Emerging Threats

Malicious Ledger Live App Drains $9.5M in Crypto from Apple Users
A malicious Ledger Live app on Apple's App Store siphoned off a staggering $9.5 million in cryptocurrency from 50 unsuspecting users in just a few days. This shocking incident raises serious concerns about app security and the safety of our digital assets.

AI-Driven Scam Exploits Google Discover with AI-Generated Pushpaganda
Beware of a cunning AI-driven scam that's invading Google Discover with fake news stories engineered to follow you around the web and beg for money. Cybersecurity researchers have uncovered this sinister scheme, which uses AI-generated content and search engine manipulation to deliver scareware and drain your wallet.

Venice Flood Defenses Breached by Hackers
Imagine a city's defenses against its greatest threat - water - being breached not by a natural disaster, but by an unknown cyber attacker. In a chilling turn of events, hackers have infiltrated Venice's hydraulic pump system, claiming they can wield the power to create floods at will.

Malicious Chrome Extensions Uncover Massive User Data Theft
Over 100 malicious Chrome extensions were secretly working together to steal user data, hijack online sessions, and inject ads into browsing experiences, all controlled by a single hidden command center. This massive data theft operation highlights the alarming risks of unchecked access to our online lives.

Triad Nexus Evades Sanctions, Bolsters Global Fraud Network
Meet Triad Nexus, a cunning organized fraud operation that has not only evaded US sanctions but has actually expanded its global reach, now running scams worth a staggering $200 million. Despite efforts to choke off its activities, the group continues to thrive using clever tactics like infrastructure laundering and localized fraud.

Iranian Operative Behind L.A. Metro Cyberattack
New intelligence suggests a pro-Iranian operative is behind the L.A. Metro cyberattack, shifting the focus from the disruption caused to the motivations and strategic intentions of the attacker. This development elevates the incident from a local service outage to a complex geopolitical issue.
Ransomware Gang 0APT Targets Rival Krybit with Exposure Threat
Ransomware gangs are turning on each other, and the gloves are off - 0APT has publicly threatened to expose individuals tied to rival gang Krybit, escalating their rivalry to a whole new level of personal and public. This shocking move reveals the cutthroat world of cybercrime, where even thieves don't always agree.

Mirax RAT Exploits Meta Ads to Hijack 220,000 Devices
Meet Mirax RAT, a sneaky Android malware that's hijacked over 220,000 devices by exploiting Meta Ads, giving strangers full control over unsuspecting users' phones. This malicious code has rapidly spread to hundreds of thousands of social accounts, showcasing the alarming power of mainstream ad platforms in the wrong hands.

Malicious Chrome Extensions Exfiltrate User Data
Malicious actors have hijacked 108 Google Chrome extensions, quietly harvesting user data and turning every webpage into a playground for ad injection and code execution - putting around 20,000 users at risk. This sneaky campaign, discovered by cybersecurity researchers, uses a single command-and-control system to wreak havoc on unsuspecting browsers.

CISA Catalog Exposes Actively Exploited Flaws in Fortinet, Microsoft, Adobe Software
The US Cybersecurity and Infrastructure Security Agency (CISA) has just added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, warning that flaws in Fortinet, Microsoft, and Adobe software are being actively exploited by hackers. Is your system exposed - and what can you do to protect it?

ShowDoc Flaw CVE-2025-0520 Actively Exploited, Servers Targeted
A critical vulnerability in ShowDoc, a popular collaboration platform, is being actively exploited, allowing hackers to place arbitrary files on unpatched servers - putting organizations at risk. With a severity score of 9.4 out of 10, CVE-2025-0520 is a critical threat that needs immediate attention.

US and UK Cyber Leaders Scramble to Contain Claude Mythos Threat
As a new AI tool, Claude Mythos, raises red flags with its potential to aid hacking, US and UK cyber leaders are scrambling to contain the threat and reassess their cybersecurity strategies. This emerging concern marks a new front in AI and cybersecurity, where commercially available models are now viewed as a potential operational risk.

