The researcher who discovered the vulnerability saw more than 2,500 internet-exposed devices. The post TP-Link Patches Vulnerability Exposing VIGI Cameras to Remote Hacking appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original article: TP-Link Patches…
Plaso / log2timeline
A forensic framework for generating super timelines by aggregating and normalizing events from multiple evidence sources. This article has been indexed from CyberMaterial Read the original article: Plaso / log2timeline
Visual Studio Code Abused in Sophisticated Multistage Malware Attacks
A newly analyzed campaign dubbed “Evelyn Stealer” is turning the Visual Studio Code (VSC) extension ecosystem into an attack delivery platform, enabling threat actors to compromise software developers and pivot deeper into enterprise environments. The campaign abuses seemingly legitimate extensions…
1-15 January 2026 Cyber Attacks Timeline
And I am back with the 1-15 January 2026 cyber attacks timeline. In the first timeline of January 2026, I collected 61 events (4.07 events/day) with a threat landscape dominated by malware with 36%, a direct comparison with the previous…
At Davos, Cybersecurity Is a Leadership Imperative
As leaders gather at the World Economic Forum Annual Meeting 2026, Fortinet highlights why cybersecurity is now a leadership imperative driven by systemic risk, AI, and the need for collective defense. This article has been indexed from Industry Trends…
Free Converter Apps that Convert your Clean System to Infected in Seconds
Malicious file converter applications distributed through deceptive advertisements are infecting thousands of systems with persistent remote access trojans (RATs). These seemingly legitimate productivity tools perform their advertised functions while secretly installing backdoors that give attackers continuous access to victim computers.…
Fake browser crash alerts turn Chrome extension into enterprise backdoor
Browser extensions are a high-risk attack vector for enterprises, allowing threat actors to bypass traditional security controls and gain a foothold on corporate endpoints. Case in point: A recently identified malicious extension called NexShield proves that a single user install…
Canadian Investment Watchdog Breach
The Canadian Investment Regulatory Organization recently announced that a sophisticated phishing attack in August 2025 led to a data breach affecting 750,000 people. This article has been indexed from CyberMaterial Read the original article: Canadian Investment Watchdog Breach
Ransomware Disrupts Kyowon Operations
The South Korean conglomerate Kyowon Group is currently investigating a significant ransomware attack that has disrupted its operations and potentially compromised the personal information of millions of customers. This article has been indexed from CyberMaterial Read the original article: Ransomware…
Ukraine Germany Target Black Basta
Ukrainian and German authorities have identified two key suspects linked to the Black Basta ransomware group and issued an international warrant for its Russian leader. This article has been indexed from CyberMaterial Read the original article: Ukraine Germany Target Black…
Tennessee Man Hacks Supreme Court System
Nicholas Moore, a 24-year-old from Tennessee, pleaded guilty on Friday to hacking the U.S. This article has been indexed from CyberMaterial Read the original article: Tennessee Man Hacks Supreme Court System
China Tests Quantum Cyber Weapons
The Chinese military has disclosed that it is developing and testing over ten quantum cyberwarfare tools designed to extract intelligence from public cyberspace during active missions. This article has been indexed from CyberMaterial Read the original article: China Tests Quantum…
Google Gemini AI Tricked Into Leaking Calendar Data via Meeting Invites
Cybersecurity researchers at Miggo Security found a flaw in Google Gemini that uses calendar invites to steal private data. Learn how this silent attack bypasses security. This article has been indexed from Hackread – Cybersecurity News, Data Breaches, AI, and…
Remcos RAT Campaign Uses Trojanized VeraCrypt Installers to Steal Credentials
AhnLab Security Intelligence Center (ASEC) has identified an active Remcos RAT campaign targeting users in South Korea. The malware is being spread through multiple channels. It often masquerades as VeraCrypt utilities or tools used within illegal online gambling ecosystems. Once…
Acting CISA Director Pushed to Remove Agency CIO
The drama at the Cybersecurity and Infrastructure Security Agency is not helpful when it needs to focus on defending networks and infrastructure. The post Acting CISA Director Pushed to Remove Agency CIO appeared first on TechRepublic. This article has been…
Don’t underestimate pro-Russia hacktivists, warns UK’s cyber crew
They’re not the most sophisticated, but even simple attacks can lead to costly consequences The UK’s National Cyber Security Centre (NCSC) is once again warning that pro-Russia hacktivists are a threat to critical services operators.… This article has been indexed…
‘SolyxImmortal’ Information Stealer Emerges
The information stealer abuses legitimate APIs and libraries to exfiltrate data to Discord webhooks. The post ‘SolyxImmortal’ Information Stealer Emerges appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original article: ‘SolyxImmortal’ Information Stealer Emerges
Jordanian Admits in US Court to Selling Access to 50 Enterprise Networks
Operating as an access broker, the defendant sold unauthorized access to compromised networks to an undercover agent. The post Jordanian Admits in US Court to Selling Access to 50 Enterprise Networks appeared first on SecurityWeek. This article has been indexed…
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & More
In cybersecurity, the line between a normal update and a serious incident keeps getting thinner. Systems that once felt reliable are now under pressure from constant change. New AI tools, connected devices, and automated systems quietly create more ways in,…
Beyond the Algorithm
A critical examination of AI through the lenses of security, privacy, ethics, and governance. This article has been indexed from CyberMaterial Read the original article: Beyond the Algorithm
IT Security News Hourly Summary 2026-01-19 15h : 14 posts
14 posts were published in the last hour 13:32 : Cybercriminals Impersonate Malwarebytes to Steal User Credentials 13:32 : Windows SMB Client Vulnerability Exposes Organizations to Full Active Directory Compromise 13:32 : CIRO Confirms Data Breach Impacting 750,000 Canadian Investors…
Cybercriminals Impersonate Malwarebytes to Steal User Credentials
As part of an ongoing effort to highlight active and technically interesting intrusions, a new “Flash Hunting Findings” investigation has uncovered a short but well‑structured malware campaign impersonating MalwareBytes to deliver infostealers and steal user logins and crypto‑wallet data. The…
Windows SMB Client Vulnerability Exposes Organizations to Full Active Directory Compromise
A severe vulnerability in Windows Server Message Block (SMB) client authentication has emerged as a critical threat to Active Directory environments. CVE-2025-33073, a logical flaw in NTLM reflection handling, enables authenticated attackers to escalate to SYSTEM-level privileges and compromise domain controllers, potentially…
CIRO Confirms Data Breach Impacting 750,000 Canadian Investors
The Canadian Investment Regulatory Organization (CIRO) has officially confirmed a significant data breach affecting approximately 750,000 Canadian investors, stemming from a sophisticated phishing attack initially detected in August 2025. The organization publicly disclosed the incident on January 14, 2026, following a comprehensive…