A critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS is being actively exploited in a large-scale cyberattack affecting over 700 websites, including those of Harvard University, Oxford University, Auburn…
A malicious campaign is targeting macOS users by exploiting the official ChatGPT website. Attackers are utilizing a ClickFix technique to distribute the AMOS infostealer through fake installation guides on chatgpt.com.…
Threat actors are exploiting the decades-old 'finger' command in new ClickFix malware attacks to execute remote commands on Windows devices. The command, which was historically used to retrieve user information on Unix…
ESET's Threat Report for H2 2025 reveals the emergence of AI-driven malware, specifically PromptLock, the first known AI-driven ransomware capable of generating malicious scripts in real-time. This development marks a…
Researchers at Push Security report an increase in ClickFix attacks, particularly targeting macOS users with tailored prompts. These social engineering attacks trick victims into executing malicious commands on their…