Multi-stage VOID#GEIST malware that delivers XWorm, AsyncRAT, and Xeno RAT

Cybersecurity researchers have detailed a multi-stage malware campaign that uses batch scripts as a conduit to deliver various encrypted remote access Trojan (RAT) payloads for XWorm, AsyncRAT, and Xeno RAT. This stealth attack chain has been codenamed VOID#GEIST by Securonix Threat Research. At a high level, the obfuscated batch script is used to deploy a […]

TriZetto confirms health and personal data of 3.4 million people was stolen during breach

Health tech giant TriZetto admitted that the personal and health information of more than 3.4 million people was stolen in a 2024 cyberattack, but the company went undetected for almost a year. The technology company, owned by multinational conglomerate Cognizant, serves 875,000 health care providers and approximately 200 million people across the United States, according […]

MSP guide to scaling cybersecurity with AI-powered risk management

hacker newsMarch 6, 2026Artificial Intelligence/Enterprise Security Scaling cybersecurity services as an MSP or MSSP requires technical expertise and a business model that delivers measurable value at scale. Risk-based cybersecurity is the foundation of that model. Done right, it builds customer trust, increases upsell opportunities, and drives recurring revenue. But delivering this consistently and efficiently requires […]

Iran-linked Muddy Water hackers target US networks with new Dindoor backdoor

A new investigation by Broadcom’s Symantec and Carbon Black Threat Hunters team has uncovered evidence of an Iranian hacker group infiltrating the networks of multiple U.S. companies, including banks, airports, nonprofit organizations and the Israeli arm of a software company. This activity is believed to be the work of a state-sponsored hacking group called MuddyWater […]

China-linked hackers use TernDoor, PeerTime, and BruteEntry in communications attacks in South America

Ravi LakshmananMarch 6, 2026Cyber ​​espionage/threat intelligence China-linked advanced persistent threat (APT) attackers have been targeting critical communications infrastructure in South America since 2024, targeting Windows and Linux systems and edge devices with three different implants. This activity is being tracked by Cisco Talos as UAT-9244 and is described as being closely related to another cluster […]

Microsoft reveals ClickFix campaign to deploy Lumma Stealer using Windows Terminal

Ravi LakshmananMarch 6, 2026Endpoint security/browser security Microsoft on Thursday revealed details of a wide-ranging new ClickFix social engineering campaign that leveraged the Windows Terminal app as a way to activate a sophisticated attack chain and deploy the Lumma Stealer malware. This activity, identified in February 2026, allows users to install Windows[ファイル名を指定して実行]Instead of launching a dialog […]

Hikvision and Rockwell Automation CVSS 9.8 defects added to CISA KEV catalog

Ravi LakshmananMarch 6, 2026Vulnerability/Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws affecting Hikvision and Rockwell Automation products to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The critical severity vulnerabilities are: CVE-2017-7921 (CVSS Score: 9.8) – Improper authentication vulnerability affecting multiple Hikvision products could […]

Antropic challenges Department of Defense supply chain label in court

Dario Amodei said Thursday that Anthropic plans to challenge in court the Pentagon’s decision to designate AI companies as supply chain risks, a designation he called “legally unsound.” The statement came hours after the Pentagon formally designated Anthropic as a supply chain risk after weeks of controversy over how much control the military should have […]