// 1 CRITICAL · 1 ZERO-DAY · 2 CVE · 2 EXPLOIT IN THE LAST 24H
malwareCRITICAL

CryptoBandits: The USB Clipper-Worm That Adds RCE via Tor

Microsoft disclosed an active Windows clipper malware campaign running since February 2026 that uses malicious LNK files distributed v…

Jun 18, 2026views - 706

infostealer

The 'robase' Malware Empties Entire Roblox Games: From Hat Theft to Digital Business Seizure

A malware campaign using the Python package 'robase' steals authenticated session tokens from Roblox developers via Discord social eng…

Jun 18, 2026views - 667

CYBERSEC

Malicious JetBrains Plugins Steal AI API Keys: 70,000 Downloads

A coordinated campaign of 15 malicious plugins on the JetBrains Marketplace exfiltrates AI API keys from developers' IDEs. Roughly 70,…

Jun 17, 2026views - 787

ransomware

The Gentlemen: LLMs Accelerate the Ransomware Attack Cycle

CERT-AGID reveals that The Gentlemen ransomware group uses LLMs to build platforms in three days and customize extortion. Technical cl…

Jun 15, 2026views - 854

CYBERSEC

Algorithmic Exploitation: How TikTok and Instagram Reels Amplify Vidar Malware

ReversingLabs research reveals threat actors are using fake Spotify Premium tutorials to distribute the Vidar infostealer via PowerShe…

Jun 11, 2026views - 986

CYBERSEC

Child Identity Theft Surges 40%: The Decade-Long 'Shelf Life' of Stolen Minor Data

Data belonging to minors offers fraudsters a ten-year shelf life due to pristine credit scores and delayed detection. The FTC reports…

Jun 05, 2026views - 1.6k

CYBERSECZERO-DAY

AI Zero-Days and OT Vulnerabilities: ESET’s May 2026 Security Briefing

Tony Anscombe’s latest roundup highlights critical failures in Polish water plants, Google’s discovery of the first AI-generated zero-…

Jun 03, 2026views - 59

CYBERSECZERO-DAY

AI-Directed Attacks and ICS Vulnerabilities: ESET’s Tony Anscombe on DynoWiper and the First AI Zero-Day

In his May 2026 security review, ESET’s Tony Anscombe analyzes a landscape of extremes: from the first AI-generated zero-day and 'AI-d…

May 30, 2026views - 81

VULNZERO-DAY

FortiClient EMS: EKZ Infostealer May Target VPN Management Channels

CVE-2026-35616 (CVSS 9.8): Compromised FortiClient EMS platforms could be transformed into malware delivery vehicles. Attacks in May 2…

May 29, 2026views - 94

malware

JINX-0164: Potential macOS Malware Campaigns Targeting Crypto Developers via LinkedIn

Threat actor JINX-0164 may be targeting cryptocurrency developers through LinkedIn social engineering, potentially utilizing the AUDIO…

May 29, 2026views - 71

CYBERSEC

TrapDoor Campaign Targets Crypto and AI Developers via 34+ Malicious Packages

The TrapDoor campaign deployed credential-stealing malware across npm, PyPI, and Crates.io, exfiltrating crypto wallets and weaponizin…

May 25, 2026views - 78

CYBERSEC

DocketWise Data Breach: 143,480 Impacted via Third-Party Repository Exposure

Legal-tech platform DocketWise has notified 143,480 individuals of a data breach involving cloned third-party repositories. The incide…

May 25, 2026views - 80