ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th)

A Devastating New Malware Strain Emerges, Threatening Businesses Worldwide A major cybersecurity threat has emerged in recent days, with reports of a highly sophisticated malware strain compromising networks and systems across the globe. The malware, which has been dubbed “Eclipse,” is spreading rapidly, infecting companies of all sizes and industries, from finance to healthcare. At … Read more

Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th)

A popular Chinese document management system has been found to be vulnerable to basic security threats due to its use of well-known default passwords. ESAFENET’s Content Data Guard (CDG) 3, a product marketed as a secure solution for document management and data leakage prevention, has been targeted by scans looking to exploit these weaknesses. The … Read more

GitHub, PyPI add time-absed defenses against supply chain attacks

In a significant move to bolster their defenses against supply chain attacks, GitHub and Python Package Index (PyPI) have introduced time-based mechanisms to prevent malicious actors from exploiting vulnerabilities in their ecosystems. The changes come after a string of high-profile attacks on development platforms over the past year. The introduction of a “cooldown” feature by … Read more

Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th)

A Secure Document Management System Exposed by Default Passwords Security researchers have detected a surge in scans targeting ESAFENET’s CDG (Content Data Guard) document management system, which appears to be vulnerable to exploitation due to weak logins. The company, focused on secure document management and data leakage prevention solutions, has been affected by this issue … Read more

GitHub, PyPI add time-absed defenses against supply chain attacks

Cybersecurity’s Supply Chain Achilles Heel Gets a Much-Needed Fix The world of software development has long been plagued by supply chain attacks, where malicious actors compromise popular libraries and frameworks to inject their own code into unsuspecting projects. The latest wave of these attacks saw numerous high-profile victims, including GitHub and PyPI, the Python Package … Read more

Steam forum ClickFix attacks infect gamers with XMRig cryptominers

Steam Forum Hackers Prey on Gamers with Cryptominer Malware A wave of cyber attacks has been targeting Steam forum users, exploiting their trust in online communities to spread cryptominer malware. These “ClickFix” attacks pose as helpful solutions to common gaming problems but actually install malicious software on victims’ devices. Threat actors are creating fake Steam … Read more

Steam forum ClickFix attacks infect gamers with XMRig cryptominers

Steam Forum ClickFix Attacks Infect Gamers with XMRig Cryptominers Gamers browsing Steam’s discussion forums have been hit by a new wave of social engineering attacks that claim to offer fixes for common game and computer issues. However, these “ClickFix” scams actually inject malware into devices, turning them into cryptocurrency miners. The threat actors behind this … Read more

Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

A New Malware Delivery Method Emerges, Using Browser Compilers to Execute Attacks Malicious actors have devised a novel way to distribute malware, exploiting browser vulnerabilities to compile and execute malicious code on compromised systems. This technique, which we’ll refer to as “piecewise malware,” has been observed in the wild, targeting unsuspecting web users who click … Read more

Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

A new form of malware delivery is making headlines, and it’s one that exploits browser vulnerabilities to evade detection. Malvertising, or malicious advertising, has long been a threat to online security. However, this latest variant takes it to a whole new level by using AI-powered techniques to break down malware into smaller pieces, then instructing … Read more

ShinyHunters data leaks fuel $2,000 sextortion email scam

Threat Actors Repurpose Leaked Data for Sextortion Scams, Demanding $2,000 in Bitcoin A malicious email campaign has been underway since April, with attackers using email addresses exposed in data breaches leaked by the ShinyHunters extortion group to send sextortion emails demanding $2,000 in Bitcoin. The messages claim to come from ShinyHunters and threaten to share … Read more