A newly uncovered Web3-focused job scam is leveraging fake application workflows to deliver cross-platform infostealer malware, targeting both macOS and Windows users with tailored...
Since Q1 2026, researchers at XLab have been tracking an aggressively evolving IoT botnet family dubbed “Dysphoria,” whose bot population is estimated at over...
Affected endpoints showed unusual Defender exclusions, new persistence mechanisms, and outbound connections aligned with remote access and credential theft activity, leading analysts to treat...
GitHub Actions abuse is powering a large-scale attack campaign that exploits the cPanel CVE-2026-41940 authentication bypass to steal server credentials and other sensitive secrets...