JSCeal can steal browser credentials, replay Google sessions using stolen cookies, and modify traffic for cryptocurrency ...
BigBear 2.0 compromised 258 organizations and stole over 5,000 Microsoft 365 credentials using MFA-bypass phishing techniques ...
Attackers abused an unpatched install of Metabase to access student, staff, and parent data, including names, emails, and ...
Infostealer malware apparently had harvested active Claude login sessions from users' PCs.
A critical authentication bypass vulnerability (CVE-2026-82329) in JFrog Artifactory is being exploited in attacks to create ...
Microsoft Threat Intelligence observed a human-operated intrusion campaign that abuses Microsoft Teams external collaboration to impersonate IT support, gain remote access, and deploy a Node.js-based ...
Attackers abuse Node.js to execute malicious scripts and deploy payloads in attacks targeting governments, technology ...
Claude users are being signed out of their accounts to stop a new malware campaign that is draining their AI usage.
Infostealers harvested Claude session cookies and replayed them past 2FA, and some hijacked accounts held standing access ...
Cybersecurity advice has been the same for two decades. Use a strong password. Turn on two-factor authentication. Change your ...
JSCeal hides crypto-stealing malware in V8 bytecode, but researchers built a tool to decompile it and expose its advanced ...
A newly disclosed active exploitation of a JFrog Artifactory authentication bypass warns that attackers are minting ...