Malicious npm Package Stole Files From Claude AI User Directory via GitHub

27/05/2026 0 Comments 0 tags

Cybersecurity researchers have discovered a new malicious package on the npm registry that comes with information stealing capabilities. According to OX Security, the package, named “mouse5212-super-formatter,” is designed to upload

Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users

27/05/2026 0 Comments 0 tags

Latin America and Europe become the target of two banking trojan campaigns that are designed to infect Windows and Android devices with Grandoreiro and BTMOB malware, respectively. That’s according to

3 SOC Steps that Shut Down Incident Risks Early

27/05/2026 0 Comments 0 tags

Most organizations still picture cyber defense as a fortress problem: build stronger walls, add more guards, buy another detection engine. But modern incidents rarely crash through the front gate. They

GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure

27/05/2026 0 Comments 0 tags

CrowdStrike, in partnership with Google and the Shadowserver Foundation, has announced the simultaneous disruption of all command-and-control (C2) channels associated with GlassWorm, a persistent software chain campaign targeting software developers

5 Steps to Managing Shadow AI Tools Without Slowing Down Employees

27/05/2026 0 Comments 0 tags

When an employee installs an AI writing assistant, connects a coding copilot to their IDE, or starts summarizing meetings with a new browser tool, they are doing exactly what a

Gitea Vulnerability Exposes Private Container Images without Authentication

27/05/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed a security flaw in Gitea, an open-source, self-hosted platform for version control, that allows unauthenticated remote attackers to pull private container images from Gitea deployments without

AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites

27/05/2026 0 Comments 0 tags

Microsoft has warned of an active cryptojacking campaign that makes use of artificial intelligence (AI) chatbot interactions as a mechanism for surfacing malicious download sites. “This emerging delivery technique extends

MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries

26/05/2026 0 Comments 0 tags

The Iranian hacking group known as MuddyWater has been linked to a new campaign affecting at least nine organizations across nine countries on four continents in the first quarter of

Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions

26/05/2026 0 Comments 0 tags

Microsoft has rolled out updates to fix a remote code execution vulnerability impacting SharePoint that could be exploited by bad actors in attacks without requiring any specialized conditions to be

New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar

26/05/2026 0 Comments 0 tags

Every single day, hackers are finding new ways to crash websites and steal data. But right now, something has changed. Hackers are no longer working alone. They are now using