Malicious npm Package Posing as OpenClaw Installer Deploys RAT, Steals macOS Credentials

09/03/2026 0 Comments 0 tags

Cybersecurity researchers have discovered a malicious npm package that masquerades as an OpenClaw installer to deploy a remote access trojan (RAT) and steal sensitive data from compromised hosts. The package,

UNC4899 Breached Crypto Firm After Developer AirDropped Trojanized File to Work Device

09/03/2026 0 Comments 0 tags

The North Korean threat actor known as UNC4899 is suspected to be behind a sophisticated cloud compromise campaign targeting a cryptocurrency organization in 2025 to steal millions of dollars in

⚡ Weekly Recap: Qualcomm 0-Day, iOS Exploit Chains, AirSnitch Attack & Vibe-Coded Malware

09/03/2026 0 Comments 0 tags

Another week in cybersecurity. Another week of “you’ve got to be kidding me.” Attackers were busy. Defenders were busy. And somewhere in the middle, a whole lot of people had

Can the Security Platform Finally Deliver for the Mid-Market?

09/03/2026 0 Comments 0 tags

Mid-market organizations are constantly striving to achieve security levels on a par with their enterprise peers. With heightened awareness of supply chain attacks, your customers and business partners are defining

Chrome Extension Turns Malicious After Ownership Transfer, Enabling Code Injection and Data Theft

09/03/2026 0 Comments 0 tags

Two Google Chrome extensions have turned malicious after what appears to be a case of ownership transfer, offering attackers a way to push malware to downstream customers, inject arbitrary code,

Web Server Exploits and Mimikatz Used in Attacks Targeting Asian Critical Infrastructure

09/03/2026 0 Comments 0 tags

High-value organizations located in South, Southeast, and East Asia have been targeted by a Chinese threat actor as part of a years-long campaign. The activity, which has targeted aviation, energy,

Anthropic Finds 22 Firefox Vulnerabilities Using Claude Opus 4.6 AI Model

07/03/2026 0 Comments 0 tags

Anthropic on Friday said it discovered 22 new security vulnerabilities in the Firefox web browser as part of a security partnership with Mozilla. Of these, 14 have been classified as

OpenAI Codex Security Scanned 1.2 Million Commits and Found 10,561 High-Severity Issues

07/03/2026 0 Comments 0 tags

OpenAI on Friday began rolling out Codex Security, an artificial intelligence (AI)-powered security agent that’s designed to find, validate, and propose fixes for vulnerabilities. The feature is available in a

Multi-Stage VOID#GEIST Malware Delivering XWorm, AsyncRAT, and Xeno RAT

06/03/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a multi-stage malware campaign that uses batch scripts as a pathway to deliver various encrypted remote access trojan (RATs) payloads that correspond to XWorm,

Transparent Tribe Uses AI to Mass-Produce Malware Implants in Campaign Targeting India

06/03/2026 0 Comments 0 tags

The Pakistan-aligned threat actor known as Transparent Tribe has become the latest hacking group to embrace artificial intelligence (AI)-powered coding tools to strike targets with various implants. The activity is