UTA0560 exploited a Chrome-Windows zero-day chain against NGOs to deploy GRIMWEDGE; APT31 used the same chain to install LONGTALE.
Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites ...
Rapuncel infostealer campaign stole browser passwords and crypto wallet data from Windows users after a Microsoft-signed ...
Hackers hide AsyncRAT in Windows charmap.exe, using PowerShell and fake invoice files to evade detection and gain remote ...
Elastic Security Labs has uncovered a long-running malware operation that plants fake browser extensions inside Chrome and ...
When a victim opens the HTA, Windows invokes mshta. exe, a legitimate Microsoft utility designed to execute HTML Applications. The malicious file pushes its own window off-screen and loads remote ...
KREMLIN banking malware uses fake bank documents to steal passwords, cookies, and data from Chrome and Edge users in Brazil.
A Telegram Desktop flaw lets bots inject JavaScript into exported chats, enabling data theft and page manipulation.
Security researchers have uncovered a Brazilian banking-malware operation named KREMLIN that secretly installs malicious extensions in ...
CyberPress weekly cybersecurity newsletter and cybersecurity bulletin covering the top 50 cyber security stories from September 7–12, 2026.
A banking malware operation active since mid-2025 has been using a toolkit named KREMLIN to install malicious Chrome and Edge ...