Cybersecurity researchers at Jamf Threat Labs have discovered a new macOS information stealer named PamStealer that uses sophisticated techniques to infect systems…
Attackers are distributing a data-stealing trojan named ChocoPoC through fake proof-of-concept (PoC) exploit repositories on GitHub, specifically targeting vulnerability researchers. The malware,…
The recently discovered financially-motivated FortiBleed campaign has been attributed to INC and Lynx ransomware operations, indicating that the verified, stolen credentials were…
A large-scale credential-harvesting operation targeting FortiGate firewalls globally, stealing over 110 million credentials and linked to INC and Lynx ransomware operations.
An information stealer deployed via exploitation of CVE-2026-35616 in Fortinet FortiClient EMS, targeting credentials from Chromium-based browsers and Firefox.
An unknown threat actor is exploiting CVE-2026-48558, a critical authentication bypass vulnerability in SimpleHelp (CVSS 10.0), to deliver two new malware families:…
AI Securityauthentication bypassBlackpoint CyberCISA