The cybercriminal group known as Golden Chickens, also referred to as Venom Spider, has introduced four new malware families, signaling a significant evolution in their […]
Archives
Hacker Deploys Hermes AI Agent for Unattended Post-Exploitation at Thai Finance Ministry
In a recent cybersecurity incident, an unidentified individual deployed the open-source AI assistant Hermes on a rented server, disabling its safety prompts to autonomously infiltrate […]
New HTTP/2 Flaw Allows Attackers to Crash Servers via Memory Exhaustion
A recently disclosed vulnerability in the HTTP/2 protocol has raised significant concerns within the cybersecurity community. This flaw enables unauthenticated attackers to crash vulnerable servers […]
Compromised Hotel Wi-Fi Puts Guests’ Data at Risk
Recent findings have revealed a significant cybersecurity threat targeting hotel Wi-Fi networks, where attackers compromise a single gateway to redirect all guest traffic to malicious […]
Hackers Conceal 750MB Lampion RAT in Fake Payment Emails
Cybercriminals are deploying a sophisticated phishing campaign targeting Portuguese users by embedding the Lampion Remote Access Trojan (RAT) within seemingly legitimate payment receipt emails. This […]
Google Releases Emergency Chrome Update to Patch Critical Vulnerabilities
Google has issued an emergency update for its Chrome browser, addressing seven security vulnerabilities, including three critical flaws. This update is part of Google’s ongoing […]
Infostealer Logs: The Catalyst Behind Massive Cloud Data Breaches
Infostealer malware has emerged as a pivotal tool in the cybercriminal arsenal, supplanting traditional phishing and exploit-based methods as the primary means of gaining unauthorized […]
NodeBB Patches Critical Flaws Uncovered by AI
NodeBB, a popular open-source forum software, has addressed eight significant security vulnerabilities identified by Aikido Security’s AI-driven penetration testing agents. These flaws, present in all […]
Claude Cowork Sandbox Flaw Exposes Sensitive Host Data
A significant security vulnerability has been identified in Claude Cowork’s local sandbox environment, enabling a malicious AI agent to escape its Linux virtual machine (VM) […]
Microsoft Reports Surge in Phishing and Vishing Attacks
In the second quarter of 2026, Microsoft identified a significant escalation in phishing and vishing attacks targeting business accounts. Between April and June, the company […]