In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
In the first half of 2026, attackers increasingly targeted cloud and SaaS environments, shifting focus from traditional malware to compromising trusted identities. Darktrace reported that 67% of phishing emails passed…
PamStealer is a newly identified macOS infostealer that masquerades as the legitimate Maccy clipboard manager. The malware employs a two-stage attack method, starting with a malicious AppleScript that downloads a…
SourTrade is a malvertising operation that has been active since late 2024, targeting cryptocurrency users through fake ads that lead to counterfeit trading platforms. The campaign affects users across Asia-Pacific,…
On May 20, 2026, The Oncology Institute, Inc. was notified of unauthorized access to its systems by Kroll, a third-party vendor. The incident, confirmed in an SEC filing on May 22, 2026, involved patient data…
Cybersecurity analysts have reported an alleged breach at Adobe, purportedly executed by a threat actor known as 'Mr. Raccoon.' The breach may have exposed sensitive data, including 13 million customer support tickets…
Infostealer malware is increasingly exposing enterprise identity credentials, with 16% of infections involving Single Sign-On or identity provider details, according to Flare's analysis of 18.7 million logs from 2025. A…
GuLoader, also known as CloudEyE, has become a persistent threat in cybersecurity, functioning primarily as a downloader for secondary malware payloads. It retrieves and executes various malicious software, including…