Category: EN

Gremlin Stealer Hides C2 and Exfiltration Paths in Encrypted Resources

A newly identified variant of the Gremlin stealer malware is leveraging advanced obfuscation techniques to conceal its command-and-control (C2) infrastructure and data exfiltration logic within encrypted .NET resource sections. This evolution highlights a significant shift toward stealth, modularity, and anti-analysis…

Microsoft Python Client DurableTask Compromised by TeamPCP Hackers

Three consecutive releases of Microsoft’s official Python workflow SDK were poisoned with a multi-cloud credential-stealing worm, continuing the group’s relentless 2026 supply chain campaign. The TeamPCP threat group has struck again this time targeting durabletask, the official Microsoft Python client for…

Anthropic Silently Patches Claude Code Sandbox Bypass

The researcher who found it says the vulnerability could have been chained with a prompt injection to exfiltrate data. The post Anthropic Silently Patches Claude Code Sandbox Bypass appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read…

Old Breaches Resold as New Corporate Data Leaks

Dark web data brokers are increasingly recycling old breach data and marketing it as fresh corporate leaks. The activity, largely observed in Chinese-language cybercrime forums and Telegram channels, is creating confusion among organizations and diverting security resources toward investigating claims…

Microsoft DurableTask Python Client Targeted in TeamPCP Cyberattack

The ongoing TeamPCP software supply chain campaign has compromised the official Microsoft DurableTask Python client, a widely used package for orchestrating workflows in Python applications. Three versions of the durabletask package on PyPI, 1.4.1, 1.4.2, and 1.4.3, were identified as malicious and…

Firefox 151 packs big privacy upgrades into a small update

Firefox 151 adds major privacy improvements and fixes high-priority security vulnerabilities, making this an update you shouldn’t ignore. This article has been indexed from Malwarebytes Read the original article: Firefox 151 packs big privacy upgrades into a small update

According to Sophos 71% of orgs hit by identity breaches

More than seven in ten organizations suffered identity-related breaches over the past year, according to Sophos’s State of Identity Security 2026 survey. This article has been indexed from CyberMaterial Read the original article: According to Sophos 71% of orgs hit…

NIST PNT Framework Strengthens GPS Interference Defenses

The National Institute of Standards and Technology has published a new framework addressing vulnerabilities in Positioning, Navigation, and Timing systems, with particular focus on strengthening defenses against GPS interference. This article has been indexed from CyberMaterial Read the original article:…

Indiana launches military-aligned cybersecurity pathway

Indiana will launch a first-of-its-kind military-aligned cybersecurity education pathway in June 2025, connecting high school students with advanced coursework, industry experience, and direct mentorship from the Indiana National Guard. This article has been indexed from CyberMaterial Read the original article:…

OtterCookie RAT Steals Dev Secrets and Cloud Credentials

A newly discovered malware strain called OtterCookie is targeting software developers with sophisticated credential theft capabilities, according to recent analysis from security researchers. This article has been indexed from CyberMaterial Read the original article: OtterCookie RAT Steals Dev Secrets and…

Crafted JPEGs Trigger PHP Memory Bugs

Critical memory corruption vulnerabilities have been identified in PHP’s core ext/standard extension, specifically affecting how the widely deployed programming language processes JPEG image files. This article has been indexed from CyberMaterial Read the original article: Crafted JPEGs Trigger PHP Memory…

Tulane University Data Breach Investigation

Tulane University has confirmed a significant data breach involving its HR systems after attackers exploited a zero-day vulnerability in Oracle’s E-Business Suite on August 10, 2025. This article has been indexed from CyberMaterial Read the original article: Tulane University Data…

Baidam and AUSCERT sign MOU for cybersecurity collaboration

Australian cybersecurity organizations Baidam and AUSCERT have formalized a partnership through a Memorandum of Understanding focused on advancing cybersecurity collaboration. This article has been indexed from CyberMaterial Read the original article: Baidam and AUSCERT sign MOU for cybersecurity collaboration