Global SystemBC Botnet Found Active Across 10,000 Infected Systems Information Security Magazine 13 hours 44 minutes ago SystemBC malware linked to 10,000 infected IPs, posing risks to sensitive government infrastructure
New Technical Markers Reveal Expanding ShadowSyndicate Cybercriminal Infrastructure Information Security Magazine 14 hours 59 minutes ago ShadowSyndicate cluster expands with new SSH fingerprints connecting servers to other ransomware ops
AI Drives Doubling of Phishing Attacks in a Year Information Security Magazine 15 hours 59 minutes ago Cofense claims AI is making phishing emails more personalized and sophisticated
Two Critical Flaws in n8n AI Workflow Automation Platform Allow Complete Takeover Information Security Magazine 16 hours 59 minutes ago Pillar Security discovered two new critical vulnerabilities in n8n that could lead to supply chain compromise, credential harvesting and complete takeover attacks
SolarWinds Web Help Desk Vulnerability Actively Exploited Information Security Magazine 19 hours 44 minutes ago CISA has added a critical CVE in SolarWinds Web Help Desk to its KEV Catalog
Hundreds of Malicious Crypto Trading Add-Ons Found in Moltbot/OpenClaw Information Security Magazine 1 day 13 hours ago A security researcher found 386 malicious ‘skills’ published on ClawHub, a skill repository for the popular OpenClaw AI assistant project
SQL Injection Flaw Affects 40,000 WordPress Sites Information Security Magazine 1 day 13 hours ago 40,000 WordPress sites are vulnerable to SQL injection in Quiz and Survey Master plugin
DockerDash Exposes AI Supply Chain Weakness In Docker's Ask Gordon Information Security Magazine 1 day 14 hours ago DockerDash vulnerability allows RCE and data exfiltration via unverified metadata in Ask Gordon
UK ICO Launches Investigation into X Over AI Generated Non-Consensual Sexual Imagery Information Security Magazine 1 day 15 hours ago UK Data Protection Watchdog has “serious concerns” over data privacy on Elon Musk’s social platform
Researchers Warn of New “Vect” RaaS Variant Information Security Magazine 1 day 15 hours ago A new ransomware-as-a-service operation dubbed “Vect” features custom malware
Cybercrime Unit of Paris Prosecutors Raid Elon Musk’s X Offices in France Information Security Magazine 1 day 17 hours ago Elon Musk and X’s former CEO were summoned for voluntary interviews in Paris on April 20, 2026
New Password-Stealing Phishing Campaign Targets Corporate Dropbox Credentials Information Security Magazine 1 day 19 hours ago Multi-stage attack begins with fake message relating to business requests and evades detection with link hidden in a PDF
Vibe-Coded Moltbook Exposes User Data, API Keys and More Information Security Magazine 1 day 19 hours ago Wiz Security claims Moltbook misconfiguration allowed full read and write access
NSA Publishes New Zero Trust Implementation Guidelines Information Security Magazine 2 days 13 hours ago NSA released new guidelines to help organizations achieve target-level Zero Trust maturity
Notepad++ Update Hijacking Linked to Hosting Provider Compromise Information Security Magazine 2 days 14 hours ago A supply chain attack on Notepad++ update process was linked to compromised hosting infrastructure
Fancy Bear Exploits Microsoft Office Flaw in Ukraine, EU Cyber-Attacks Information Security Magazine 2 days 17 hours ago Russia-linked hacking group Fancy Bear is exploiting a brand-new vulnerability in Microsoft Office, CERT-UA says
Android RAT Uses Hugging Face to Host Malware Information Security Magazine 2 days 19 hours ago Bitdefender has discovered a new Android malware campaign that uses Hugging Face
Former Google Engineer Found Guilty of Stealing AI Secrets Information Security Magazine 2 days 20 hours ago Linwei Ding, a former Google engineer, has been found guilty of stealing trade secrets for China
Labyrinth Chollima Evolves into Three North Korean Hacking Groups Information Security Magazine 5 days 14 hours ago CrowdStrike assessed that two new threat actor groups have spun off from North Korean Labyrinth Chollima hackers
New AI-Developed Malware Campaign Targets Iranian Protests Information Security Magazine 5 days 18 hours ago The RedKitten campaign distributes lures designed to target people seeking information about missing persons or political dissidents in Iran