#hijacked


Real emails, hijacked payments: Two H1 2026 attack chains

Aug 8, 2026 // 01:05

Gen Threat Labs followed two H1 2026 campaigns where attackers used legitimate accounts, browser settings and blockchain data as part of the attack path. The […]

Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware

Aug 3, 2026 // 14:58

A fake browser update served over hijacked hotel Wi-Fi has been used to deliver CornFlake, a remote access trojan (RAT) that can capture webcam images, […]

Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware

Aug 3, 2026 // 14:38

A fake browser update served over hijacked hotel Wi-Fi has been used to deliver CornFlake, a remote access trojan (RAT) that can capture webcam images, […]

Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware

Aug 1, 2026 // 09:36

A fake browser update served over hijacked hotel Wi-Fi has been used to deliver CornFlake, a remote access trojan (RAT) that can capture webcam images, […]

20+ Hijacked Government Websites Became
an Attack Channel

Jul 16, 2026 // 15:17

More than 20 Brazilian government websites were hijacked and turned into malware delivery channels in an active PhantomEnigma campaign uncovered by ANY.RUN, a leading provider […]

ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds

Jul 2, 2026 // 17:17

It can start with something as mundane as dragging a link into your browser. Three seconds later, a threat actor has the tokens needed to […]

Hijacked npm and Go Packages Use VS Code Tasks to Deploy Python Infostealer

Jun 29, 2026 // 09:45

Cybersecurity researchers have uncovered two hijacked npm packages and a cluster of Go packages that are designed to deploy a Python-based information stealer on compromised […]

144 Mastra npm Packages Compromised via Hijacked Contributor Account

Jun 17, 2026 // 15:01

As many as 144 npm packages associated with the Mastra namespace (“@mastra/*”), a popular open-source JavaScript and TypeScript framework for building artificial intelligence (AI) applications, […]

Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit

Jun 13, 2026 // 00:44

Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer […]

Laravel Lang packages hijacked to deploy credential-stealing malware

May 23, 2026 // 23:57

A supply chain attack targeting the Laravel Lang localization packages has exposed developers to a sophisticated credential-stealing malware campaign after attackers abused GitHub version tags […]

1 2 Next