Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit

12/06/2026 0 Comments 0 tags

Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built

China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade

12/06/2026 0 Comments 0 tags

Instead of hiding on the laptops and servers defenders watch most closely, a China-nexus group spent close to a decade hidden inside the Linux login system itself. Sygnia, which tracks

Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing

12/06/2026 0 Comments 0 tags

Google on Friday said it’s pursuing legal action against a Chinese cybercrime network, accusing it of using its Gemini artificial intelligence (AI) agent to send phishing text messages targeting Americans.

400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer

12/06/2026 0 Comments 0 tags

Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built

Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code

12/06/2026 0 Comments 0 tags

Cybersecurity researchers have described what they say is a new class of attack that can trick artificial intelligence (AI) coding agents into running arbitrary code on developer machines. Called Agentjacking

Rethinking MDR as Attackers and Defenders Embrace AI

12/06/2026 0 Comments 0 tags

For most of the past decade, managed detection and response was the answer to a real problem. Security teams couldn’t staff around the clock, couldn’t hire enough analysts, and needed

INTERPOL Operation Takes Down Sniper Dz Phishing Platform, Arrests Administrator

12/06/2026 0 Comments 0 tags

An INTERPOL-led operation last month resulted in the disruption of Sniper Dz, a decade-long phishing-as-a-service (PhaaS) platform, Group-IB said Thursday. The effort, codenamed Operation Ramz, took place between October 2025

LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution

12/06/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of three now-patched security flaws impacting LangGraph, including a critical vulnerability chain that could result in remote code execution. LangGraph is an open-source framework created

Europol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware Gangs

12/06/2026 0 Comments 0 tags

Authorities in Europe have disrupted AudiA6, a cryptocurrency laundering service used by ransomware gangs and cybercriminal networks. Europol, in a statement issued Thursday, said the dismantling of AudiA6 cut off

ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities

12/06/2026 0 Comments 0 tags

The ShinyHunters extortion crew exploited an unpatched flaw in Oracle PeopleSoft to break into enterprise systems, steal data, and demand payment to keep it private. The campaign hit universities hardest.