// 4 CVE · 3 EXPLOIT · 1 ADVISORY IN THE LAST 24H
CYBERSEC

Nimbus Manticore: Iranian APT Leverages AI-Assisted Backdoors to Target Aviation and Software Sectors

The Iranian threat group Nimbus Manticore has expanded its operations, targeting aviation and software entities across Saudi Arabia, A…

May 26, 2026views - 15

CYBERSEC

F-Secure Leverages Android Accessibility for Scam Defense: A High-Privilege Trade-off

F-Secure Internet Security for Android utilizes Accessibility Services permissions to monitor URLs in Chrome and block phishing, highl…

May 26, 2026views - 11

CYBERSEC

TrapDoor Campaign Targets Crypto and AI Developers via 34+ Malicious Packages

The TrapDoor campaign deployed credential-stealing malware across npm, PyPI, and Crates.io, exfiltrating crypto wallets and weaponizin…

May 25, 2026views - 21

CYBERSEC

Radiology Associates of Richmond Discloses Breach Affecting 266,000 Following Nine-Month Investigation

Radiology Associates of Richmond has confirmed a July 2025 data breach impacting over 266,000 patients. The disclosure follows a nine-…

May 25, 2026views - 26

malware

NGate Malware Trojanizes HandyPay App to Steal Contactless PINs in Brazil

ESET Research has uncovered a new NGate variant that trojanizes the legitimate HandyPay Android app to relay NFC data and intercept PI…

May 24, 2026views - 15

ransomware

Ransomware 2026: Post-Quantum Ciphers, Encryptionless Extortion, and the Rise of EDR-Killers

The 2026 ransomware landscape is defined by the adoption of post-quantum algorithms and a shift toward encryptionless extortion, with…

May 23, 2026views - 23

CYBERSECEXPLOIT

Cloud Atlas Upgrades Arsenal: Novel Backdoors and Stealth RDP Patching for Cyber-Espionage

Between 2025 and 2026, the Cloud Atlas APT deployed previously undocumented backdoors, VBCloud and PowerShower, alongside modified sys…

May 22, 2026views - 23

phishing

M365 Phishing: How Kali365 and EvilTokens Bypass MFA Without Passwords

Two emerging Phishing-as-a-Service (PhaaS) platforms are leveraging device code phishing and OAuth consent abuse to hijack Microsoft 3…

May 22, 2026views - 270

CYBERSECEXPLOIT

Unit 42: Frontier AI Models Exploiting Open-Source Transparency to Automate Supply Chain Attacks

Frontier AI models are demonstrating the autonomous reasoning required to identify vulnerabilities in open-source code and orchestrate…

May 22, 2026views - 17

malware

18 Malicious AI Extensions Exposed: Unit 42 Details Email Spying and RAT Risks

Palo Alto Networks Unit 42 has uncovered 18 AI browser extensions that masquerade as productivity tools while deploying RATs and spyin…

May 21, 2026views - 21

CYBERSEC

GitHub: 3,800 Internal Repos Exfiltrated via Trojanized VS Code Extension

GitHub has confirmed the theft of approximately 3,800 internal repositories after an employee installed a trojanized version of the Nx…

May 21, 2026views - 21

ransomwareEXPLOIT

Ransomware 2026: Extortion Tactics Pivot Beyond File Encryption

Kaspersky’s May 12, 2026 report reveals a fundamental shift in the threat landscape: as encryption loses its leverage, attackers are p…

May 21, 2026views - 18