Topic: malware installation
-
SonicWall zero-days exploited weeks before disclosure
Two critical SonicWall SMA 1000 zero-day vulnerabilities (CVE-2026-15409 and CVE-2026-15410) were exploited in the wild from at least June 22, 2026, allowing attackers to establish stealthy, persistent access to unpatched VPN appliances by chaining an SSRF bug with a code-injection flaw to gain r...
Read More » -
5 Plead Guilty in North Korean IT Job Fraud and ID Theft Scheme
Five individuals pleaded guilty for helping North Korean nationals fraudulently obtain remote IT jobs at U.S. companies, generating over $2.2 million for the DPRK regime and compromising identities. The scheme was part of a state-sponsored effort by hacking groups like APT38 to fund weapons devel...
Read More » -
FBI Warning: These Wi-Fi Routers Are Vulnerable
The FBI warns that outdated routers, especially those over a decade old without security updates, are highly vulnerable to cyberattacks and compromise personal data. Hackers exploit these unpatched routers to install malware, take control, and incorporate them into botnets for large-scale attacks...
Read More » -
Beware Fake Password Manager Breach Alerts Hijacking PCs
A phishing campaign is targeting LastPass and Bitwarden users with fraudulent emails that falsely claim security breaches, urging them to download a malicious desktop application. The malicious software installs a remote access tool called Syncro, which attackers use to deploy ScreenConnect for u...
Read More » -
Microsoft Patches Bug in Age of Empires II
Microsoft released its largest-ever batch of security patches, driven by the expanded use of AI in discovering vulnerabilities at an unprecedented scale. A critical remote code execution bug in the remastered Age of Empires II, tracked as CVE-2026-50663, could let attackers take full control of a...
Read More » -
AI prompts expose 'Zoomsday' hack in under 20 tries
Researchers discovered a Zoom vulnerability affecting all major platforms in just one day, using fewer than 20 prompts on publicly available AI models, and Zoom patched it on Tuesday. The flaw exploited Zoom’s annotation feature, allowing an attacker to execute malicious code on a victim’s device...
Read More » -
AI Agents Targeted by Stealthy Web Poisoning Attacks
A new cyber threat called parallel web poisoning targets AI agents by serving them hidden malicious webpages that exploit their predictable digital fingerprints. This attack is stealthy because it bypasses traditional defenses by remaining invisible to human users and standard security scanners, ...
Read More » -
Nike Probes Data Breach Following Hacker Leak
Nike is investigating a potential cybersecurity incident after the World Leaks ransomware group published a large trove of allegedly stolen internal business data online. The World Leaks group is a rebrand of the Hunters International operation, which has shifted to pure data theft and extortion,...
Read More »