Category Archives: Threat Alerts

Stay one step ahead of cybercriminals. Early warnings and detailed analysis of new social engineering scams, complex phishing campaigns, zero-day malware, and digital extortion methods.

Void Dokkaebi Supply Chain Worm Targets Developers via Fake Interviews

Security researchers have uncovered a Void Dokkaebi supply chain worm that spreads through malicious VS Code tasks and fraudulent job recruitment interviews targeting software developers. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

Pig Butchering Scams: AI-Augmented Digital Extortion Surges in 2026

A recent House hearing reveals how pig butchering scams are being hyper-personalized through generative AI, leading to billions in losses via automated social engineering and crypto fraud. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

Device Code Phishing: AI-Augmented Attacks Target Microsoft 365

A sophisticated device code phishing campaign is leveraging generative AI to exploit Microsoft 365 OAuth 2.0 flows and bypass multi-factor authentication. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

Axios Supply Chain Compromise: CISA Issues Emergency Alert

CISA has issued an emergency alert regarding the Axios supply chain compromise, where malicious code in the popular NPM package delivers a Remote Access Trojan to developer environments and CI/CD pipelines. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

Microsoft Defender Zero-Day: BlueHammer (CVE-2026-33825) Under Active Exploitation

A critical Microsoft Defender Zero-Day, known as BlueHammer, is being actively exploited via a TOCTOU race condition to grant attackers SYSTEM-level privileges. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

WhatsApp Social Engineering Campaign Distributes VBS Malware

A sophisticated WhatsApp social engineering campaign is currently deploying VBS malware through trusted cloud platforms to gain persistent remote access to Windows systems. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

The Gentlemen Ransomware: Global Botnet of 1,570 Victims Discovered

A major investigative report has uncovered a global botnet linked to The Gentlemen Ransomware, revealing over 1,570 victims compromised by the group’s advanced SystemBC proxy malware. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

ByteToBreach Ransomware Campaign: Nigerian Institutions Under Threat

A sophisticated ByteToBreach ransomware campaign is currently targeting Nigerian government agencies and tier-1 banks, demanding heavy ransoms for stolen citizen data. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment

DarkSword iPhone Exploit: Millions of Devices at Risk from Fileless Zero-Day

Security researchers have identified the DarkSword iPhone exploit, a sophisticated fileless zero-day targeting millions of users globally through watering hole attacks on compromised websites. Continue reading

Posted in Security & Privacy, Threat Alerts | Tagged , , , | Leave a comment