Skip to main content

Emerging Threats

Gloved hands hover over a cracked smartphone with eerie glow and payment terminal reflection.

NGate Malware Targets Brazil, Trojanizes HandyPay for NFC Data Theft

Security researchers have uncovered a sneaky new Android malware, NGate, that has been hiding in plain sight by infecting a legitimate app called HandyPay, used for NFC data relay, and using AI-generated code to steal payment credentials. This cleverly crafted malware has set its sights on Brazil, putting unsuspecting users at risk of NFC data theft.

Analyst 207
Dimly lit server room with a glowing laptop screen displaying grainy surveillance footage.

Hacker Leaks Surveillance Footage from Mexican IT Firm

A Mexican IT firm's security was left exposed when a hacker posted screenshots of its surveillance footage on a cybercrime forum, raising the unsettling question: who is watching the watchers? The breach was confirmed, but fortunately, client operations remained unaffected.

Analyst 207
Dimly lit server room with a lone exposed server and tangled cables.

Apache ActiveMQ Vulnerability Exploited, Hits 6,400 Servers

More than 6,400 publicly accessible Apache ActiveMQ servers are under attack, thanks to a high-severity code injection vulnerability that's being actively exploited. Is your server among them?

Analyst 207
Hooded figure surrounded by screens with code, cityscape, and devices on a table.

Former Ransomware Negotiator Pleads Guilty to BlackCat Attacks

A former expert who was paid to negotiate with cybercriminals has taken a shocking turn, pleading guilty to participating in high-profile BlackCat ransomware attacks on US companies. Angelo Martino, a 41-year-old ex-incident responder, admitted to his role in the 2023 attacks.

Analyst 207
A cracked padlock on shattered glass with a laptop glow casting eerie light on a cloud-shaped object.

Vercel Breach Exposes Cloud App Security Risks

When a leading cloud app developer like Vercel reports a breach with scarce details, customers and security teams are left scrambling with uncomfortable uncertainty, wondering if their systems and data are at risk. The lack of transparency only tests trust and fuels concerns about cloud app security.

Analyst 207
Dark cityscape with broken smartphone, credit card and lock on screen, and shadowy figure near public transit terminal with…

NGate Malware Exploits HandyPay App to Steal Android NFC Payment Data

Malicious NGate malware has been discovered hiding inside a fake version of the HandyPay app, putting Android users' NFC payment data at risk. This sneaky malware exploits a trusted payments tool to steal sensitive information, leaving users vulnerable to financial theft.

Analyst 207
Person in dark room with scattered papers and broken locks, surrounded by shadows with a laptop and smartphone displaying…

Adaptavist Group Breach Sparks Imposter Email Scams

When security breaches strike, even the most trusted names can be compromised - and The Adaptavist Group is the latest example, with hackers using stolen credentials to gain access and now sending fake emails that could put your data at risk.

Analyst 207
Abandoned kelp forest with tangled seaweed and a cracked laptop emitting a faint glow amidst scattered coins.

Lazarus Group Targets KelpDAO in $290m Crypto Heist

In a shocking crypto heist, North Korea's notorious Lazarus Group is accused of swiping $290 million from KelpDAO, raising questions about accountability in the digital age. This brazen theft is a stark reminder of the threats lurking in the shadows of the cryptocurrency world.

Analyst 207
Cracked metal lock with eerie glow, code on smartphone and laptop screens in foreground.

CISA Catalog Adds 8 Exploited Flaws

The US Cybersecurity and Infrastructure Security Agency (CISA) just beefed up its catalog of actively exploited software flaws by adding eight new entries, including three Cisco vulnerabilities and a high-severity PaperCut flaw. Federal agencies now have until April and May 2026 to mitigate these risks.

Analyst 207

Malware Disguised as Roblox Cheats Fuels Vercel Breach

Malware masquerading as Roblox cheats sparked a chain reaction, leading to a significant security breach at Vercel and exposing vulnerabilities in modern cloud and SaaS ecosystems. This incident highlights how a seemingly harmless piece of malware can wreak havoc across connected services.

Analyst 207
Shattered padlock on cracked digital surface with error message and accusatory finger in background.

Lovable Disputes Data Leak, Shifts Blame to HackerOne

Lovable, a coding platform, is facing scrutiny after a security researcher uncovered a major data leak, exposing users' sensitive information, including credentials, chat history, and source code, to anyone with a free account. The company's shifting explanations have only added fuel to the fire, sparking concerns about its data handling practices.

Analyst 207
Shadowy figure in hoodie surrounded by cryptic symbols and a dead plant, with a laptop glow, set against a dusk cityscape.

Lazarus Hackers Orchestrate $290 Million KelpDAO Heist

In a shocking turn of events, the Lazarus hackers struck again, making off with a staggering $290 million from the KelpDAO decentralized finance project in a single weekend heist. But who benefits from this massive theft, and who's left to deal with the devastating aftermath?

Analyst 207
Smartphone with cracked screen on cluttered desk, cityscape with Chinese architecture in background, hints of wallet and…

Malicious Apps Infiltrate Apple's China Store, Target Crypto Wallets

Scammers have infiltrated Apple's China App Store with 26 fake cryptocurrency wallet apps, cleverly disguised as popular wallets like Metamask and Coinbase, to steal sensitive recovery phrases and drain users' digital assets. These malicious apps put unsuspecting crypto investors at risk of losing their hard-earned money.

