A threat actor operating under the handle EclipseSupport is actively promoting a new Ransomware-as-a-Service (RaaS) operation named Eclipse Ransomware on…
Tag: Cyber Security News
WhatsApp Unveils New Scam Alert Feature to Protect Users from Social Engineering Attacks
WhatsApp has announced a new optional feature called Scam Alert, designed to warn users about potential scam messages using an on-device machine learning…
Google Chrome 151 Patches Five High-Severity Use-After-Free Flaws in V8, Blink, and Extensions
Google has officially released Chrome 151 to the Stable channel, mitigating five high-severity security vulnerabilities impacting key browser engine…
Hackers Actively Exploiting VMware vCenter Systems to Gain and Maintain Remote Access
An active cyberattack campaign targeting internet-accessible VMware vCenter instances. QUIRSO researchers uncovered evidence that advanced persistent…
737 Fake Chrome VPN Extensions Hijack Browser Traffic Through Attacker-Controlled SOCKS5 Proxies
Hundreds of Chrome extensions advertised as free VPN or proxy tools have been tied to a large traffic-redirection operation. The listings promised privacy…
2.86 Billion Credentials Flood Criminal Markets as Enterprise Access Moves Upmarket
Stolen login data is so abundant that criminal markets can sell it for almost nothing. Meanwhile, verified entry into large companies commands far higher…
Fake CCleaner Download Installs GhostDesk Chrome Spyware on Windows PCs
Windows users looking for a familiar cleanup utility are being steered toward a convincing counterfeit download page. The file they receive installs…
13-Minute WindRelay Malware Attack Uses SpyNote RAT and NFC Relay Malware to Drain Victim Accounts
A new Android fraud operation shows how quickly a convincing phone call can turn into financial loss. The campaign combines the SpyNote remote-control…
CAV3RN Uses Google Apps Script as C2 Relay to Hide Malware Traffic Behind Google Infrastructure
CAV3RN is a modular espionage framework that is becoming harder to see on a network. Its newest communication component hides remote-control traffic…
Nightmare-Eclipse Drops ShieldBreak Windows Defender 0-day Vulnerability
The prolific and controversial security researcher known as Nightmare-Eclipse (also tracked under the alias Chaotic Eclipse) has released a ninth Windows…
Top 10 Best DDoS Protection Services in 2026
Cloudflare is the best DDoS protection service for most organizations in 2026, scoring highest in our evaluation on the combination of network capacity,…
Google-themed Credential Phishing Attempt Delivered Through a Fake ‘New Audio MSG’ Email
A new credential phishing campaign is using a fake “New Audio MSG” email to draw recipients toward a convincing Google-themed sign-in page. The message…
ClickFix Attack Abuses Signed IBM SPSS IDE to Deploy New CNCMachineRMS RAT
ClickFix campaigns are once again turning an ordinary user action into the opening move of a serious intrusion. A newly documented chain uses a fake fix…
Top 10 Best Network Access Control (NAC) Solutions in 2026
Modern network access control solutions decide which devices get onto your network, what they can reach once connected, and what happens when an unmanaged…
Top 10 Best Business VPN Solutions in 2026
The best business VPN solutions in 2026 are increasingly the ones that aren’t traditional VPNs at all. Twingate and Tailscale lead for modern…
Sandworm Fake Job Interviews Push Trojanized WireGuard VPN to Infect IT Professionals
Sandworm has turned the routine job interview into a route for compromising IT workers. The campaign uses convincing recruiter conversations, live video…
Microsoft SharePoint Server Vulnerability Allows Attackers to Inject and Execute Malicious Code Remotely
A newly disclosed flaw in Microsoft SharePoint Server has raised fresh concerns across enterprise IT environments, as security researchers reveal how…
Windows AFD.sys 0-Day Actively Exploited by Lazarus Hackers to Deploy FudModule Rootkit
North Korea’s Lazarus group has been caught exploiting a Windows kernel 0-day vulnerability to deploy an upgraded version of its notorious FudModule…
Lazarus Hackers Actively Exploiting Windows AFD.sys Zero-Day to Deploy FudModule Rootkit
North Korea’s Lazarus group has been caught exploiting a Windows kernel 0-day vulnerability to deploy an upgraded version of its notorious FudModule…
Microsoft Outlook Vulnerability Allows Attackers to Execute Malicious Code Remotely
Microsoft has disclosed a new remote code execution flaw in Outlook, tracked as CVE-2026-70329, as part of its August 2026 Patch Tuesday rollout. The…