Two Google Chrome extensions turn malicious after ownership transfer
The extensions were modified to disable browser protections, inject malicious code, and steal data.
The extensions were modified to disable browser protections, inject malicious code, and steal data.
The CL-UNK-1068 group uses custom malware, modified open-source utilities, and legitimate system tools to maintain long-term access.
The campaign, observed in February 2026, directs users to launch Windows Terminal using the Windows + X → I shortcut.
The malware uses the Deno runtime environment to execute malicious commands on compromised systems.
In brief: Cisco warns of two actively exploited flaws in Catalyst SD-WAN Manager, researchers details a new iOS exploit kit called ‘Coruna,’ and more.
Authorities seized and took offline 330 domains used by Tycoon2FA.
In addition to Cobalt Strike, Silver Dragon deploys a suite of custom post-exploitation tools, including SilverScreen, SSHcmd, and the GearDoor backdoor.
The toolkit contains 23 exploits grouped into five exploit chains and can target iPhones running iOS 13.0 through iOS 17.2.1.
The email abuses the widely used Ukrainian email provider ukr[.]net to make it more believable.
The deal was allegedly arranged through people connected to Stephen Su Bin, a Chinese national previously convicted of hacking US defense companies.
Showing elements 201 - 210