loader image
Jordanian Admits Selling Access to 50 Networks

A Jordanian admits selling access to more than 50 enterprise networks in a U.S. court after striking deals with an undercover agent posing as a cybercriminal. Acting as an access broker, the defendant marketed unauthorized entry to compromised corporate systems, allowing potential buyers to exploit the network environments. Court documents reveal that the illicit activity […]

Attackers Hijack Paychecks via Help-Desk Calls

Attackers hijack paychecks without breaching a single system, exploiting human behavior instead of deploying malware or hacking tools. The scheme came to light when employees reported missing salary deposits. Investigators soon uncovered that the attacker had modified direct-deposit details and rerouted funds to bank accounts under their control. The attacker used social engineering to impersonate […]

Visual Studio Code Extensions Hide Evelyn Stealer

Threat actors are abusing Visual Studio Code extensions to deploy multistage malware, targeting developer environments rather than end-user machines. In a recent campaign dubbed Evelyn Stealer, attackers hid the malicious payload within a trojanized extension that installs a fake Lightshot.dll file. This component loads via Lightshot.exe when a screenshot is taken, initiating the infection chain. […]

Advanced Custom Fields Flaw Risks 100K Sites

A critical vulnerability in the “Advanced Custom Fields: Extended” WordPress plugin threatens over 100,000 websites with potential takeover. The advanced custom fields flaw, tracked as CVE-2025-14533, could allow attackers to execute arbitrary code and gain administrative access on affected sites. This plugin enhances the default WordPress custom fields and is widely used for building complex […]

Google Ads Pushed TamperedChef PDF Infostealer

A newly uncovered malvertising campaign shows how Google Ads pushed TamperedChef malware through deceptive PDF editing tools disguised as legitimate software. The campaign began in June 2025 when threat actors registered fake websites and lured users searching for appliance manuals and document tools. Victims downloaded a trojanized program, AppSuite PDF Editor, which silently deployed a […]

WhisperPair Flaw Lets Hackers Hijack Earbuds

Security researchers have uncovered a critical Bluetooth vulnerability known as the WhisperPair flaw, which exposes millions of wireless earbuds, headphones, and speakers to remote hijacking and tracking. The issue stems from a misimplementation of Google’s Fast Pair protocol, affecting devices from major brands including Sony, Anker, JBL, and Xiaomi. Researchers from KU Leuven found that […]

AVEVA Flaw Lets Attackers Run Code as SYSTEM

A critical Aveva flaw uncovered in the Process Optimization software, previously known as ROMeo, exposes industrial systems to unauthenticated remote code execution under system privileges. Disclosed on Jan. 13, 2026, the flaw is part of seven newly reported vulnerabilities affecting version 2024.1 and earlier. The most severe issue lies in a code injection vulnerability within […]

PDFSIDER Backdoor Evades Antivirus and EDR

Threat actors are increasingly deploying a stealthy new tool, as the PDFSIDER backdoor evades antivirus and EDR systems by blending with trustworthy software and encrypting its communication. Security researchers at Resecurity discovered the malware during an attempted breach of a Fortune 100 enterprise, where attackers failed to cause data loss. PDFSIDER leverages a spear-phishing campaign […]

CrashFix Chrome Extension Deploys ModeloRAT

A malicious browser add-on known as the CrashFix Chrome extension is at the center of a newly discovered cyber campaign that tricks users into running harmful commands. Cybersecurity researchers have attributed the ongoing activity, labeled KongTuke, to attackers distributing the extension under the guise of an ad blocker. Once installed, it deliberately crashes the Chrome […]

Microsoft Confirms Windows Shutdown Bug

Microsoft confirms a Windows shutdown issue affecting some devices running Windows 11 version 23H2 after the latest January update. According to the company, systems with System Guard Secure Launch enabled may fail to power down completely. The problem prevents affected PCs from shutting down or entering hibernation, potentially disrupting performance and battery life. The issue […]

Redmi Buds Flaw Exposes Call Data, Causes Crashes

A newly discovered Redmi Buds flaw exposes users to serious security risks, including data leakage and forced firmware crashes. Security researchers found two vulnerabilities in Xiaomi’s popular wireless earbuds, from the Redmi Buds 3 Pro to the 6 Pro models. The flaws stem from the way the earbuds manage Bluetooth’s RFCOMM protocol, allowing nearby attackers […]

UAT-8837 Targets North American Infrastructure

A newly identified cyber campaign known as UAT-8837 targets North American critical infrastructure, deploying open-source tools alongside what appear to be zero-day exploits. Analysts believe the group may be linked to China, although attribution remains tentative. The attackers have demonstrated advanced capabilities, exploiting previously unknown vulnerabilities to bypass established defenses. Two CVEs are under investigation […]