Long-Running Web Skimming Campaign Steals Credit Cards From Online Checkout Pages

13/01/2026 0 Comments 0 tags

Cybersecurity researchers have discovered a major web skimming campaign that has been active since January 2022, targeting several major payment networks like American Express, Diners Club, Discover, JCB Co., Ltd.,

Malicious Chrome Extension Steals MEXC API Keys by Masquerading as Trading Tool

13/01/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a malicious Google Chrome extension that’s capable of stealing API keys associated with MEXC, a centralized cryptocurrency exchange (CEX) available in over 170 countries,

[Webinar] Securing Agentic AI: From MCPs and Tool Access to Shadow API Key Sprawl

13/01/2026 0 Comments 0 tags

AI agents are no longer just writing code. They are executing it. Tools like Copilot, Claude Code, and Codex can now build, test, and deploy software end-to-end in minutes. That

New Advanced Linux VoidLink Malware Targets Cloud and container Environments

13/01/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a previously undocumented and feature-rich malware framework codenamed VoidLink that’s specifically designed for long-term, stealthy access to Linux-based cloud environments According to a new

ServiceNow Patches Critical AI Platform Flaw Allowing Unauthenticated User Impersonation

13/01/2026 0 Comments 0 tags

ServiceNow has disclosed details of a now-patched critical security flaw impacting its ServiceNow AI Platform that could enable an unauthenticated user to impersonate another user and perform arbitrary actions as

What Should We Learn From How Attackers Leveraged AI in 2025?

13/01/2026 0 Comments 0 tags

Old Playbook, New Scale: While defenders are chasing trends, attackers are optimizing the basics The security industry loves talking about “new” threats. AI-powered attacks. Quantum-resistant encryption. Zero-trust architectures. But looking

New Malware Campaign Delivers Remcos RAT Through Multi-Stage Windows Attack

13/01/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a new campaign dubbed SHADOW#REACTOR that employs an evasive multi-stage attack chain to deliver a commercially available remote administration tool called Remcos RAT and

CISA Warns of Active Exploitation of Gogs Vulnerability Enabling Code Execution

13/01/2026 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned of active exploitation of a high-severity security flaw impacting Gogs by adding it to its Known Exploited Vulnerabilities (KEV) catalog.

n8n Supply Chain Attack Abuses Community Nodes to Steal OAuth Tokens

12/01/2026 0 Comments 0 tags

Threat actors have been observed uploading a set of eight packages on the npm registry that masqueraded as integrations targeting the n8n workflow automation platform to steal developers’ OAuth credentials.

⚡ Weekly Recap: AI Automation Exploits, Telecom Espionage, Prompt Poaching & More

12/01/2026 0 Comments 0 tags

This week made one thing clear: small oversights can spiral fast. Tools meant to save time and reduce friction turned into easy entry points once basic safeguards were ignored. Attackers