Advertisement
LeakNet Ransomware: Stealthy Exploitation via Deno and ClickFix
LeakNet ransomware adopts ClickFix social engineering and the Deno runtime for stealthy initial access and loader deployment in corporate environments.
LiveChat Abuse: Phishing Campaign Targets PayPal and Amazon Users
Threat actors are leveraging legitimate LiveChat platforms to impersonate PayPal and Amazon support agents, stealing credit card and personal data.
ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools
Threat actors use ClickFix social engineering tactics to deploy the MacSync infostealer on macOS systems via fraudulent AI software installers.
Meta Disrupts 150,000 Scam Center Accounts and Deploys New Tools
Meta disables 150,000 accounts linked to industrial-scale scam centers in Southeast Asia and introduces new protective tools against forced labor fraud.
Meta Anti-Scam Tools: Facial Recognition and WhatsApp Protection
Meta implements facial recognition and enhanced messaging warnings to combat celeb-bait ads and account takeovers across WhatsApp, Facebook, and Messenger.
InstallFix Attacks: Malvertising Spreads Fake Claude AI Code
InstallFix attacks leverage malvertising and ClickFix-style techniques to spread fake Claude AI code, targeting users of coding assistants and CLI operations.
Advertisement
Microsoft Teams Phishing Deploys A0Backdoor via Quick Assist
Attackers are targeting healthcare and finance employees with Microsoft Teams phishing to deploy A0Backdoor using the native Windows Quick Assist tool.
Microsoft Teams Third-Party Bot Tagging Enhances Meeting Security
Microsoft Teams updates meeting lobbies to identify third-party bots, helping administrators prevent unauthorized data collection and social engineering.
ClickFix Attack: Windows Terminal Used for Detection Evasion
The ClickFix attack leverages fake CAPTCHA pages to trick users into pasting malicious commands into Windows Terminal, bypassing traditional detection methods.
Velvet Tempest Deploys Termite Ransomware via ClickFix and CastleRAT
Velvet Tempest leverages ClickFix social engineering and CastleRAT to deploy Termite ransomware, using legitimate Windows tools for stealthy execution.
North Korean APTs Leverage AI for Enhanced IT Worker Scams
North Korean APTs are leveraging AI, including deepfakes, to enhance IT worker scams.
Ghanaian National Pleads Guilty in $100M BEC and Fraud Ring Case
A Ghanaian man has pleaded guilty to his role in a global $100 million fraud ring targeting US entities through business email compromise and romance scams.
Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer
Microsoft identifies a new ClickFix campaign using Windows Terminal to deliver Lumma Stealer. Analysis of social engineering TTPs and mitigation steps included.
Enterprise Browser Security: Emerging Blind Spots & AI Web Tool Risks
Keep Aware's 2026 report reveals critical enterprise browser security gaps, citing AI web tool use, phishing, and extensions as major blind spots for defenders.
LastPass Phishing Campaign Targets Master Passwords via Fake Alerts
LastPass warns of a new phishing campaign using fraudulent security alerts to steal master passwords. Learn how to identify and mitigate these vault threats.
Moltbook's 'AI Theater': Unmasking Human Control in Autonomous Platforms
Runtime Rebel investigates Moltbook's 'AI-only' facade, revealing extensive human involvement.
Fake IT Support Campaigns Deploy Customized Havoc C2 Payloads
Huntress identifies a new campaign using fake IT support lures and vishing to deploy Havoc C2 for data exfiltration and ransomware delivery.
Fake Recruiters Deploy Malware via Malicious Coding Challenges
North Korean threat actors are targeting software developers with fake job offers and malicious coding tests to deploy malware on developer workstations.
Trojanized Gaming Tools Deliver Java-Based RAT via PowerShell
Security researchers identify a malware campaign using trojanized gaming tools to deliver a Java-based RAT using PowerShell and portable Java runtimes.
Meta Files Lawsuits Against Global Celeb-Bait Scam Networks
Meta takes legal action against advertisers in Brazil, China, and Vietnam, disabling accounts and domains used in large-scale celebrity-bait fraud schemes.
Microsoft Warns of Fake Next.js Repos Delivering In-Memory Malware
Microsoft warns developers of a coordinated campaign using malicious Next.js repositories disguised as job assessments to deliver in-memory malware.
Fake Next.js Job Interview Tests Backdoor Developers
Microsoft Defender discovered a campaign where malicious Next.js job interview tests backdoor developers' devices, posing a supply chain risk.
TOAD Emails: The 'Call This Number' Gateway Bypass Threat
Attackers use Telephone-Oriented Attack Delivery (TOAD) with 'call this number' emails to bypass gateways, relying on social engineering post-call.
SLH Recruits Women for $1,000 IT Help Desk Vishing Attacks
Scattered LAPSUS$ Hunters (SLH) are offering financial incentives to recruit women for vishing campaigns targeting corporate IT help desks and IAM systems.