Mozilla adds one-click option to disable generated AI features in Firefox

Ravi LakshmananFebruary 3, 2026Artificial intelligence / privacy Mozilla on Monday announced a new control section in the Firefox desktop browser settings that allows users to completely turn off the Generative Artificial Intelligence (GenAI) feature. “This provides a single place to block current and future generative AI features in Firefox,” said Firefox head Ajit Varma. “If […]

Notepad++ hosting breach by China-linked Lotus Blossom hacking group

Ravi LakshmananFebruary 3, 2026Malware / Open Source A recently discovered compromise of the infrastructure hosting Notepad++ is believed with medium confidence to be the work of a China-affiliated actor known as Lotus Blossom. The attack allowed a state-sponsored hacker group to distribute a previously undocumented backdoor codenamed “Chrysalis” to users of the open-source editor, according […]

Researchers discover 341 malicious ClawHub skills that steal data from OpenClaw users

A security audit of ClawHub’s 2,857 skills uncovered 341 malicious skills across multiple campaigns, exposing users to new supply chain risks, according to new findings from Koui Security. ClawHub is a marketplace designed to help OpenClaw users easily find and install third-party skills. It is an extension of the OpenClaw project, a self-hosted artificial intelligence […]

OpenClaw bug allows one-click remote code execution via malicious link

Ravi LakshmananFebruary 2, 2026Vulnerability / Artificial Intelligence A high-severity security flaw has been disclosed in OpenClaw (previously known as Clawdbot and Moltbot) that could allow remote code execution (RCE) via a crafted malicious link. This issue is tracked as CVE-2026-25253 (CVSS score: 8.8) and is resolved in version 2026.1.29, released on January 30, 2026. The […]

Microsoft begins phasing out NTLM with three-phase plan to migrate Windows to Kerberos

Ravi LakshmananFebruary 2, 2026Kerberos / Enterprise Security Microsoft has announced a three-phase approach to phasing out New Technology LAN Manager (NTLM) as part of its efforts to migrate Windows environments to more powerful Kerberos-based options. The development comes more than two years after the tech giant revealed plans to retire its legacy technology due to […]

Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New Threats

Ravie LakshmananFeb 02, 2026Hacking News / Cybersecurity Every week brings new discoveries, attacks, and defenses that shape the state of cybersecurity. Some threats are stopped quickly, while others go unseen until they cause real damage. Sometimes a single update, exploit, or mistake changes how we think about risk and protection. Every incident shows how defenders […]

Protecting the middle market throughout the threat lifecycle

hacker newsFebruary 2, 2026Threat detection/endpoint security For mid-market organizations, cybersecurity is always a balancing act. Proactive and proactive security measures are essential to protect against the growing attack surface. Combined with effective threat-blocking protection, it plays a key role in stopping cyber-attacks before they cause damage. The challenge is that many security tools add complexity […]

Notepad++ official update mechanism is hijacked and malware is distributed to specific users

Ravi LakshmananFebruary 2, 2026Threat Intelligence/Malware Administrators of Notepad++ have revealed that state-sponsored attackers have hijacked the utility’s update mechanism and instead redirected update traffic to a malicious server. “This attack [an] “This resulted in an infrastructure-level compromise that allowed a malicious attacker to intercept and redirect update traffic destined for notepad-plus-plus.org. This compromise occurred at […]

eScan antivirus update server compromised and delivers multi-stage malware

The update infrastructure for eScan antivirus, a security solution developed by Indian cybersecurity company MicroWorld Technologies, was compromised by an unknown attacker and a persistent downloader was distributed to business and consumer systems. “The malicious update was distributed through eScan’s legitimate update infrastructure, resulting in multi-stage malware being deployed to business and consumer endpoints around […]

Open VSX supply chain attack uses compromised development accounts to spread GlassWorm

Ravi LakshmananFebruary 2, 2026Developer tools/malware Cybersecurity researchers have revealed details of a supply chain attack targeting the Open VSX registry. In this attack, an unknown attacker compromised legitimate developer resources and pushed malicious updates to downstream users. “On January 30, 2026, four established Open VSX extensions published by the oorzc author had malicious versions published […]