Category Archives: Threat Alerts
Void Dokkaebi Supply Chain Worm Targets Developers via Fake Interviews
Security researchers have uncovered a Void Dokkaebi supply chain worm that spreads through malicious VS Code tasks and fraudulent job recruitment interviews targeting software developers. Continue reading
Pig Butchering Scams: AI-Augmented Digital Extortion Surges in 2026
A recent House hearing reveals how pig butchering scams are being hyper-personalized through generative AI, leading to billions in losses via automated social engineering and crypto fraud. Continue reading
Device Code Phishing: AI-Augmented Attacks Target Microsoft 365
A sophisticated device code phishing campaign is leveraging generative AI to exploit Microsoft 365 OAuth 2.0 flows and bypass multi-factor authentication. Continue reading
Axios Supply Chain Compromise: CISA Issues Emergency Alert
CISA has issued an emergency alert regarding the Axios supply chain compromise, where malicious code in the popular NPM package delivers a Remote Access Trojan to developer environments and CI/CD pipelines. Continue reading
Microsoft Defender Zero-Day: BlueHammer (CVE-2026-33825) Under Active Exploitation
A critical Microsoft Defender Zero-Day, known as BlueHammer, is being actively exploited via a TOCTOU race condition to grant attackers SYSTEM-level privileges. Continue reading
WhatsApp Social Engineering Campaign Distributes VBS Malware
A sophisticated WhatsApp social engineering campaign is currently deploying VBS malware through trusted cloud platforms to gain persistent remote access to Windows systems. Continue reading
The Gentlemen Ransomware: Global Botnet of 1,570 Victims Discovered
A major investigative report has uncovered a global botnet linked to The Gentlemen Ransomware, revealing over 1,570 victims compromised by the group’s advanced SystemBC proxy malware. Continue reading
ByteToBreach Ransomware Campaign: Nigerian Institutions Under Threat
A sophisticated ByteToBreach ransomware campaign is currently targeting Nigerian government agencies and tier-1 banks, demanding heavy ransoms for stolen citizen data. Continue reading
DarkSword iPhone Exploit: Millions of Devices at Risk from Fileless Zero-Day
Security researchers have identified the DarkSword iPhone exploit, a sophisticated fileless zero-day targeting millions of users globally through watering hole attacks on compromised websites. Continue reading