// 2 CRITICAL · 5 ZERO-DAY · 10 CVE · 8 EXPLOIT · 1 ADVISORY IN THE LAST 24H
malware

Rokarolla: The Android Trojan That Turns Your Phone Into a Digital Prison

Discovered by Zimperium zLabs, the Rokarolla trojan deploys 137 commands and fake overlays to isolate victims, steal banking credentia…

Jun 16, 2026views - 1.3k

malware

Lorem Ipsum Pivots to ClickFix After Fox Tempest Takedown

BlueVoyant reports the Lorem Ipsum malware abandoned signed Microsoft Teams installers for ClickFix tactics on compromised WordPress s…

Jun 16, 2026views - 785

CYBERSEC

GhostTree: The NTFS Attack That Freezes EDR

Varonis Threat Labs disclosed GhostTree, an evasion technique that neutralizes Windows Defender using recursive NTFS junctions — no el…

Jun 16, 2026views - 956

malware

DragonForce Weaponizes Microsoft Teams TURN Relays for Stealth C2

The DragonForce ransomware group deployed Backdoor.Turn, the first documented in-the-wild malware to abuse Microsoft Teams' legitimate…

Jun 16, 2026views - 824

malware

SprySOCKS Returns to Windows: Kernel Rootkit and Government Targeting

ESET discovered Windows variants of the SprySOCKS backdoor—previously Linux-only—equipped with a kernel rootkit and used against gover…

Jun 16, 2026views - 944

CYBERSEC

Chinese APT UNC6508: A Year of Espionage on REDCap Servers

Google exposes UNC6508: over a year of REDCap server compromise at U.S. and Canadian medical and military institutions using InfiniteR…

Jun 15, 2026views - 753

ransomware

The Gentlemen: LLMs Cut Ransomware Development to Three Days

CERT-AGID reports the ransomware group The Gentlemen uses LLMs to build platforms in three days, personalize extortion, and replicate…

Jun 15, 2026views - 1.4k

CYBERSEC

Algorithmic Exploitation: How TikTok and Instagram Reels Amplify Vidar Malware

ReversingLabs research reveals threat actors are using fake Spotify Premium tutorials to distribute the Vidar infostealer via PowerShe…

Jun 11, 2026views - 1k

microsoftZERO-DAY

Microsoft Backtracks on Legal Threats Against Zero-Day Researcher Following Industry Backlash

Microsoft threatened criminal action against researcher Nightmare-Eclipse over six Defender zero-days, partially retracting its stance…

Jun 08, 2026views - 1.5k

malware

C0XMO: Gafgyt Variant Targets DD-WRT Routers with Modular Scanner and Competitor-Killing Routine

The C0XMO variant of the Gafgyt botnet exploits CVE-2021-27137 in DD-WRT firmware, utilizing a modular architecture with a standalone…

Jun 07, 2026views - 879

CYBERSECZERO-DAY

Microsoft Retracts Legal Threats Against Researchers Following Zero-Day Disclosure Backlash

Microsoft threatened criminal prosecution against researcher Nightmare-Eclipse for publishing six Windows zero-days before walking bac…

Jun 04, 2026views - 1.3k

malware

TA4922 Targets Europe with New Atlas RAT and AI-Assisted Malware Development

Proofpoint tracks the European expansion of TA4922, a Chinese-speaking cybercrime group deploying the new Atlas RAT, RomulusLoader, an…

Jun 03, 2026views - 186