Analyst 207
Shadowy figure in a hoodie surrounded by devices in a dimly lit office space with blurred coworkers in the background.

AI-Driven Threats Target Hybrid Workplaces with New Sophistication

As the modern workplace becomes increasingly decentralized, organizations face a daunting challenge: protecting their dispersed workforce from sophisticated threats powered by artificial intelligence. Fresh thinking is needed to secure hybrid work environments from these emerging AI-driven threats.

Analyst 207
Dimly lit server room with eerie laptop screen glow showing shadowy suited figure.

Gentlemen Ransomware Gang Taps SystemBC for Botnet Attacks

Imagine your business's infrastructure being hijacked and turned into a fleet of malicious proxies - it's a harsh reality that's now hitting home for over 1,570 corporate victims who've fallen prey to the Gentlemen ransomware gang's SystemBC botnet attacks. Their compromised systems are being used to run proxy services for the malware, leaving defenders scrambling to respond.

Analyst 207
Dark scene with broken padlock, circuit boards, and laptop screen displaying malicious model file in shadows.

SGLang Flaw Enables Remote Code Execution via Malicious Model Files

A single malicious file can become a powerful gateway for attackers to run arbitrary commands on vulnerable machines - and a newly disclosed flaw in SGLang, CVE-2026-5760, reveals just how easily this can happen through specially crafted GGUF model files. This highly severe vulnerability, scoring 9.8 out of 10.0, enables remote code execution on systems that trust it.

Analyst 207
Darkened room with shattered computer screen, scattered papers, and broken phone, with a silhouetted figure in shadows near…

Seiko USA Website Defacement Exposes Customer Data Theft Claim

When a corporate website is hijacked like a ransomed storefront, who really owns the sensitive data inside? Seiko USA's recent website defacement has sparked a disturbing claim: hackers say they've stolen customer data and will leak it unless a ransom is paid.

Analyst 207
Axios Breach Underscores Need for AI in Supply Chain Security

Axios Breach Underscores Need for AI in Supply Chain Security

A single, sneaky change to a popular open-source software can spread like wildfire, infecting a staggering 100 million weekly downloads across businesses, startups, and government systems - and that's exactly what happened in a recent Axios breach. The lesson is clear: AI is no longer a nice-to-have, but a must-have for safeguarding supply chain security.

Analyst 207
Smartphone screen displays fake crypto wallet with cracked screen, coins, and padlock in shadows.

Malicious iOS Apps Expose Crypto Users to FakeWallet Threat

Beware of scammers on the official app store: over 20 fake cryptocurrency wallet apps were recently discovered on the Apple App Store, masquerading as legit software to steal user credentials and secrets. These malicious apps, dubbed FakeWallet, put unsuspecting crypto users at risk of losing their digital assets.

Analyst 207
Dark, misty scene with shattered spider web, cracked laptop, and scattered coins, hinting at cryptocurrency heist.

Scotland's Scattered Spider Affiliate Pleads Guilty in US Cryptocurrency Heist

A Scottish affiliate of the notorious Scattered Spider cybercrime crew has pleaded guilty in the US to stealing at least $8 million in cryptocurrency through a cunning phishing and SIM-swap scheme. This guilty plea raises a pressing question: what can $8 million buy in the shadowy world of digital theft?

Analyst 207
Shattered robot head with exposed circuitry amidst broken smartphone fragments in a dimly lit, abandoned server room.

Vercel Breach Exposes Customer Data Theft via AI Tool Compromise

A single compromised AI tool has led to a massive breach at Vercel, exposing customer data and raising serious questions about trust and security. An attacker exploited a third-party AI tool used by an employee to steal sensitive credentials and OAuth tokens, gaining access to multiple services and customer data.

Analyst 207
Shattered robotic arm on modern desk with scattered papers and broken devices amidst cityscape at dusk.

Vercel Breach Traced to Compromised AI Tool

A recent Vercel breach highlights a growing concern: what happens when AI tools, meant to boost efficiency, become the weakest link in our security chain? The breach was traced back to a third-party AI tool used by an employee, blurring the lines between human error and machine vulnerability.

Analyst 207
Dimly lit control room with computer screens and machinery, eerie shadows cast by flickering fluorescent light.

ZionSiphon Malware Targets Water Infrastructure Systems becomes ZionSiphon Malware Infiltrates Water Infrastructure Systems

Imagine malware that's not just a data thief, but a menacing force that can map and disrupt the very plumbing of a city - that's the alarming reality of ZionSiphon, a malicious tool targeting water infrastructure systems with sabotage and scanning capabilities. This sinister malware can scan, disrupt, and wreak havoc on operational-technology water systems, posing a significant threat to public safety.

Analyst 207
Shadowy figure looms behind a laptop displaying maze-like code, with a torn template and tangled wire in the foreground.

Formbook Malware Exploits Obfuscation to Evade Detection

Staying one step ahead of threats just got tougher: Formbook malware's latest campaign combines DLL side-loading and obfuscated JavaScript to expertly evade detection. This sneaky tactic allows it to remain hidden, making it a formidable foe in the cybersecurity landscape.

Analyst 207