#from


80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjacking

Sep 28, 2026 // 19:37

The summer of 2026 taught the security industry a new phrase: the stolen AI login. In late August, as BleepingComputer reported, Anthropic responded to infostealer-driven […]

Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports

Sep 15, 2026 // 19:50

A flaw in Telegram Desktop let a bot’s message plant hidden JavaScript inside chats that users exported to HTML files, security researchers at ExPatch said […]

Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers

Sep 15, 2026 // 14:20

Cybersecurity researchers have disclosed details of a mass-scanning campaign that has targeted Vite deployments siphon sensitive data. The first is an automated effort aimed at […]

Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports

Sep 14, 2026 // 23:22

A flaw in Telegram Desktop let a bot’s message plant hidden JavaScript inside chats that users exported to HTML files, security researchers at ExPatch said […]

Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users

Sep 14, 2026 // 11:51

A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial bot service. […]

Hackers abused Claude to extract secrets from 1.8M Android apps

Sep 12, 2026 // 01:36

Anthropic says multiple threat groups, including the financially motivated and state-sponsored espionage groups linked to Russia and China, tried to abuse its Claude AI model […]

Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks

Sep 10, 2026 // 14:39

The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and drops a tampered banking app […]

US says Chinese firms extracted billions of tokens from frontier AI models

Sep 9, 2026 // 19:56

U.S. cybersecurity and intelligence agencies say that six Chinese AI companies conducted industrial-scale distillation attacks on American frontier AI models since at least late 2024. […]

Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution

Sep 8, 2026 // 19:29

A previously undocumented financially motivated threat actor has been linked to attacks targeting Brazilian financial institutions since at least March 2026. Cybersecurity company CrowdStrike is […]

Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities

Sep 5, 2026 // 12:29

Threat actors are exploiting the newly disclosed PaperCut flaws to facilitate credential theft in attacks targeting the education sector in the U.S. and Europe. The […]

1 2 3 … 7 Next