Topic: geographic targeting
-
Google adds AI Max planning and testing tools
Google is rolling out new AI Max Search campaign tools, including multi-campaign A/B testing, experiments with brand and location restrictions, and an upgraded Performance Planner for pre-commitment modeling. Starting in September, advertisers can run a single A/B test evaluating different budget...
Read More » -
Ransomware Attacks Rebound in July After Slow Q2
Ransomware attacks surged 19% month-over-month in July 2026 to 799 claimed incidents, the second-highest total of the year, after a quiet April-June period. Finance was the hardest-hit sector with a 71% jump in attacks, followed by technology (62%), healthcare (46%), and education (44%), while US...
Read More » -
Microsoft Teams vishing leads to Chaos ransomware attacks
Cybercriminals posing as IT support staff over Microsoft Teams calls have targeted North American businesses, with 95% of attacks hitting Canadian (50%) and U.S. (45%) entities across services, manufacturing, energy, and construction sectors. The scheme uses external Teams accounts and IT-themed ...
Read More » -
ChatGPT Ads adds conversion bidding, geo exclusions, and bulk tools
ChatGPT Ads has expanded its advertising toolkit with features like conversion-optimized bidding (oCPC), average daily budgets, geographic exclusions, and mobile measurement integrations with AppsFlyer and Adjust. The updates address key gaps in the platform by improving optimization, measurement...
Read More » -
Qilin Ransomware Now Leads the Market
Qilin ransomware has become the dominant ransomware-as-a-service operation, commanding approximately 16% of the cybercriminal market share after filling the void left by disrupted groups like LockBit and RansomHub. Qilin's success is driven by high affiliate payouts, mature infrastructure, and th...
Read More » -
GentleKiller Framework Bypasses Security Software
The Gentlemen ransomware group uses a proprietary EDR killer suite called GentleKiller, which employs a bring-your-own-vulnerable-driver (BYOVD) technique to terminate over 400 processes across 48 security products at the kernel level. Unlike most ransomware operations, The Gentlemen develops and...
Read More » -
GentleKiller disables 400+ security processes across 48 products
The ransomware gang Gentlemen uniquely develops and maintains an in-house framework called GentleKiller, a suite of EDR-killer tools directly supplied to affiliates, rather than delegating this task as other groups do. Gentlemen practices double extortion, targets a wider geographic spread beyond...
Read More » -
Chinese hackers deploy new Atlas RAT malware in European attacks
Chinese-speaking cybercrime group TA4922 has expanded from targeting East Asia to hitting organizations in Germany, Italy, the UK, and South Africa, deploying a new remote access trojan called Atlas RAT and several custom loaders. The group uses localized phishing lures via email and messaging ap...
Read More » -
Google ads and Claude.ai chats used to spread Mac malware
Attackers are using Google Ads and Claude.ai shared chats in a malvertising campaign that directs users searching for a Mac download of Claude to malicious installation instructions, which prompt them to paste terminal commands that install malware. The malware uses Base64-encoded shell scripts a...
Read More » -
AI Search Clicks Favor Local Domains, Report Finds
AI search clicks are predominantly directed toward local domains, according to a Similarweb analysis by Aleyda Solis across ten markets. The distribution of these clicks varies significantly by industry, highlighting the role of geography and market dynamics. The findings emphasize how generative...
Read More » -
Update Your iPhone Now: Apple Issues Urgent iOS Security Alert
Apple has issued a critical security alert, urging all iPhone users to immediately update their operating systems, as those on iOS 13 or 14 are particularly vulnerable to active hacking campaigns. The threat stems from sophisticated exploit kits targeting security flaws in older iOS versions, and...
Read More » -
DarkSword iOS Exploit Kit Hijacks iPhones with 3 Zero-Days
A sophisticated new iPhone exploit kit called "DarkSword" has been discovered, using six vulnerabilities including three zero-days to hijack devices and steal extensive personal data from users on iOS 18.4 through 18.7. The kit has been deployed by multiple threat actors, including a suspected ...
Read More » -
Malicious Google Ads Evade Detection via Campaign Platform
A cybercrime service called 1Campaign uses advanced cloaking to bypass Google's ad security, showing malicious content only to targeted users while hiding it from security scanners. The service employs real-time visitor filtering based on geography and technical data, aggressively blocking high-r...
Read More » -
Operation DoppelBrand: How Hackers Hijack Trusted Brands to Steal Your Data
A sophisticated phishing campaign dubbed Operation DoppelBrand, linked to threat actor GS7, is using highly convincing fake websites to impersonate major financial and tech brands and steal user credentials. The operation uses extensive automated infrastructure, including over 150 identified doma...
Read More » -
Notepad++ Supply Chain Attack: Details, Targets, and IoCs Revealed
A Chinese state-sponsored group exploited the Notepad++ update mechanism to deliver malware in a targeted supply chain attack, focusing on high-value victims in Southeast Asia and beyond. The attack used malicious installers to deploy sophisticated backdoors like "Chrysalis" and Cobalt Strike, em...
Read More » -
Microsoft Office Patch: Urgent Fix for Russian-State Hackers
A Russian state-linked hacking group (APT28/Fancy Bear) rapidly exploited a critical Microsoft Office vulnerability (CVE-2026-21509) within two days of its patch, compromising diplomatic, transport, and defense organizations in multiple countries. The campaign was exceptionally stealthy, using en...
Read More » -
Global Surge in Fake High-Yield Investment Scams Exposed
Fraudulent High-Yield Investment Programs (HYIPs) are modern Ponzi schemes that lure investors with impossible returns, using professional-looking websites and fabricated testimonials before disappearing with all funds. Cybersecurity analysis reveals a highly organized criminal enterprise, with o...
Read More » -
Hackers Now Use Tsundere Bot for Ransomware Attacks
The TA584 threat actor has significantly escalated operations, tripling campaign volume in late 2025 and expanding its geographic targeting to include Germany and Australia, while deploying the Tsundere Bot and XWorm trojan to establish network access for ransomware. The group uses a sophisticate...
Read More » -
Malware Service Plants Phishing Extensions on Chrome Web Store
A new malware-as-a-service platform called 'Stanley' sells malicious Chrome extensions designed to bypass official store reviews and deploy deceptive phishing pages that leave the legitimate URL visible in the address bar. The service provides attackers with a control panel to manage hijacking ru...
Read More » -
Prepare for Google AI Max: Your Essential Pre-Test Checklist
Google's AI Max is a semi-keywordless advertising tool that uses broad signals to find new conversions, but it requires a well-optimized account with proven broad match success to avoid wasteful spending. Before testing AI Max, advertisers must ensure precise conversion tracking, use target-based...
Read More »