Compromised GitLab credentials
Cybernews has discovered a server on which an affiliate of the ransomware group The Gentlemen was running an almost fully AI-driven extortion operation.
Attackers exploit existing trust
Security researchers at GitGuardian have found that a new variant of the Shai-Hulud infostealer worm scans 469 different locations for credentials.
Fake job interview
According to a Kaspersky analysis, the Iranian hacker group Nimbus Manticore is deploying two previously unknown malware families named NodeRabbit and PollCat.
Applicants lured into sideloading
AI coding agent as a tool for real attacks
An investigation shows how the extortion group Aur0ra used Cursor to exploit already compromised corporate networks.
Router abused as proxy network
Fortinet has discovered the new Linux botnet Evooo1Bot, which turns gateway devices into SOCKS5 relay nodes and additionally steals data.
Control console without access protection
Security researchers have disclosed a vulnerability chain in AIT-GUI, the browser-based control console for NASA/JPL’s open-source AMMOS Instrument Toolkit.
When Outages Become Normal
AI is accelerating the search for security vulnerabilities, while attackers are increasingly disabling the very tools designed to stop them. What can still detect an attack when EDR and other security controls have already been taken offline?
Fake Rescue, Real Risk
A suspected ransomware affiliate is posing as an independent recovery company under the name Ransom Busters.
Most Read Articles
26. August 2026
20. August 2026
17. August 2026
12. August 2026
10. August 2026