Infosecurity News

  1. TeamPCP Traced Back to 2020 Cryptojacking Operation

    Oligo Security has linked TeamPCP to ShadowRay 2.0 and to cryptojacking infrastructure dating back to 2020

  2. Meta Joins OpenAI and Anthropic in Reporting AI Exploit Incident

    One of Meta’s AI models exploited a third-party security flaw during an evaluation, the latest in a series of similar incidents involving advanced AI systems

  3. Violent Physical Crypto Thefts Surge to $30m in Losses

    So-called “wrench attacks” have resulted in $30m in losses so far in 2026, says Chainalysis

  4. Canadian Hacker Pleads Guilty Over Snowflake Extortion Campaign

    A Canadian hacker has admitted involvement in the widespread compromise of 165 Snowflake customer accounts used to steal data and extort victims

  5. NVIDIA Group Proposes SAFE Initiative for Agentic Threat Intel Sharing

    The Open Secure AI Alliance has announced plans for the Shared AI Findings Exchange (SAFE)

  6. Fake Open VSX Extensions Harvest Private Repo and CI Data

    77 counterfeit Open VSX extensions beaconed to one domain, 19 harvesting git and CI identity

  7. Paperclip AI Flaws Let Unauthenticated Attackers Run Commands

    3 Paperclip flaws exposed data & allowed unauthenticated command execution in two deployment modes

  8. Prompt Injection Remains Biggest LLM Risk, Despite Limited Incidents

    Prompt injection remains the most dangerous security threat to LLMs, according to OWASP’s latest Top 10 LLM Applications list

  9. ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs

    A new npm worm has compromised packages with over two billion monthly installs

  10. Frontier Models Engage in Unsanctioned Behavior During Testing

    Anthropic and OpenAI models attacked “real people and organizations” during AI Security Institute tests

  11. Fake Bank of America Phishing Scam Installs Remote Access Malware

    Cybercriminals are using a fake Bank of America phishing campaign to trick users into downloading a malicious script that installs ScreenConnect, enabling remote access and persistence on compromised systems

  12. WhatsApp Scam Hijacks Accounts via Linked Devices Feature

    WhatsApp scam abused the Linked devices feature to hijack accounts without stealing any passwords

  13. Cybercriminals Bypass AI Safety Controls by Splitting Malicious Tasks Across Multiple Sessions

    Talos read attacker prompt logs and found guardrails fell to task splitting and ownership claims

  14. Cloud and SaaS Environments Now Top Targets for Attackers

    Cloud and SaaS are now the preferred operating environments for threat actors, amid a continued shift to identity attacks

  15. AI Accounts for Over Half of Cybercrime in Africa, Says Interpol

    Interpol claims AI is driving a surge in cybercrime in Africa, with related losses doubling

  16. UK’s Police National Legal Database Reveals Data Breach

    The UK’s Police National Legal Database and Ask the Police service have been breached

  17. China-Linked Threat Actors Weaponize New Vulnerabilities in Under a Day

    Chinese actors exploited the critical React2Shell exploit inside a day, while 88% of exploited vulnerabilities in H1 2026 were compromised within 48 hours of disclosure

  18. Midnight Blizzard Targets Travelers via Captive Portals

    Russian actor Storm-2945 hijacked hotel captive portals to push fake updates and steal tokens

  19. HollowFrame Loader Uses Fake Python DLL to Evade Defender

    New HollowFrame loader hid Go code in a fake Python DLL after pre-staging Defender exclusions

  20. Korea’s Largest Telco KT Fined $38m After Femtocell Campaign

    Korean telco KT has been fined $39m for a year-long breach linked to femtocell compromise

What’s Hot on Infosecurity Magazine?