Nigerians extradited to US for sextortion, deaths of two teens

Two Nigerian men have been extradited to the United States and charged with involvement in sextortion schemes that tragically resulted in the deaths of two teenage victims. Adebola Festus Adekunle, 26, and Mudasiru Afeez Olawale, 24, were arrested in Nigeria last year as part of a joint international law enforcement operation aimed at dismantling online … Read more

Microsoft says Windows 11 KB5120998 update resets mouse settings

A recent batch of Windows 11 updates has left some users frustrated with their mouse settings being reset or altered without warning. The culprit appears to be Microsoft’s KB5120998 update, which was released last Thursday as a non-security preview update aimed at improving the Start menu, taskbar, and Windows search functionality. According to user reports, … Read more

DoJ Corrects China Hacking Claim, Says U.S. Agencies Were Targets, Not Victims

A shocking correction from the US Department of Justice (DoJ) has revealed that American government agencies were not victims, but rather targets of a sophisticated hacking campaign allegedly carried out by Chinese hackers. The revelation comes as part of an ongoing investigation into a complex web of identity exposure and privilege escalation tactics. At the … Read more

China-Linked Fire Ant Hijacks Cisco Routers to Steal Credentials and Blind Security Logs

A sophisticated hacking campaign, dubbed “Fire Ant,” has been linked to Chinese state-sponsored actors and is targeting Cisco routers worldwide. The attackers are exploiting vulnerabilities in these devices to steal sensitive credentials and disable security logs, rendering organizations vulnerable to further attacks. This brazen campaign highlights the ongoing threat posed by nation-state hackers and underscores … Read more

More Details Emerge on Exploited PaperCut Vulnerabilities

PaperCut Software has released a second emergency patch to address zero-day vulnerabilities exploited against its print management solutions, affecting thousands of users worldwide. A group of attackers has been targeting PaperCut NG and MF instances, bypassing authentication and achieving remote code execution on affected systems. Initially, it was thought that only one vulnerability had been … Read more

ISC Stormcast For Monday, August 31st, 2026 https://isc.sans.edu/podcastdetail/10074, (Mon, Aug 31st)

A Major Malvertising Campaign Spreads Across the Globe, Targeting Millions of Users A massive malvertising campaign has been uncovered, affecting millions of internet users worldwide. The campaign, which began in early August 2026, involves infected advertisements that exploit vulnerabilities in popular web browsers and operating systems. According to reports from the SANS Internet Storm Center … Read more

ISC Stormcast For Monday, August 31st, 2026 https://isc.sans.edu/podcastdetail/10074, (Mon, Aug 31st)

Cybersecurity experts at SANS Institute have identified a concerning trend in online attacks that’s leaving many organizations vulnerable to exploitation. In a recent surge of malicious activity, hackers are leveraging a previously unknown vulnerability in a popular web application framework to gain unauthorized access to sensitive systems. The affected frameworks, widely used by developers to … Read more

FulcrumSec claims Manchester Airports hack, theft of 86 GB of data

Manchester Airports Group Hit by Large-Scale Data Breach, Exposing Sensitive Customer Information A massive data breach has struck Manchester Airports Group (MAG), compromising approximately 86 GB of sensitive customer information. The attackers, claiming to be from the financially motivated extortion group FulcrumSec, have revealed that they stole detailed records related to car park bookings, in-airport … Read more

Chrome Web Store extensions caught stealing crypto, browser data

A massive malware campaign has been uncovered in Google’s Chrome Web Store, with multiple extensions stealing cryptocurrency, browser data, and sensitive information from unsuspecting users. The malicious software, which was delivered via automatic updates to five of the affected extensions, establishes an encrypted connection with command-and-control servers and injects malicious scripts into websites visited by … Read more

Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

**Infostealer Malware Hijacks Claude Sessions, Draining Usage** In a disturbing development, users of Anthropic’s popular AI-powered chatbot Claude have reported having their login sessions hijacked by infostealer malware. The attackers are then using these stolen sessions to drain the victims’ usage limits, with some users even reporting unauthorized charges. According to an email sent out … Read more