-
The China-linked Daxin backdoor has resurfaced in an active intrusion targeting a Taiwan-based subsidiary of a multinational high-tech manufacturer, exposing the enduring reach of an espionage operation first publicly detailed in 2022. Daxin’s return i…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A Russian-speaking threat actor tracked as “bandcampro” used Google Gemini CLI as an end-to-end operational assistant to migrate a command-and-control server, deploy a replacement VPS, configure Cloudflare tunnels, and restore control of compromised en…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A newly documented malware framework dubbed OkoBot is targeting cryptocurrency users with a multi-stage intrusion chain designed to capture Ledger and Trezor recovery phrases, browser credentials, wallet files, keystrokes, screenshots, and application …
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Microsoft has temporarily halted delivery of the July 14, 2026, Windows 11 security update to a limited number of Dell devices due to an incompatibility with an Intel driver that causes significant stability and power management issues. This precaution…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
3 Russian Nationals Indicted for Running Bulletproof Hosting Network Behind $62 Million Cyberattacks

Three Russian nationals and two St. Petersburg-based companies have been indicted in the United States for allegedly operating a bulletproof hosting network that facilitated ransomware, malware, phishing, and other cyberattacks, resulting in over $62 m…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A previously undocumented Rust-based remote access trojan, dubbed LabubaRAT, which masquerades as legitimate NVIDIA software to establish persistent access on Windows systems. The malware was identified by the company’s Adversary Pursuit Group (APG) an…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Dell has recently disclosed two critical vulnerabilities in PowerProtect Data Domain appliances that could allow unauthenticated remote attackers to gain complete control of affected systems. These vulnerabilities are tracked as CVE-2026-53483 and CVE-…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
11 malicious NuGet packages masquerading as game cheats, automation bots, and management “panels” that deploy a Windows payload called pepesoft.exe. The packages were published as .NET command-line tools, enabling users to install them through the dotn…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A threat campaign targeting Indian government job seekers is using a recruitment notice for Senior Field Officer positions in the Cabinet Secretariat as a lure to deploy a custom remote access Trojan, SheetAgent RAT. The campaign begins with a ZIP arch…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Apple-focused scam operations are increasingly using FaceTime as a high-trust social-engineering channel to steal credentials and, in higher-risk cases, prepare victims for device compromise. Apple said threat actors may approach targets via phone call…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶

