Cybersecurity researchers at CTM360 have exposed a large-scale, global recruitment-themed phishing campaign that leverages Browser-in-the-Browser (BitB) windows to steal Google and Facebook…
account takeoverAmazon Web ServicesAWS EC2Browser-in-the-Browser
Cybersecurity researchers at SpecterOps have detailed a post-exploitation technique that enables the Chrome DevTools Protocol (CDP) inside a running Google Chrome or…
This week's ThreatsDay Bulletin covers a wide range of cybersecurity developments, including new attack techniques, data breaches, and product updates. Key highlights…
Afghan telecom providers and South Asian critical infrastructure organizations are the targets of a new campaign delivering a previously undocumented backdoor called…
A massive operation involving 737 free VPN and proxy extensions on the Chrome Web Store has been uncovered, primarily targeting Russian-speaking users…
1.1.1.1AdGuard VPNadversary-in-the-middleAI Sidebar with Deepseek, ChatGPT, Claude, and more
Gemini Robotics ER-1.6, a weaker Google model, was used to decode reasoning from stronger Gemini models, demonstrating the cross-model portability of encrypted…
OpenAI has launched GPT-5.6-Cyber, a specialized cybersecurity model designed for vulnerability research, penetration testing, and incident response. Built on the GPT-5.6 Sol…
CVE-2026-15903 is a high-severity vulnerability (CVSS 8.8) in the V8 JavaScript engine, discovered by OpenAI's GPT-5.6-Cyber model. It involves an out-of-bounds read…
Security researchers created a fictitious cryptocurrency startup and hired three individuals they believe were North Korean IT operatives, as part of an…