OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link

02/02/2026 0 Comments 0 tags

A high-severity security flaw has been disclosed in OpenClaw (formerly referred to as Clawdbot and Moltbot) that could allow remote code execution (RCE) through a crafted malicious link. The issue,

Microsoft Begins NTLM Phase-Out With Three-Stage Plan to Move Windows to Kerberos

02/02/2026 0 Comments 0 tags

Microsoft has announced a three-phase approach to phase out New Technology LAN Manager (NTLM) as part of its efforts to shift Windows environments toward stronger, Kerberos-based options. The development comes

Securing the Mid-Market Across the Complete Threat Lifecycle

02/02/2026 0 Comments 0 tags

For mid-market organizations, cybersecurity is a constant balancing act. Proactive, preventative security measures are essential to protect an expanding attack surface. Combined with effective protection that blocks threats, they play

⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New Threats

02/02/2026 0 Comments 0 tags

Every week brings new discoveries, attacks, and defenses that shape the state of cybersecurity. Some threats are stopped quickly, while others go unseen until they cause real damage. Sometimes a

Notepad++ Official Update Mechanism Hijacked to Deliver Malware to Select Users

02/02/2026 0 Comments 0 tags

The maintainer of Notepad++ has revealed that state-sponsored attackers hijacked the utility’s update mechanism to redirect update traffic to malicious servers instead. “The attack involved [an] infrastructure-level compromise that allowed

Open VSX Supply Chain Attack Used Compromised Dev Account to Spread GlassWorm

02/02/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a supply chain attack targeting the Open VSX Registry in which unidentified threat actors compromised a legitimate developer’s resources to push malicious updates to

eScan Antivirus Update Servers Compromised to Deliver Multi-Stage Malware

02/02/2026 0 Comments 0 tags

The update infrastructure for eScan antivirus, a security solution developed by Indian cybersecurity company MicroWorld Technologies, has been compromised by unknown attackers to deliver a persistent downloader to enterprise and

Iran-Linked RedKitten Cyber Campaign Targets Human Rights NGOs and Activists

31/01/2026 0 Comments 0 tags

A Farsi-speaking threat actor aligned with Iranian state interests is suspected to be behind a new campaign targeting non-governmental organizations and individuals involved in documenting recent human rights abuses. The

Mandiant Finds ShinyHunters-Style Vishing Attacks Stealing MFA to Breach SaaS Platforms

31/01/2026 0 Comments 0 tags

Google-owned Mandiant on Friday said it identified an “expansion in threat activity” that uses tradecraft consistent with extortion-themed attacks orchestrated by a financially motivated hacking group known as ShinyHunters. The

CERT Polska Details Coordinated Cyber Attacks on 30+ Wind and Solar Farms

31/01/2026 0 Comments 0 tags

CERT Polska, the Polish computer emergency response team, revealed that coordinated cyber attacks targeted more than 30 wind and photovoltaic farms, a private company from the manufacturing sector, and a