New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands

16/07/2026 0 Comments 0 tags

Cybersecurity researchers have called attention to a new modular malware called TELEPUZ that’s been spreading via websites infected with ClickFix lures since late April 2026. “The malware is full-featured, lightweight,

Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor

16/07/2026 0 Comments 0 tags

An advanced malware previously attributed to a China-linked threat actor has resurfaced after more than four years within a Taiwan manufacturing firm, along with a previously unreported backdoor dubbed Stupig.

New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker Commands

16/07/2026 0 Comments 0 tags

Ask an AI agent to summarize the reviews on a product page, and a single planted review can make it click “Buy Now” instead. Ask a coding assistant to apply

20+ Hijacked Government Websites Became
an Attack Channel

16/07/2026 0 Comments 0 tags

More than 20 Brazilian government websites were hijacked and turned into malware delivery channels in an active PhantomEnigma campaign uncovered by ANY.RUN, a leading provider of interactive malware analysis and

Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-Wide

16/07/2026 0 Comments 0 tags

Pull the certificate off the flash of a Shark RV2320EDUS robot vacuum, and you can run root commands on other people’s Shark vacuums across the same AWS region: watch the

AI Can Find Bugs, But Human Knowledge Still Proves Them

16/07/2026 0 Comments 0 tags

Artificial intelligence (AI) is changing offensive security, but it has not changed the standard that matters most: a finding has to be proven before it becomes useful. AI-assisted tools can

OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 Sol

16/07/2026 0 Comments 0 tags

OpenAI has disclosed details of GPT-Red, an internal automated red-teaming model that scales prompt injection vulnerability discovery with an aim to fix issues before the tools are deployed widely. “GPT‑Red

Zoom Patches Critical Windows Flaw That Could Enable Account Takeover

16/07/2026 0 Comments 0 tags

Zoom has released security updates for a critical security flaw impacting Zoom Workplace for Windows that could facilitate account takeover. The vulnerability, tracked as CVE-2026-53412 (CVSS score: 9.8), affects Zoom

TuxBot v3 Evolution Shows Signs of LLM-Assisted IoT Botnet Development

15/07/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a previously unreported Internet-of-Things (IoT) botnet framework dubbed TuxBot v3 Evolution that shows signs of being developed with assistance from a large language model

OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor Apps

15/07/2026 0 Comments 0 tags

A malware framework called OkoBot has been running on Windows machines since April 2025, and one of its modules is built to con hardware wallet owners out of their recovery