Djinn Stealer: Multi-Platform Credential Theft Malware
An information stealer targeting Windows, macOS, and Linux. Harvests credentials from cloud platforms, source control, package registries, AI assistants, browsers, SSH, and…
An information stealer targeting Windows, macOS, and Linux. Harvests credentials from cloud platforms, source control, package registries, AI assistants, browsers, SSH, and…
A new attack technique called BioShocking, discovered by security firm LayerX, exploits AI browsers and assistants by tricking them into leaking user…
OpenAI's ChatGPT Atlas AI browser was successfully tricked by the BioShocking attack into leaking user credentials from GitHub repositories.
Microsoft has removed 119 malicious extensions from the Edge Add-ons store that used steganography to hide malware in image and font files.…
StegoAd is a malware campaign discovered by Microsoft that hid malicious code in image and font files within Edge extensions. It performed…
The Python infostealer deployed in this campaign harvests credentials, browser data, cryptocurrency wallets, and developer artifacts from Windows, Linux, and macOS systems.…
Cybersecurity researchers have uncovered two hijacked npm packages and a cluster of Go packages designed to deploy a Python-based information stealer on…
The Security Service of Ukraine (SSU), in coordination with the U.S. Federal Bureau of Investigation (FBI), has uncovered a long-running cyber espionage…
UNC5792, also tracked as UAC-0195, is a Russian threat cluster involved in credential theft campaigns against messaging platforms, targeting government and military…
Mimikatz is a well-known open-source tool for extracting credentials from Windows systems. The Blue Report 2026 shows that while classic LSASS memory…