⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New Threats

02/02/2026 0 Comments 0 tags

Every week brings new discoveries, attacks, and defenses that shape the state of cybersecurity. Some threats are stopped quickly, while others go unseen until they cause real damage. Sometimes a

Securing the Mid-Market Across the Complete Threat Lifecycle

02/02/2026 0 Comments 0 tags

For mid-market organizations, cybersecurity is a constant balancing act. Proactive, preventative security measures are essential to protect an expanding attack surface. Combined with effective protection that blocks threats, they play

Notepad++ Official Update Mechanism Hijacked to Deliver Malware to Select Users

02/02/2026 0 Comments 0 tags

The maintainer of Notepad++ has revealed that state-sponsored attackers hijacked the utility’s update mechanism to redirect update traffic to malicious servers instead. “The attack involved [an] infrastructure-level compromise that allowed

eScan Antivirus Update Servers Compromised to Deliver Multi-Stage Malware

02/02/2026 0 Comments 0 tags

The update infrastructure for eScan antivirus, a security solution developed by Indian cybersecurity company MicroWorld Technologies, has been compromised by unknown attackers to deliver a persistent downloader to enterprise and

Open VSX Supply Chain Attack Used Compromised Dev Account to Spread GlassWorm

02/02/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a supply chain attack targeting the Open VSX Registry in which unidentified threat actors compromised a legitimate developer’s resources to push malicious updates to

Iran-Linked RedKitten Cyber Campaign Targets Human Rights NGOs and Activists

31/01/2026 0 Comments 0 tags

A Farsi-speaking threat actor aligned with Iranian state interests is suspected to be behind a new campaign targeting non-governmental organizations and individuals involved in documenting recent human rights abuses. The

Mandiant Finds ShinyHunters-Style Vishing Attacks Stealing MFA to Breach SaaS Platforms

31/01/2026 0 Comments 0 tags

Google-owned Mandiant on Friday said it identified an “expansion in threat activity” that uses tradecraft consistent with extortion-themed attacks orchestrated by a financially motivated hacking group known as ShinyHunters. The

CERT Polska Details Coordinated Cyber Attacks on 30+ Wind and Solar Farms

31/01/2026 0 Comments 0 tags

CERT Polska, the Polish computer emergency response team, revealed that coordinated cyber attacks targeted more than 30 wind and photovoltaic farms, a private company from the manufacturing sector, and a

Researchers Uncover Chrome Extensions Abusing Affiliate Links and Stealing ChatGPT Access

30/01/2026 0 Comments 0 tags

Cybersecurity researchers have discovered malicious Google Chrome extensions that come with capabilities to hijack affiliate links, steal data, and collect OpenAI ChatGPT authentication tokens. One of the extensions in question

China-Linked UAT-8099 Targets IIS Servers in Asia with BadIIS SEO Malware

30/01/2026 0 Comments 0 tags

Cybersecurity researchers have discovered a new campaign attributed to a China-linked threat actor known as UAT-8099 that took place between late 2025 and early 2026. The activity, discovered by Cisco