The W3LL phishing kit has been associated with fraud attempts totaling $20m
Security & IT News
LiveReal-time news from 13+ trusted sources — BleepingComputer, The Hacker News, Krebs on Security, Dark Reading & more.
110 results in General
UK, US and Canadian authorities have identified over 20,000 victims of approval phishing scams that trick users into handing over full crypto wallet access
STX RAT, a newly identified remote access trojan, attempted deployment in finance, showing advanced C2 and stealthy delivery methods
SANS Institute reveals that AI agents are behind a 76% surge in non-human identities
Google’s threat intel team warns UNC6783, a new extortion group possibly linked to the “Raccoon” persona, is targeting BPOs and enterprises
Google API key flaw exposes mobile apps to Gemini AI access, private files and billing risks
CISA has revealed Iranian attacks causing disruption and financial loss at US critical infrastructure firms
GPUBreach uses GPU Rowhammer on GDDR6 to flip bits, corrupt page tables and escalate to system root
Cryptocurrency scams alone cost victims over $7 billion, while AI-enabled fraud threats are on the rise, says FBI
A large-scale credential theft campaign targeting senior executives has been linked to a previously unknown automated phishing platform called Venom
E2e-assure says 80% of critical infrastructure providers could face millions in downtime from cyber-attacks
Android requires dev identity verification for sideloaded apps; phased global rollout from September
Venom Stealer malware-as-a-service automates ClickFix social engineering, credential and crypto exfiltration
Most UK manufacturers compromised last year suffered financial loss, says ESET
OpenAI has patched vulnerability, which Check Point said was because of a DNS loophole
The UK Information Commissioner’s Office has handed a £100,000 fine to Birmingham-based TMAC
Push Security has uncovered a new AiTM phishing campaign targeting TikTok for Business accounts using Google and TikTok themed login pages
Socket and Endor Labs discovered a new TeamPCP campaign leading to the delivery of credential-stealing malware
‘Q-Day’ and the cybersecurity problems it brings could come as early as 2029 as Google accelerates its post-quantum cryptography migration
The UK government has sanctioned Xinbi, described as “the second-largest illicit online marketplace ever”