Misconfigured Server Exposes Three Evilginx Phishing Operations Targeting Microsoft 365
An attacker running a live Microsoft 365 phishing operation left a Python web server listening on a public port with directory listing…
An attacker running a live Microsoft 365 phishing operation left a Python web server listening on a public port with directory listing…
Security researcher Chinmohan Nayak has detailed a WhatsApp-to-host attack chain leveraging three now-patched vulnerabilities in the OpenClaw personal AI assistant. The flaws,…
A sophisticated threat actor tracked as O-UNC-066 by Okta is targeting organizations across multiple sectors with a voice-based phishing (vishing) scheme that…
Microsoft has dismantled a destructive Windows backdoor named GigaWiper, which combines three older malicious tools into a single platform. The malware, written…
GitHub has officially released npm version 12, introducing significant security changes to reduce software supply chain risks. The most notable change is…
Cybersecurity researchers have identified a new ransomware family named GodDamn, which leverages the PoisonX kernel driver to disable endpoint defenses. First observed…
PoisonX is a malicious kernel driver used in BYOVD attacks to disable security software. It was signed by Microsoft, allowing it to…
Microsoft has released security updates to address a critical privilege escalation vulnerability in its Microsoft Malware Protection Engine, tracked as CVE-2026-50656 (CVSS…
A new banking fraud operation tracked as REF6045 by Elastic Security Labs is targeting customers of Mexican banks, fintech platforms, payment processors,…
A recent EvilTokens campaign is exploiting a new 'ghost phishing' technique that hides malicious content until it decrypts inside the victim's browser,…