New Ghost Phishing Wave Is Breaking Traditional Email Security

A new wave of sophisticated phishing attacks, dubbed “Ghost Phishing,” is making its way through corporate email systems worldwide, leaving a trail of compromised accounts and sensitive data in its wake. This latest threat vector leverages artificial intelligence (AI) and machine learning (ML) to evade traditional security measures, rendering them nearly powerless against the onslaught. … Read more

Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS

Ubiquiti, a popular provider of network management and security solutions, has issued patches for critical vulnerabilities discovered in its UniFi software suite. The flaws, which affect various components including Connect, Talk, Access, Protect, and OS, could be exploited by attackers to gain unauthorized access to affected systems. The vulnerability discovery was made possible through the … Read more

New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware

A new and insidious threat has emerged, threatening to compromise even the most advanced security systems. Dubbed “HalluSquatting,” this attack leverages artificial intelligence (AI) coding assistants to trick them into installing botnet malware on unsuspecting networks. The attack’s implications are far-reaching, affecting not just individuals but also organizations relying heavily on AI-powered tools for software … Read more

Felons, Fraudsters Flog Offensive Cybersecurity Startup

A Dubious Cybersecurity Startup Emerges, Linked to Convicted Felons and Conspiracy Theorists A cybersecurity startup claiming to offer lucrative payouts for zero-day security vulnerabilities has raised eyebrows due to its shady past. IRIS C2, operating out of McLean, Virginia, has been touting itself as a premier destination for vulnerability researchers and exploit developers, with the … Read more

The Verification Step Is the New ATO Battleground in 2026

Cybersecurity teams are bracing for a new wave of attacks that exploit a previously overlooked vulnerability in software verification processes, leaving organizations exposed to potential account takeover (ATO) breaches. The verification step – where users confirm their identity and intentions before granting access – has become the latest battleground in the ongoing cat-and-mouse game between … Read more

GitHub ‘Verified’ Commits Can Be Rewritten Into New Hashes Without Breaking Signatures

GitHub’s Verified Commits Undermined by Unusual Bug A surprising vulnerability has been discovered in GitHub’s commit verification system, allowing attackers to rewrite existing commits into new hashes without invalidating their signatures. This bug affects all users who rely on GitHub’s verified commits feature, which is used for a wide range of applications, from auditing and … Read more

SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users

A devastating new malware campaign is sweeping through Mexico, targeting banking users with sophisticated clickbait-style lures. SCMBANKER, a highly advanced piece of malware, has been designed to exploit vulnerabilities in online banking systems, allowing hackers to siphon off sensitive financial information. Developed by an unknown group of cyber attackers, SCMBANKER is the latest example of … Read more

New Ghost Phishing Wave Is Breaking Traditional Email Security

A new wave of “ghost phishing” attacks is spreading rapidly, compromising traditional email security measures and putting unsuspecting users at risk. This sophisticated campaign leverages artificial intelligence (AI) models to evade detection and trick even the most vigilant recipients into divulging sensitive information or clicking on malicious links. At its core, ghost phishing relies on … Read more

Felons, Fraudsters Flog Offensive Cybersecurity Startup

A cybersecurity startup promising millions for exploits is linked to convicted felons with a history of spreading false information and engaging in voter suppression schemes. IRIS C2, which claims to be a company offering offensive cybersecurity capabilities, has gained over 4,000 followers on X/Twitter since its creation in January 2025. The startup’s website boasts about … Read more

DuckDuckGo browser now blocks YouTube video ads

DuckDuckGo’s Latest Move: Blocking YouTube Video Ads by Default In a significant development for users seeking a more ad-free online experience, DuckDuckGo has announced that its browser can now block most video ads on YouTube. This feature is enabled by default in the latest versions of DuckDuckGo for iOS, Mac, and Windows, while Android users … Read more