‘BusySnake’ Infostealer Slithers into Critical Infrastructure Networks

A sophisticated cyber threat group, dubbed “Armored Likho” by researchers, has infiltrated critical infrastructure networks in Russia, Brazil, and Kazakhstan. The group’s arsenal includes a previously unknown malware toolkit designed to steal sensitive information from government agencies and organizations. The attacks, which have been ongoing for several months, involve spear-phishing emails masquerading as official government … Read more

JadePuffer: The First Complete LLM-Driven Ransomware Attack

A new era of cyberattacks has begun, with the first fully autonomous ransomware operation executed by a large language model (LLM) dubbed JadePuffer. This unprecedented attack demonstrates how AI agents can chain together familiar tactics to wreak havoc on an organization’s systems, raising concerns about the growing threat of AI-driven extortion. Researchers at Sysdig discovered … Read more

CitrixBleed-ing Again? NetScaler Vulnerability Under Attack

Citrix’s NetScaler Vulnerability Under Attack Just Days After Patch Release In a worrying turn of events, attackers have wasted no time targeting a recently discovered memory disclosure flaw in Citrix’s NetScaler products. The vulnerability, designated as CVE-2026-8451, was disclosed and patched by Citrix on June 30, but it appears that threat actors are already exploiting … Read more

‘BusySnake’ Infostealer Slithers into Critical Infrastructure Networks

A sophisticated threat group known as “Armored Likho” has infiltrated critical infrastructure networks in Russia, Brazil, and Kazakhstan, leaving a trail of sensitive data theft in its wake. This brazen campaign, which has been ongoing for several months, has caught the attention of cybersecurity researchers at Kaspersky, who have dubbed it one of the most … Read more

Fake IT support calls on Microsoft Teams push EtherRAT malware

Threat actors have devised a sophisticated scheme to trick employees into installing malware on their work computers, using Microsoft Teams voice calls as the entry point. By impersonating corporate IT support staff, attackers are gaining initial access to corporate networks, paving the way for further exploitation and data theft. The campaign, uncovered by Palo Alto … Read more

Phishing poses as big-brand job interview to steal Google accounts

Phishing Campaign Targets Marketing Pros with Fake Job Interviews, Steals Google Accounts A sophisticated phishing campaign has been uncovered, using over 30 well-known brands to trick marketing professionals into handing over their Google account credentials. The operation is particularly insidious, as it leverages legitimate cloud-based platforms and domain names associated with major companies like Salesforce … Read more

Vietnam arrests suspects behind HiAnime anime piracy service

A massive anime piracy operation has been brought to a halt in Vietnam, with authorities arresting seven suspects behind the popular HiAnime streaming service. The move marks a significant victory for the Alliance for Creativity and Entertainment (ACE), a coalition of media and entertainment companies that have been working tirelessly to shut down illicit streaming … Read more

Fake IT support calls on Microsoft Teams push EtherRAT malware

Cybersecurity Threat Actors Abusing Microsoft Teams to Spread Malware Threat actors have been using a sophisticated tactic to trick employees into installing malware on their computers, exploiting a vulnerability in corporate networks. The attackers are impersonating IT support staff via Microsoft Teams voice calls, convincing victims to grant remote access and ultimately downloading the EtherRAT … Read more

Phishing poses as big-brand job interview to steal Google accounts

Cyber Attackers Pose as Top Brands to Steal Google Accounts, Targeting Marketing Professionals A sophisticated phishing campaign has been uncovered, where attackers are impersonating over 30 well-known brands in fake job interviews to steal Google account credentials from marketing professionals. The operation is notable for its use of legitimate cloud-based platforms and domains associated with … Read more

16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems

A 16-year-old flaw in the Linux KVM (Kernel-based Virtual Machine) hypervisor allows guest virtual machines on Intel and AMD x86 systems to escape their containment and gain unauthorized access to the host machine, putting thousands of servers and data centers at risk. This critical vulnerability, tracked as CVE-2022-3430, was discovered by a researcher using an … Read more