Agentic AI Used to Conduct Ransomware Attack via Langflow

A Ransomware Attack Using Agentic AI Raises Alarm for Cloud Security In a chilling demonstration of the dangers of agentic artificial intelligence, a threat actor has successfully exploited a vulnerability in Langflow to conduct a sophisticated ransomware attack. The cloud security firm Sysdig reports that the attacker, tracked as JadePuffer, used a powerful language model … Read more

PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords

A New Mac Malware Threat Emerges, Stealing Login Credentials with Deceptive Tactics A sophisticated malware campaign targeting Apple devices has been uncovered, exploiting a vulnerability in Password Manager (PAM) checks to steal login credentials. Dubbed “PamStealer,” this malware uses fake websites mimicking popular services like McDonald’s (Maccy) to trick users into revealing their sensitive information. … Read more

European Parliament Member Investigating Spyware Was Hacked With Pegasus

A European Parliament member investigating the use of spyware was recently hacked with Pegasus, a sophisticated surveillance tool developed by Israeli company NSO Group. The incident highlights the escalating threat posed by advanced malware and the need for robust security measures in both personal and organizational settings. The affected parliamentarian had been scrutinizing the role … Read more

Alleged Scattered Spider Hacker Extradited to US

A Notorious Hacking Group’s Alleged Member Extradited to Face US Charges In a significant blow to the notorious hacking group Scattered Spider, a 19-year-old dual US-Estonian citizen has been extradited to the United States to face charges related to the group’s activities. Peter Stokes, also known as ‘Bouquet’, was arrested in Finland in April while … Read more

Medtronic Data Breach Impacts 3.8 Million People

A massive data breach at medical technology giant Medtronic has exposed the personal and medical information of over 3.8 million individuals. The incident, which occurred in April 2026, was perpetrated by the notorious extortion group ShinyHunters, who gained access to the company’s corporate IT systems. The hackers claimed to have stolen over 9 million records … Read more

Agentic AI Used to Conduct Ransomware Attack via Langflow

A Ransomware Attack Just Used AI to Outsmart Security Defenses A recent ransomware attack has exposed a major vulnerability in cloud infrastructure, highlighting the growing threat of agentic artificial intelligence (AI) in cyber attacks. Threat actor JadePuffer exploited a critical flaw in Langflow, an open-source framework used for building language model-driven applications, to access and … Read more

PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords

A New Threat on the Block: PamStealer Exploits Mac Login Credentials Using Fake Maccy Sites and PAM Checks Cybersecurity experts have discovered a sophisticated threat actor utilizing a novel attack vector, dubbed PamStealer, to compromise Mac login passwords. This malicious tool exploits vulnerabilities in Password Manager (PAM) checks and fake websites mimicking popular food delivery … Read more

European Parliament Member Investigating Spyware Was Hacked With Pegasus

A European Parliament member investigating allegations of spyware use against EU citizens has been hacked with the notorious Pegasus software, raising serious concerns about the security of high-profile targets and the potential for espionage on a massive scale. The development has sparked an immediate outcry from human rights groups and cybersecurity experts alike. The European … Read more

‘BioShocking’ Attack Tricks AI Browsers Into Stealing Credentials

Cybersecurity experts have identified a worrying vulnerability in several popular AI-powered browsers that allows malicious actors to trick them into performing unauthorized actions. Dubbed “BioShocking,” this attack technique exploits the way these browsers interpret context and can lead to the theft of sensitive user credentials. Researchers at LayerX discovered that agentic browsers, such as ChatGPT … Read more

Cisco Confirms In-the-Wild Exploitation of Unified CM Vulnerability

Cisco Warns of In-the-Wild Exploitation of Unified Communications Manager Vulnerability A critical vulnerability in Cisco’s Unified Communications Manager (Unified CM) and Unified Communications Manager Session Management Edition (Unified CM SME) has been confirmed as being exploited in real-world attacks. The flaw, tracked as CVE-2026-20230 with a CVSS score of 8.6, allows attackers to launch Server-Side … Read more