Malware & Ransomware

25
Feb
Malicious NuGet Packages Exfiltrate ASP.NET Identity and Install Persistent Backdoors

Malicious NuGet Packages Exfiltrate ASP.NET Identity and Install Persistent Backdoors

Security researchers at Socket identified a supply‑chain attack that distributes malicious NuGet packages targeting ASP.NET developers. The packages
1 min read
25
Feb
AI-Driven Threats Surge: Check Point 2025 Reveals New Weaponization Playbook

AI-Driven Threats Surge: Check Point 2025 Reveals New Weaponization Playbook

Check Point’s 2025 retrospective shows threat actors have moved from experimental use of artificial intelligence to fully integrating it
1 min read
25
Feb
Claude AI Project Files Weaponized for Remote Code Execution and Token Theft

Claude AI Project Files Weaponized for Remote Code Execution and Token Theft

Threat actors are targeting Claude AI code project files, inserting malicious payloads that execute arbitrary commands on vulnerable hosts and
1 min read
25
Feb
Threat Actors Reconnaissance Targets BeyondTrust RCE (CVE‑2026‑1731) Before Exploit Release

Threat Actors Reconnaissance Targets BeyondTrust RCE (CVE‑2026‑1731) Before Exploit Release

GreyNoise researchers have identified a wave of coordinated scans aimed at systems running BeyondTrust’s privileged access management service. The
1 min read
17
Feb
AI Prompt Poisoning Hijacks ‘Summarize with AI’ Buttons to Manipulate Chatbot Answers

AI Prompt Poisoning Hijacks ‘Summarize with AI’ Buttons to Manipulate Chatbot Answers

Microsoft Defender Security Research uncovered a new “AI Recommendation Poisoning” technique where attackers hide malicious prompts behind the “Summarize with
1 min read
17
Feb
Six Actively‑Exploited Zero‑Days Included in February 2026 Patch Tuesday

Six Actively‑Exploited Zero‑Days Included in February 2026 Patch Tuesday

Microsoft’s February 2026 Patch Tuesday released updates for more than 50 flaws, but six of those were zero‑day
1 min read
17
Feb
Scale SOC Automation Fast with CrowdStrike Falcon Fusion Playbooks

Scale SOC Automation Fast with CrowdStrike Falcon Fusion Playbooks

CrowdStrike’s recent blog walks security teams through extending their SOC using Falcon Fusion, the vendor’s native SOAR platform.
1 min read
17
Feb
AI Summarize Buttons Used for Prompt Poisoning on Compromised Sites

AI Summarize Buttons Used for Prompt Poisoning on Compromised Sites

Microsoft Defender Security Research identified a novel attack chain where threat actors embed malicious “Summarize with AI” buttons into compromised
1 min read
17
Feb
QR Code Phishing Spikes, Targeting Users on Web & Mobile

QR Code Phishing Spikes, Targeting Users on Web & Mobile

Palo Alto Networks’ Unit 42 has documented a sharp increase in QR‑code phishing campaigns that direct victims to credential‑
1 min read
17
Feb
Coordinated Scans Target New BeyondTrust RCE Vulnerability – Exploit Likely Soon

Coordinated Scans Target New BeyondTrust RCE Vulnerability – Exploit Likely Soon

GreyNoise analysts have observed a widespread, credential‑free reconnaissance campaign that is actively probing internet‑exposed BeyondTrust management consoles for
1 min read