Infosecurity News

  1. SourTrade Malvertising Campaign Secretly Builds Malware in the Browser

    Impersonating well-known cryptocurrency and trading sites, SourTrade has developed a novel technique to drop infostealers to victims

  2. Ransomware Groups Increasingly Deploy EDR Kill Techniques

    Halcyon’s latest quarterly ransomware report showed that while ransomware attacks are declining, obfuscation techniques are getting harder to fight against

  3. Hotel Wi-Fi Routers Compromised to Steal Corporate Login Credentials From Visitors

    Researchers at ReliaQuest warned of widespread DNS poisoning attacks targeting the hospitality sector as part of a cyber espionage campaign

  4. ChatGPT Among Top 10 Most Impersonated Brands in Phishing Attacks, Says Check Point

    OpenAI’s chatbot tool ChatGPT ranked among the top 10 most impersonated brands in phishing attacks for the first time

  5. Ransomware Attacks Targeting Universities on the Rise

    Comparitech’s analysis of incidents in the first half of 2026 finds that the emergence of The Gentlemen ransomware has resulted in surge in attacks against higher education

  6. Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations

    International agencies issue joint alert over state-backed campaign exploiting a critical vulnerability in the Zimbra Collaboration Suite

  7. Microsoft Copilot Deployments Delayed Over Security Concerns

    CoreView research finds that security leadership is concerned about AI Assistant exposing confidential data

  8. Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns

    US government agencies have warned that Iranian cyber actors are targeting US-based Siemens and Schneider industrial equipment

  9. AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface

    Sophos report warns that the rapid adoption of AI by businesses is leaving them vulnerable to a new source of cyber threats

  10. New Dolphin X Stealer Employs AI Profiling to Prioritize Targets

    Dolphin X is a new infostealer that uses AI to sort and rank victims, giving cybercriminals a faster way to identify lucrative targets

  11. Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness

    A new study of organizations which have fallen victim to ransomware suggests the rise of AI-tools being used by hackers is making life harder for defenders

  12. TrickBot Ditches HTTP for DNS Tunneling in Latest Variant

    New TrickBot variant hides C2 communication inside DNS queries, replacing decade-old HTTP pattern

  13. Open AI Claims Its AI Models Went Rogue and Hacked Another Company

    Hugging Face recently disclosed a security breach. OpenAI has now said that it was its AI models which broke containment and hacked Hugging Face themselves

  14. Ubuntu snap-confine Vulnerability Enables Local Root Access

    New Ubuntu snap-confine race condition lets local users escalate to root on default installs

  15. Google Makes CodeMender Available as Managed AI Security Agent

    CodeMender actively builds and runs exploits in customer-managed sandboxes to verify if vulnerabilities are truly exploitable

  16. Russian Hacker Turns Jailbroken Claude Into Pentest Platform

    Russian-speaking actor Trim built a commercial offensive AI pentest tool on jailbroken Claude models

  17. A New Ransomware Threat Actor Emerges Every Week, Warns Report

    Analysis by Black Kite warns that ransomware ecosystem is becoming bigger and more fragmented

  18. FBI Warns of Deepfake Videos Impersonating IC3 Leadership

    FBI warned of deepfake videos of IC3 leadership directing users to spoofed complaint sites

  19. US Hospital Finance Software Provider Craneware Reports Data Theft

    Craneware, a provider of financial software for US healthcare organizations, has disclosed a cyber incident involving unauthorized access and data theft

  20. Researchers Uncover North Korean 'ClickFake' Campaign Targeting Web3 Pros

    In a new campaign, North Korean hacking group Famous Chollima targeted crypto professionals through ClickFix lures to deliver Windows and macOS trojans

What’s Hot on Infosecurity Magazine?