⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More

24/08/2026 0 Comments 0 tags

A package gets installed. A login prompt opens. A box sits exposed to the internet. Nothing looks unusual yet. That’s roughly the mood this week. Trusted tools turn hostile, old

WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords

24/08/2026 0 Comments 0 tags

Cybersecurity researchers have flagged two new malware families called WordlistLoader and SynkLoader that’s used to deliver next-stage payloads and likely sell access to ransomware groups. According to findings from Gen

The Outsized Shadow: Why 5% of AI Users Are Your Biggest Security Risk

24/08/2026 0 Comments 0 tags

Big security risks come in small packages. While enterprise security teams focus on policing the proliferation of employees using ChatGPT and Claude for quick drafting tasks, a more urgent threat

Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor

24/08/2026 0 Comments 0 tags

Cybersecurity researchers have flagged a cyber espionage campaign targeting Myanmar that uses graduation ceremony invitation lures to deliver a Go backdoor called QUICAgent. The campaign, codenamed Operation QUICSILVER, has been

Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account

24/08/2026 0 Comments 0 tags

Red Hat and the Keycloak project have released patches to address a critical security flaw in the open-source identity and access management server that could allow an unauthenticated remote attacker

Shipping More AI Code Than You Can Secure? Watch How to Control Remediation Debt

24/08/2026 0 Comments 0 tags

If your developers are using AI coding tools, you are probably already seeing the upside: faster development, more code, and less time spent on routine work. The harder part is

UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

24/08/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that’s targeting Windows and Linux web servers globally across the education, media, technology, and gaming sectors. The vast

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

22/08/2026 0 Comments 0 tags

The U.S. Department of Justice (DoJ) announced on Friday that ByteDance-owned TikTok will pay $400 million to settle a 2024 lawsuit accusing the company of violating child privacy laws in

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

21/08/2026 0 Comments 0 tags

Cybersecurity researchers have discovered a set of trojanized npm packages that masquerade as working calendar and streak utilities but are engineered to stealthily deliver an artificial intelligence (AI)-powered Linux implant

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

21/08/2026 0 Comments 0 tags

Cybersecurity researchers have flagged a new malware family that’s specifically designed to infect Android-based vehicle head unit firmware developed by DoFun. Kaspersky, which discovered the threat in June 2026, said