Latest Cybersecurity News
View all →New MessiahGPT AI Model Fueling Automated Ransomware and Phishing Attacks
A criminal AI service called MessiahGPT is being marketed on BreachForums as an uncensored platform for creating ransomware, phishing kits, stealers, crypters, rootkits, and social-engineering…
Evooo1Bot Turns Compromised Routers Into DDoS Bots and Anonymous Proxy Nodes
A newly identified Linux botnet dubbed Evooo1Bot is targeting vulnerable internet-facing routers, edge appliances, cameras, and enterprise systems, combining Mirai-derived DDoS capabilities with proxy relaying,…
Windows 11’s strongest security defenses can be bypassed without a screwdriver
Researchers from the University of Birmingham and Durham University have found a way to knock down some of the toughest protections in Windows 11 without…
Social media firms urge caution on early Australia under-16 ban data
Top social media platforms urged the Australian government not to place too much weight on early evidence showing most children still use their products despite…
Mustang Panda Upgrades CoolClient With a Kernel Rootkit
Mustang Panda Upgrades CoolClient With a Kernel Rootkit Pierluigi Paganini August 16, 2026 Mustang Panda upgraded CoolClient with a signed kernel driver that hides processes,…
Stolen Authority
We need to label this parasitic marketing technique with an adequately strong term. Stolen Authority. (From stolen Valor) It’s the deplorable tactic of doing an…
Avoiding mistakes with AWS OIDC integration conditions
A common way to allow third-party SaaS solutions to access AWS accounts is via OpenID Connect (OIDC) integrations. These integrations require specific conditions in the…
SafePal data breach impacts 39,798 customers, stolen info for sale
Cryptocurrency hardware wallet provider SafePal is warning of a data breach affecting about 39,798 customers after a flaw was exploited to steal customer order information,…
McDonald’s, Vodafone Hit by Azure Credential Theft Campaign Exposing Millions of Enterprise Records
A sprawling Azure data exfiltration campaign is unfolding across the dark web, with a threat actor systematically selling off internal employee directories stolen from some…