Visualização normal

Antes de ontemCybersecurity News
  • ✇Cybersecurity News
  • Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules Do Son
    The Coder registry attack hijacked Cloudflare IPs to serve malicious Terraform modules from registry.coder.com, stealing developer secrets. Related Posts: Mirage Kitten Malware Targets Aviation and Fintech Sectors US Offers $10M for IRGC Cyber Leader Toy Ghouls Backdoor Uses HiveMQ and Element for C2 The post Coder Registry Attack: Hijacked Cloudflare Pool Served Malicious Terraform Modules appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • SynkLoader Malware Deploys Multi-Language Attack Tools Do Son
    Expel analyzed the SynkLoader malware attack chain. Discover how SynkLoader malware uses Teams phishing and fake lock screens to steal credentials. Related Posts: macOS ClickFix Malware Exploits Polygon C2 WeedHack Malware Still Hits Minecraft Gamers via Fake Sites Cruciferra Malware Loader Uses ClickFix Lures to Kill EDR The post SynkLoader Malware Deploys Multi-Language Attack Tools appeared first on Daily CyberSecurity.
     

The Password Notebook Is Back — but Is It Actually Safer?

25 de Agosto de 2026, 15:18

Password notebooks are making an unexpected comeback as infostealers and browser attacks revive debate over the safest way to store credentials.

The post The Password Notebook Is Back — but Is It Actually Safer? appeared first on TechRepublic.

  • ✇Cybersecurity News
  • 77 Malicious Firefox Extensions Steal Crypto Wallet Secrets and Credentials Do Son
    Socket tracked 77 malicious Firefox extensions that steal crypto wallet secrets and credentials. See how the Offside Wallet Theft Factory works. Related Posts: Grandoreiro Banking Trojan Returns With a DLL Sideloading Campaign Clop Deploys Custom Web Shell in PTC Windchill Extortion Attacks WordlistLoader Delivers Amatera Stealer Through ClearFake Campaigns The post 77 Malicious Firefox Extensions Steal Crypto Wallet Secrets and Credentials appeared first on Daily CyberSecurity.
     

77 Counterfeit Open VSX Extensions Collected Developer and CI/CD Data

10 de Agosto de 2026, 11:52

Security researchers found 150 lookalike Open VSX extensions published under trusted names, highlighting how extension marketplaces can expose developer credentials, source code, and CI/CD systems to supply-chain risk.

The post 77 Counterfeit Open VSX Extensions Collected Developer and CI/CD Data appeared first on TechRepublic.

Fake The Odyssey Downloads Are Hiding Password-Stealing Malware

10 de Agosto de 2026, 11:21

Fake downloads of The Odyssey are spreading Lumma Stealer malware capable of stealing passwords, cookies, payment data, and cryptocurrency information.

The post Fake The Odyssey Downloads Are Hiding Password-Stealing Malware appeared first on TechRepublic.

AssuranceAmerica Data Breach: 6.9M Driver’s License Numbers Exposed

9 de Julho de 2026, 11:16

AssuranceAmerica says hackers accessed the driver's license data of 6.9 million customers, exposing personal information and raising concerns about identity theft.

The post AssuranceAmerica Data Breach: 6.9M Driver’s License Numbers Exposed appeared first on TechRepublic.

Best of the Worst: Five Attacks That Looked Broken (and Worked)

25 de Abril de 2026, 08:38

I skipped last week's roundup. Holiday weekend, family stuff, the usual. So this is a two-week-ish view of what we've published in the Threat Intelligence series since Edition 03 dropped on April 13.

The post Best of the Worst: Five Attacks That Looked Broken (and Worked) appeared first on Security Boulevard.

  • ✇Security Boulevard
  • Claude Mythos and the Cybersecurity Risk That Was Already Here Jacob Krell
    On March 26, Anthropic confirmed the existence of Claude Mythos, an unreleased AI model described internally as "a step change" in capabilities, after a data leak exposed approximately 3,000 unpublished assets in a publicly searchable, unencrypted data store (Fortune, March 26, 2026). The leak was not a sophisticated intrusion. A toggle switch in Anthropic's content management system was left in the wrong position, setting digital assets to public by default (Fortune, March 26, 2026). Amon
     

Claude Mythos and the Cybersecurity Risk That Was Already Here

27 de Março de 2026, 16:15

On March 26, Anthropic confirmed the existence of Claude Mythos, an unreleased AI model described internally as "a step change" in capabilities, after a data leak exposed approximately 3,000 unpublished assets in a publicly searchable, unencrypted data store (Fortune, March 26, 2026). The leak was not a sophisticated intrusion. A toggle switch in Anthropic's content management system was left in the wrong position, setting digital assets to public by default (Fortune, March 26, 2026). Among the exposed materials were internal assessments describing Mythos as posing "unprecedented cybersecurity risks" and being "far ahead of any other AI model in cyber capabilities" (World Today News, March 2026).

The post Claude Mythos and the Cybersecurity Risk That Was Already Here appeared first on Security Boulevard.

❌
❌