ThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 More

28/05/2026 0 Comments 0 tags

Every time you think the industry has finally stopped doing some reckless, low-effort crap, somebody spins up a fresh box full of sketchy loaders, fake installers, recycled social-engineering bait, and

Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account Removal

28/05/2026 0 Comments 0 tags

Microsoft has come out strongly in favor of Coordinated Vulnerability Disclosure (CVD), urging the research community to share their findings and give affected vendors an opportunity to better understand the

New AI Usage Report: Enterprise AI Risk Is Heavily Concentrated Among a Small Group of AI “Power users”

28/05/2026 0 Comments 0 tags

State of AI Usage Report 2026 (full report here) by LayerX Security reveals the extent of the enterprise AI visibility gap and why most organizations still don’t understand where their

JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware

28/05/2026 0 Comments 0 tags

A new campaign orchestrated by a previously undocumented threat actor has targeted cryptocurrency organizations with an aim to facilitate digital asset theft using recruitment-themed social engineering and bespoke macOS malware.

Malicious npm Package Stole Files From Claude AI User Directory via GitHub

27/05/2026 0 Comments 0 tags

Cybersecurity researchers have discovered a new malicious package on the npm registry that comes with information stealing capabilities. According to OX Security, the package, named “mouse5212-super-formatter,” is designed to upload

Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users

27/05/2026 0 Comments 0 tags

Latin America and Europe become the target of two banking trojan campaigns that are designed to infect Windows and Android devices with Grandoreiro and BTMOB malware, respectively. That’s according to

3 SOC Steps that Shut Down Incident Risks Early

27/05/2026 0 Comments 0 tags

Most organizations still picture cyber defense as a fortress problem: build stronger walls, add more guards, buy another detection engine. But modern incidents rarely crash through the front gate. They

GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure

27/05/2026 0 Comments 0 tags

CrowdStrike, in partnership with Google and the Shadowserver Foundation, has announced the simultaneous disruption of all command-and-control (C2) channels associated with GlassWorm, a persistent software chain campaign targeting software developers

5 Steps to Managing Shadow AI Tools Without Slowing Down Employees

27/05/2026 0 Comments 0 tags

When an employee installs an AI writing assistant, connects a coding copilot to their IDE, or starts summarizing meetings with a new browser tool, they are doing exactly what a

Gitea Vulnerability Exposes Private Container Images without Authentication

27/05/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed a security flaw in Gitea, an open-source, self-hosted platform for version control, that allows unauthenticated remote attackers to pull private container images from Gitea deployments without