China-Linked Storm-1175 Uses Zero Days To Deploy Medusa Ransomware

2 min read

A China linked threat group known as Storm 1175 is using zero day vulnerabilities to deploy Medusa ransomware in rapid cyber attacks.

Hackers Are Now Spreading Malware Using Claude Code Leak on GitHub

2 min read

Hackers are exploiting Anthropic’s accidental Claude Code source leak to distribute Vidar and GhostSocks malware through fake GitHub repositories. The campaign targets developers searching for…

New Chrome Zero Day Lets Hackers Run Code Through Web Pages

2 min read

Google released an emergency update for Chrome on April 1 to fix 21 security flaws, including a zero-day vulnerability attackers are already using. If you…

Google Expands Drive Security With Automatic Ransomware Detection

2 min read

Google has enabled ransomware detection by default in Google Drive for paid Workspace users, expanding its push into built in cloud security protections.

OpenAI Patches ChatGPT Bug That Could Have Leaked All Your Conversations

3 min read

OpenAI has patched a previously unknown vulnerability in ChatGPT that allowed conversation data to be secretly stolen through a hidden DNS channel in the AI’s…

Critical Flaw in Claude Chrome Extension Allowed Malicious Prompt Injection

3 min read

Security researchers uncover vulnerability enabling attackers to hijack AI assistant without user interactionCybersecurity researchers have disclosed a significant vulnerability in Anthropic’s Claude Google Chrome Extension…

Hackers Compromise Developer Tools In Major Supply Chain Attack

3 min read

The threat group TeamPCP, which breached Aqua Security’s Trivy vulnerability scanner last week, has used stolen credentials from that attack to compromise two GitHub Actions…

LeakNet Ransomware Tricks Victims Into Infecting Themselves Through Hacked Websites

3 min read

The ransomware group has adopted the ClickFix social engineering tactic, using compromised legitimate websites to serve fake CAPTCHA pages that trick users into running malicious…

GlassWorm Malware Silently Infects Hundreds of Python Projects

2 min read

Attackers are using stolen GitHub credentials to silently inject cryptocurrency-stealing malware into legitimate Python projects, rewriting git history to leave no visible trace in GitHub’s…

Hackers Use Microsoft Teams to Trick Finance and Healthcare Staff Into Installing Backdoors

3 min read

A newly documented campaign targets corporate employees at financial and healthcare organizations through Teams messages, convincing them to hand over remote access via Quick Assist…

Critical WordPress Plugin Bug Can Now Hijack 60,000 Websites With Admin Access

2 min read

A privilege management bug in the User Registration & Membership plugin allows anyone to register as a site administrator without credentials, with Wordfence blocking hundreds…

China Associated APT41 Hackers Deploy Silver Dragon Malware Operation

3 min read

Researchers at Check Point have exposed an APT41 sub-cluster deploying custom loaders, DNS tunneling, and a Google Drive backdoor to infiltrate government entities across Europe…

How Pakistan, Bangladesh, and Sri Lanka Were Hit by India-Linked Threat Actors

3 min read

A newly identified cyber espionage campaign attributed to an India-nexus threat actor has targeted government agencies and critical infrastructure operators in Pakistan, Bangladesh and Sri…

Get Alerts