Apple’s Private Cloud Compute (PCC), potentially allowing attackers to write files as root…
Ransomware Operators Disable EDR, Backup Software and Windows Telemetry Before Encryption
Ransomware crews are increasingly trying to blind a victim before they encrypt anything. Analysis shows that attackers can disable endpoint detection and…
Valve Steam Hardware Buyers Hit by CEVA Logistics Data Breach
Valve has confirmed that a cyberattack on CEVA Logistics, its European shipping partner for Steam hardware such as the Steam Deck, Steam Machine, and…
Ransomware Attackers Target Managers to Steal Data and Move Deeper Into Corporate Networks
Ransomware campaigns are increasingly starting with people who hold the keys to everyday business decisions. Attackers are compromising managers whose…
Interlock Turns the Tools Incident Responders Use Into Weapons for Stealing Windows Passwords
Interlock ransomware is taking a familiar Windows security tool and using it for credential theft. The group has turned memory analysis software into a…
Claude Code Sessions Spawn Reverse Tunnels and LaunchAgent Persistence on macOS
Claude Code activity on a macOS developer machine has raised a difficult security question: when does convenient automation become a serious exposure? A…
Connective eID Extension Flaws Let Attackers Steal Belgian ID PINs and Trigger Drive-By RCE
Critical flaws have been found in the Connective Signing Extension, a browser component used by more than 2 million people in Belgium to access electronic…
Payroll Pirates AiTM Phishing Hijacks Microsoft 365 Sessions and Targets Payroll Emails
Payroll Pirates are using phishing emails to seize Microsoft 365 sessions and search payroll-related mailboxes. The campaign turns a voicemail alert into…
Kimsuky Uses Local LLMs, AI-Generated Lures and GitHub C2 to Deploy AsyncRAT
Kimsuky has been observed blending polished AI-made documents with familiar phishing tactics to push AsyncRAT, a remote-access trojan. The campaign shows…
Hackers Distributing Malicious VBS/PowerShell RAT Chain Via Multiple DuckDNS Hosts
A newly observed malware campaign is using simple Windows scripts to open the door to remote control and data theft. The chain relies on Visual Basic…