Microsoft Vulnerabilities Resurface, Fueling Cybercrime and Ransomware
Beware: long-dead Microsoft vulnerabilities are coming back to haunt networks, fueling cybercrime and ransomware attacks. Even a 14-year-old software flaw is being exploited by crooks, putting your network at risk.

Basic-Fit Discloses Data Breach Impacting 1 Million Members
A data breach at Dutch fitness giant Basic-Fit has exposed the sensitive information of 1 million members, leaving many to wonder what's next for those whose personal data is now in the wrong hands. The breach, which was publicly disclosed by the company, has raised concerns about the security of members' fitness habits and contact details.
OpenAI Rushes Updates for Mac Apps After Axios Hack Compromise
OpenAI recently issued urgent updates for its Mac apps after a developer tool inadvertently pulled in a malicious library, highlighting the risks of supply-chain vulnerabilities. Fortunately, the company assured that its systems and software integrity remained intact despite the incident.

JanelaRAT Malware Strikes Latin American Banks with 14,739 Attacks
Latin American banks faced a staggering 14,739 attacks from the JanelaRAT malware in 2025, putting sensitive information at risk and raising the stakes for financial institutions and their customers. This surge in attacks highlights the growing threat of JanelaRAT, a modified malware family that continues to target banks in countries like Brazil and Mexico.

Rockstar Games Data Breach Exposes Sensitive Analytics Information
Rockstar Games has suffered a data breach, with sensitive analytics information - including insights into the behavior of millions of players - leaked by the ShinyHunters extortion gang on a criminal site. The breach is linked to a recent security incident at Anodot, a company used by Rockstar Games.

FBI dismantles W3LL phishing service, arrests developer
In a groundbreaking cross-border operation, the FBI and Indonesian authorities joined forces to dismantle the notorious W3LL phishing service, seizing key infrastructure and arresting an alleged developer. This historic collaboration marks a significant win in the fight against cybercrime, and raises hopes for a safer online landscape.

Impersonator Exploits Slack to Target Linux Developers
A clever impersonator tricked Linux developers on Slack by posing as a trusted official, leading them to click a link that seemed harmless but actually handed over their credentials and development environment. This sneaky attack used Google-hosted pages to disguise a bogus root certificate, catching developers off guard.

Booking.com Breach Exposes User Data, Prompts PIN Resets
Booking.com recently suffered a data breach, admitting that hackers accessed sensitive reservation and user information - as a precaution, the company has reset PINs for affected bookings.

OpenAI Revokes macOS Certs Amid Supply Chain Breach Fallout
A recent supply chain breach has raised concerns about software trustworthiness, prompting OpenAI to revoke its macOS code-signing certificates after a malicious package was executed in its build pipeline. This swift action highlights the vulnerability of even the most secure systems to supply chain attacks.

Banks Urged to Unite Against AI-Driven Fraud Networks
Generative AI has created a haven for fraudsters, allowing them to organize and scale their operations like never before - and experts warn that banks must adapt quickly or risk being left behind. To stay ahead, financial institutions must unite against these AI-driven fraud networks and respond with the same level of sophistication.

FBI Disrupts W3LL Phishing Network Behind $20 Million Fraud Attempts
In a major breakthrough, the FBI and Indonesian National Police joined forces to dismantle a global phishing network that had harvested thousands of account credentials in a bid to scam over $20 million. The operation, which used a ready-made toolkit called W3LL, was successfully disrupted, and the alleged developer was detained.

Adobe Fixes Zero-Day Flaw in Acrobat Reader Exploited in Attacks
Adobe has rushed out an emergency patch for a critical vulnerability in Acrobat Reader that's been exploited by attackers since at least December, forcing users to rethink their document reader's security. This zero-day flaw, tracked as CVE-2026-34621, highlights the rapid discovery and weaponization of software flaws.