Nimbus Manticore uses trojanized coding challenges to deploy NodeRabbit and PollCat RATs across Windows, Linux, and macOS.
A broken authorization check in LiteLLM’s administrative API is being actively targeted, allowing attackers with even ...
Many of ONLYOFFICE's core spreadsheet tools worked, but even basic Excel workflows became increasingly frustrating to ...
browser extensions were compromised, with malicious updates stealing crypto wallet secrets, passwords, and sensitive user data.
Chrome and Edge extensions caught delivering cryptocurrency wallet drainers, credential stealers, and session hijacking tools ...
HexMage Magecart attacks 40+ online stores, using blockchain infrastructure to steal shoppers’ card details through malicious ...
OpenClaw has launched its largest-ever update, rebuilding installation, the browser app and storage, while adding shared ...
Alleged Chinese-speaking actor breached Philippine nuclear and naval targets by exploiting known flaws, stealing sensitive data.
Claude Opus 4.6 exploited a simulated gym API flaw in 9 of 10 tests, exposing risks around AI agents, weak authorization, and API security.
Runway Solaris generates interactive app interfaces as live video with no HTML or JavaScript. The first Interface World Model ...
Claude users are being signed out of their accounts to stop a new malware campaign that is draining their AI usage.
Multiple extensions for Google Chrome and Microsoft Edge delivered a malware framework that deployed modules to steal ...