News

ClickFix typically asks the victim to perform a fake CAPTCHA test. FileFix tricks the user into copying and pasting a command ...
A threat actor named WhiteCobra has targeting VSCode, Cursor, and Windsurf users by planting 24 malicious extensions in the ...
The new AI-native framework, freely available online, could make advanced cyberattacks faster, easier, and more accessible ...
Your weekly strategic brief on the cyber threat landscape. Uncover the deeper patterns behind attacks, from bootkit malware ...
An attack targeting the Node.js ecosystem was just identified — but not before it compromised 18 npm packages that account ...
Reuters and a Harvard researcher used AI to plot a simulated phishing scam and tested it on senior volunteers. It ...
Learning is a complex process — and so is measuring it. Though research shows we have cause to be concerned about what ...
The developers built malware before and participated in competitions used as recruiting platforms for Chinese state hackers.
Qix is an open source maintainer account that was compromised by a phishing attack. This allowed attackers to infect 18 popular npm packages with malicious code. Together, these packages are ...
Compare server hosting panels: off-the-shelf for speed, custom-built for control. Learn which scales best for your apps and ...
A feature being disabled by default could leave users and their organizations vulnerable to commands that run automatically.
New ModStealer malware targets crypto wallets on macOS, Windows and Linux. Security experts warn of fake job ads and share steps for user protection.