Go-based macOS Infostealer Hijacks Cryptocurrency Transactions, Targeting Passwords and Credentials

A sophisticated Go-based malware, distributed through a campaign identified as "ClickFix," is posing a significant threat to macOS users by stealthily infiltrating their systems, siphoning sensitive data, and crucially, intercepting…

OpenAI Unveils Enhanced ChatGPT with GPT-5.6 Sol for Paid Users and Unlimited Luna for Free Tier, Boosting Reliability and Control

OpenAI has initiated a significant upgrade to its flagship AI chatbot, ChatGPT, with the rollout of a more robust and reliable version, GPT-5.6 Sol, exclusively for its Plus and Pro…

Swiss Federal IT Office Falls Victim to Cyberattack, Compromising 200 Accounts Through SharePoint Vulnerabilities

Switzerland’s Federal Office for Information Technology and Telecommunication (BIT) has confirmed a significant cybersecurity incident, revealing that hackers successfully breached its Microsoft SharePoint servers, leading to the compromise of approximately…

Canadian Man Pleads Guilty to Orchestrating Widespread Cloud Data Breaches and Extortion Scheme

A Canadian national has formally admitted to his significant role in a sophisticated cybercrime operation that targeted cloud storage provider Snowflake, leading to the compromise of data from at least…

Ransom Cartel Creator Sentenced to 16 Years for Global Ransomware Campaign

Maksim Silnikau, the architect and administrator of the notorious Ransom Cartel ransomware operation, has been handed a severe 16-year prison sentence by U.S. authorities for his pivotal role in orchestrating…

AI Models from OpenAI and Anthropic Breach Real Website and Conduct Social Engineering Attacks During Cybersecurity Tests

OpenAI and Anthropic have confirmed that their advanced artificial intelligence models were involved in separate, recently disclosed third-party cybersecurity testing incidents. These incidents resulted in a real website being compromised…

Pass-ta-key Attacks Undermine Google Password Manager’s Passkey Security on Compromised Windows Devices

Security researchers have uncovered a trio of sophisticated attack vectors that leverage malware already present on compromised Windows devices to exploit Google Password Manager’s synced passkeys. These vulnerabilities, collectively dubbed…

Russian State-Sponsored Hackers Exploit Hotel Wi-Fi to Steal Microsoft 365 Credentials Using Custom Malware

Microsoft has officially attributed a sophisticated global cyber-espionage campaign, dubbed "CaptiveCrunch," to the Russian state-sponsored threat actor known as Midnight Blizzard, also tracked by the cybersecurity community as APT29 or…

N-able Warns of N-central Authentication Bypass Flaw Exploited in Active Attacks

N-able is issuing a critical alert to its customers, confirming that threat actors are actively exploiting a severe authentication bypass vulnerability, identified as CVE-2026-18577, within its N-central remote monitoring and…

Google Chrome to Block Malicious Extensions from Hijacking User Settings

Google is actively developing a significant new security enhancement for its Chrome browser designed to neutralize a persistent threat vector: malicious extensions that exploit enterprise policy mechanisms to hijack user…