Multi-stage VOID#GEIST malware that delivers XWorm, AsyncRAT, and Xeno RAT

Cybersecurity researchers have detailed a multi-stage malware campaign that uses batch scripts as a conduit to deliver various encrypted remote access Trojan (RAT) payloads for XWorm, AsyncRAT, and Xeno RAT. This stealth attack chain has been codenamed VOID#GEIST by Securonix Threat Research. At a high level, the obfuscated batch script is used to deploy a […]
TriZetto confirms health and personal data of 3.4 million people was stolen during breach

Health tech giant TriZetto admitted that the personal and health information of more than 3.4 million people was stolen in a 2024 cyberattack, but the company went undetected for almost a year. The technology company, owned by multinational conglomerate Cognizant, serves 875,000 health care providers and approximately 200 million people across the United States, according […]
City Detect, which uses AI to help keep cities safe and clean, raises $13M in Series A

City Detect, a company that uses vision AI to help local governments monitor the health of buildings and neighborhoods, announced Friday a $13 million Series A round led by Prudence Venture Capital. The startup was founded in 2021, with remaining co-founder Gavin Baum Blake serving as CEO. He said the company was founded in part […]
The first general production of sodium-ion battery cars has the potential to revolutionize EVs forever

A Chinese automaker has unveiled the world’s first sodium-ion (Na-ion) electric vehicle (EV), opening the door to safer battery technology and improved cold-weather performance. The Changan Nevo A06 is jointly produced by Changan Automobile and Hyundai Amperex Technology Co., Ltd. (CATL), the world’s largest battery manufacturer. The car, also known as Qiyuan A06 in the […]
MSP guide to scaling cybersecurity with AI-powered risk management

hacker newsMarch 6, 2026Artificial Intelligence/Enterprise Security Scaling cybersecurity services as an MSP or MSSP requires technical expertise and a business model that delivers measurable value at scale. Risk-based cybersecurity is the foundation of that model. Done right, it builds customer trust, increases upsell opportunities, and drives recurring revenue. But delivering this consistently and efficiently requires […]
Iran-linked Muddy Water hackers target US networks with new Dindoor backdoor

A new investigation by Broadcom’s Symantec and Carbon Black Threat Hunters team has uncovered evidence of an Iranian hacker group infiltrating the networks of multiple U.S. companies, including banks, airports, nonprofit organizations and the Israeli arm of a software company. This activity is believed to be the work of a state-sponsored hacking group called MuddyWater […]
China-linked hackers use TernDoor, PeerTime, and BruteEntry in communications attacks in South America

Ravi LakshmananMarch 6, 2026Cyber espionage/threat intelligence China-linked advanced persistent threat (APT) attackers have been targeting critical communications infrastructure in South America since 2024, targeting Windows and Linux systems and edge devices with three different implants. This activity is being tracked by Cisco Talos as UAT-9244 and is described as being closely related to another cluster […]
Microsoft reveals ClickFix campaign to deploy Lumma Stealer using Windows Terminal

Ravi LakshmananMarch 6, 2026Endpoint security/browser security Microsoft on Thursday revealed details of a wide-ranging new ClickFix social engineering campaign that leveraged the Windows Terminal app as a way to activate a sophisticated attack chain and deploy the Lumma Stealer malware. This activity, identified in February 2026, allows users to install Windows[ファイル名を指定して実行]Instead of launching a dialog […]
Hikvision and Rockwell Automation CVSS 9.8 defects added to CISA KEV catalog

Ravi LakshmananMarch 6, 2026Vulnerability/Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws affecting Hikvision and Rockwell Automation products to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The critical severity vulnerabilities are: CVE-2017-7921 (CVSS Score: 9.8) – Improper authentication vulnerability affecting multiple Hikvision products could […]
Antropic challenges Department of Defense supply chain label in court

Dario Amodei said Thursday that Anthropic plans to challenge in court the Pentagon’s decision to designate AI companies as supply chain risks, a designation he called “legally unsound.” The statement came hours after the Pentagon formally designated Anthropic as a supply chain risk after weeks of controversy over how much control the military should have […]