// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
malware

Amadey/StealC: 27M Credentials Recovered, $47M in Crypto Seized

Operation Endgame dismantled two malware-as-a-service networks. Here's why the RICO legal theory changes the game and what it means fo…

Jun 29, 2026views - 985

malware

Gaslight: macOS Malware Tricks AI Analyzers with Prompt Injection

SentinelOne researchers have documented Gaslight, a previously unknown Rust-based macOS implant that embeds a prompt-injection payload…

Jun 25, 2026views - 802

malware

Edgecution: Malicious Edge Extension Bypasses Sandbox via Native Messaging

Zscaler ThreatLabz documents a campaign where the Edgecution extension abuses Chrome's Native Messaging API to escape the browser sand…

Jun 25, 2026views - 1.2k

malware

Mistic: KongTuke's In-Memory Backdoor Challenges EDR Defenses

Operational since April 2026, the stealthy Mistic backdoor leverages DLL sideloading and in-memory BOF execution for long-term persist…

Jun 24, 2026views - 1.2k

malware

ClickFix macOS: When Users Bypass Gatekeeper Themselves

Microsoft has documented the latest evolution of ClickFix campaigns on macOS: operators have ditched manual DMG installers for Termina…

Jun 23, 2026views - 1k

malware

OXLOADER: Malicious Google Ads Deliver Infostealer

Elastic Security Labs uncovers OXLOADER, a previously undocumented Windows loader distributed via malicious Google Ads impersonating N…

Jun 22, 2026views - 797

malware

WhatsApp Weaponized: VBS and RMM Delivered via DMs from Compromised Contacts

An active campaign since June 2026 uses WhatsApp Desktop to distribute malicious VBScript files, install legitimate RMM software, and…

Jun 22, 2026views - 871

malware

Malware on Steam Workshop: Malicious Wallpapers Steal Accounts

Dozens of malicious wallpapers on Steam Workshop have racked up thousands of downloads. Kaspersky analysis reveals DarkKomet backdoor,…

Jun 22, 2026views - 1.7k

malware

Operation Endgame Dismantles SocGholish: Nearly 15,000 Sites Cleaned

On June 18, 2026, the international Operation Endgame coalition took down 106 servers and domains linked to SocGholish and cleaned 14,…

Jun 18, 2026views - 1k

malwareCRITICAL

CryptoBandits: The USB Clipper-Worm That Adds RCE via Tor

Microsoft disclosed an active Windows clipper malware campaign running since February 2026 that uses malicious LNK files distributed v…

Jun 18, 2026views - 889

malware

Rust Crypto Clipper Campaign Weaponizes Fake Reputation on VirusTotal and GitHub

A threat actor distributed a Rust-based crypto clipper for Windows and macOS by fabricating trust signals across GitHub, SourceForge,…

Jun 17, 2026views - 705

malware

Rokarolla: The Android Trojan That Turns Your Phone Into a Digital Prison

Discovered by Zimperium zLabs, the Rokarolla trojan deploys 137 commands and fake overlays to isolate victims, steal banking credentia…

Jun 16, 2026views - 1.4k