We built a vulnerability vending machine: AI tokens in, zero-days out

Cybersecurity researchers at Intruder have made a groundbreaking discovery in the field of vulnerability research, leveraging artificial intelligence (AI) tokens to automatically identify zero-day vulnerabilities in production software. In an experiment that has sparked both excitement and concern, the team successfully used Large Language Models (LLMs) to find a novel SQL injection zero-day in a … Read more

OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor Apps

A sophisticated malware framework, OkoBot, has been discovered injecting phishing attacks into popular cryptocurrency wallet apps Ledger and Trezor, compromising user accounts and potentially leading to significant financial losses. The malicious software injects a fake seed phrase into these wallets’ authentication screens, tricking users into entering their sensitive information. This deception is made possible by … Read more

CISA warns admins to patch actively exploited SharePoint flaws

Critical SharePoint Vulnerabilities Being Actively Exploited, CISA Warns A major cybersecurity threat has been identified by the US Cybersecurity and Infrastructure Security Agency (CISA), which warns that attackers are actively exploiting three vulnerabilities in Microsoft’s popular SharePoint Server software. The affected flaws, tracked as CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164, allow hackers to bypass authentication, gain remote … Read more

We built a vulnerability vending machine: AI tokens in, zero-days out

Cybersecurity researchers at Intruder have developed a cutting-edge system that leverages artificial intelligence (AI) to automatically discover and exploit previously unknown security vulnerabilities in production software. Dubbed a “vulnerability vending machine,” this AI-powered pipeline has successfully identified a zero-day SQL injection vulnerability in a popular WordPress plugin used by over 300,000 users. The Intruder team’s … Read more

​ ​AsyncAPI npm packages infected with credential-stealing malware

A Supply-Chain Attack Unfolds: AsyncAPI Packages Compromised with Credential-Stealing Malware In a brazen supply-chain attack, five malicious versions of AsyncAPI packages were published to the Node Package Manager (npm) in just four hours and seven minutes. The compromised packages, part of the @asyncapi namespace, had a staggering cumulative weekly download count of over 2.25 million. … Read more

Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security Flaws

Major Browser and Software Updates Patch Critical Flaws Exposed by AI-Powered Threats A critical wave of security updates has swept across the tech landscape, with multiple high-profile companies releasing fixes for devastating vulnerabilities exposed by cutting-edge AI-powered threat detection. Firefox, Chrome, Adobe, and VMware have all issued patches to address a range of serious flaws … Read more

OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor Apps

A sophisticated malware framework known as OkoBot has been discovered to be targeting Ledger and Trezor cryptocurrency wallet users through a clever phishing tactic. The attack, which leverages a combination of social engineering and technical expertise, has left many in the crypto community on high alert. The OkoBot malware framework is designed to phish seed … Read more

​ ​AsyncAPI npm packages infected with credential-stealing malware

A massive supply-chain attack has compromised five versions of AsyncAPI packages on the Node Package Manager (npm), delivering a remote access trojan with info-stealing capabilities to over 2.25 million users. The threat actor exploited a misconfigured GitHub Actions workflow, injecting malware into project files and publishing trojanized packages in the @asyncapi namespace. The malicious packages, … Read more