#Blog


OpenAI Agent Bypassed Australian Medicare Portal Controls to Access Non-Public Files

Sep 24, 2026 // 23:39

An AI agent on an internal OpenAI research task bypassed access controls on an Australian government Medicare statistics portal in June, Prime Minister Anthony Albanese […]

17,000 URLs Reveal How ClickFix Turns Trusted Websites Into Malware Traps: Report by CTM360

Sep 24, 2026 // 23:39

ClickFix has become the most common way attackers get into enterprise networks, and it does it without an exploit, an attachment, or a file on […]

Secrets Sprawl Is an Identity Problem That AI Just Made Impossible to Ignore

Sep 24, 2026 // 23:38

AI coding agents are changing how quickly developers can build and ship software as well as how quickly credentials can become exposed. According to GitGuardian’s […]

Hackers start exploiting critical WordPress flaw for code execution

Sep 24, 2026 // 23:38

Threat actors have moved from probing WordPress sites vulnerable to CVE-2026-87902 to exploiting the flaw to write files to disk that execute shell commands when […]

Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls

Sep 24, 2026 // 23:38

The logistics sector has become the target of a new malicious cyber campaign that distributes an Android spyware codenamed Corp MDM. According to Have I […]

Check Point warns of hackers exploiting Security Gateway VPN RCE flaw

Sep 24, 2026 // 23:38

Cybersecurity company Check Point has confirmed active exploitation of CVE-2026-85102, a pre-authentication remote code execution (RCE) vulnerability in the VPN certificate-handling functionality of its Security […]

Hacked Ukrainian Sites Serve Fake Cloudflare ClickFix Lures for Psychedelic Stealer

Sep 24, 2026 // 23:38

An active ClickFix campaign has been observed compromising legitimate Ukrainian business websites to inject bogus Cloudflare verification pages and trick victims into downloading a previously […]

New RemControl Android banking malware targets users in Europe and Canada

Sep 24, 2026 // 23:38

A new Android malware-as-a-service (MaaS) platform called RemControl is targeting users through malvertising campaigns that impersonate the TVTap IPTV application. Although the infrastructure has been […]

Placeholder third-party[.]com Referenced Across 1,700+ Repositories Now Serves Malicious Content

Sep 24, 2026 // 23:38

The “third-party[.]com” domain, commonly used as a documentation placeholder, has been observed serving a ClickFix lure to Windows browsers while displaying a harmless decoy to […]

Placeholder domain used in dev docs now serves ClickFix attacks

Sep 24, 2026 // 23:38

The “third-party.com” domain, commonly used as a placeholder in developer documentation and code examples, is serving a fake Cloudflare verification page that attempts to trick Windows […]

Previous 1 … 12 13 14 15 16 … 381 Next