Australian energy provider Origin says data breach exposes client data

Australia’s Largest Energy Provider Origin Suffers Data Breach Exposing Millions of Customers’ Personal Details In a major security incident, Australia’s largest energy retailer Origin Energy has confirmed that an unknown threat actor breached its systems, exposing sensitive customer data. The company, which serves 4.8 million customers across the country, is now investigating how many clients … Read more

New Dolphin X malware uses AI to rank high-value targets

A New Malware Threat Emerges, Using AI to Prioritize High-Value Targets Cybercriminals have been exploiting the power of artificial intelligence (AI) in recent years, using it to launch sophisticated attacks and evade detection. The latest example of this trend is a new remote access trojan called Dolphin X, which boasts an AI-powered profiling feature that … Read more

Hackers abuse Notepad++ plugins to stealthily install malware

A sophisticated cyberattack has been uncovered, with hackers using legitimate software plugins to stealthily install malware on target systems. The attackers have been linked to a threat cluster tracked as UAC-0099, which primarily targets organizations in Ukraine and has previously been associated with providing initial access for attacks carried out by APT44. The campaign involves … Read more

Hackers abuse Notepad++ plugins to stealthily install malware

Cyberattackers have been discovered using a clever tactic to stealthily install malware on unsuspecting computers, exploiting the trust placed in popular software Notepad++. The attackers, linked to a threat cluster tracked as UAC-0099, have been targeting organizations primarily based in Ukraine. This campaign marks a shift in tactics for the group, which has previously provided … Read more

Russian hackers exploit Zimbra zero-click flaw for email theft

Russian hackers have been exploiting a zero-click vulnerability in Zimbra Collaboration email servers to steal sensitive information from organizations worldwide. The attacks, attributed to the Russian state-sponsored hacking group Laundry Bear (also known as Void Blizzard), combine phishing campaigns with the exploitation of a patched flaw to compromise user accounts. Laundry Bear has targeted a … Read more

Russian hackers exploit Zimbra zero-click flaw for email theft

Russian Hackers Exploit Zimbra Vulnerability to Steal Email Data from Organizations Worldwide A sophisticated hacking group backed by the Russian government has been using a previously patched vulnerability in Zimbra email servers to steal sensitive data, including emails, passwords, and two-factor authentication (2FA) tokens. The attackers, known as Laundry Bear or Void Blizzard, have targeted … Read more

Fake Claude app promoted by Bing ads pushes SectopRAT malware

Malicious Ads on Bing Promote Fake Claude App, Delivering SectopRAT Malware to Over 29 Organizations In a disturbing example of how malicious ads can compromise even the most trusted online services, researchers at Huntress have uncovered a malvertising campaign on Microsoft’s Bing search platform. This operation, dubbed “FakeAgent,” has been pushing a fake installer for … Read more

Fake Claude app promoted by Bing ads pushes SectopRAT malware

A Malvertising Campaign on Bing Exposes Users to SectopRAT Malware A sophisticated malvertising campaign has been discovered on the Bing search service, which uses fake ads to promote a malicious Claude desktop app installer. This installer, hosted on a legitimate Claude.ai domain, delivers the notorious SectopRAT malware, capable of stealing sensitive user data and gaining … Read more

ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories

A flurry of high-profile security breaches and vulnerabilities have exposed weaknesses in our digital defenses, with artificial intelligence (AI) playing a double-edged role in both attacking and protecting systems. Android spyware has infected thousands of devices worldwide, while industrial control system (ICS) attacks targeting programmable logic controllers (PLCs) threaten critical infrastructure. One particularly concerning trend … Read more