Microsoft reveals ClickFix campaign to deploy Lumma Stealer using Windows Terminal

Ravi LakshmananMarch 6, 2026Endpoint security/browser security Microsoft on Thursday revealed details of a wide-ranging new ClickFix social engineering campaign that leveraged the Windows Terminal app as a way to activate a sophisticated attack chain and deploy the Lumma Stealer malware. This activity, identified in February 2026, allows users to install Windows[ファイル名を指定して実行]Instead of launching a dialog […]

Hikvision and Rockwell Automation CVSS 9.8 defects added to CISA KEV catalog

Ravi LakshmananMarch 6, 2026Vulnerability/Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws affecting Hikvision and Rockwell Automation products to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The critical severity vulnerabilities are: CVE-2017-7921 (CVSS Score: 9.8) – Improper authentication vulnerability affecting multiple Hikvision products could […]

Post-Quantum Cryptography Webinar for Security Leaders

hacker newsMarch 5, 2026Encryption/data protection Most organizations assume that encrypted data is secure. However, many attackers are already preparing for a future where today’s encryption can be broken. Rather than trying to decrypt the information now, we collect and store the encrypted data so that it can be decrypted later using a quantum computer. This […]

Cisco confirms active exploitation of two vulnerabilities in Catalyst SD-WAN Manager

Ravi LakshmananMarch 5, 2026Vulnerabilities / Enterprise Security Cisco has revealed that two more vulnerabilities affecting Catalyst SD-WAN Manager (formerly known as SD-WAN vManage) are being exploited in the wild. The vulnerabilities in question are as follows. CVE-2026-20122 (CVSS Score: 7.1) – Arbitrary file overwrite vulnerability could allow an authenticated, remote attacker to overwrite arbitrary files […]

DDR5 Bot Scalping, Samsung TV Tracking, Reddit Privacy Fine & More

Ravie LakshmananMar 05, 2026Cybersecurity / Hacking News Some weeks in cybersecurity feel routine. This one doesn’t. Several new developments surfaced over the past few days, showing how quickly the threat landscape keeps shifting. Researchers uncovered fresh activity, security teams shared new findings, and a few unexpected moves from major tech companies also drew attention. Together, […]

Dust Specter targets Iraqi officials with new SPLITDROP and GHOSTFORM malware

Ravi LakshmananMarch 5, 2026Malware/Threat Intelligence A suspected Iranian-linked actor is believed to have been involved in a campaign targeting Iraqi government officials by impersonating the Iraqi Ministry of Foreign Affairs and delivering a series of never-before-seen malware. Zscaler ThreatLabz, which observed this activity in January 2026, is tracking this cluster under the name Dust Specter. […]

Where multi-factor authentication stops and credential abuse begins

Organizations typically deploy multi-factor authentication (MFA) and assume that a stolen password is not sufficient to gain access to a system. In Windows environments, that assumption is often incorrect. Attackers still use valid credentials to breach networks every day. The problem isn’t MFA itself, it’s coverage. MFA enforced through an identity provider (IdP) such as […]

APT28-related campaign deploys BadPaw Loader and MeowMeow backdoor in Ukraine

Ravi LakshmananMarch 5, 2026Cyber ​​espionage/threat intelligence Cybersecurity researchers have revealed details of a new Russian cyber campaign targeting organizations in Ukraine using two previously undocumented malware families, BadPaw and MeowMeow. “The attack chain begins with a phishing email containing a link to a ZIP archive. Once extracted, the first HTA file displays a decoy document […]

Europol-led operation destroys Tycoon 2FA Phishing-as-a-Service, linked to 64,000 attacks

Tycoon 2FA, one of the prominent phishing-as-a-service (PhaaS) toolkits that enabled cybercriminals to conduct large-scale man-in-the-middle (AitM) credential harvesting attacks, was dismantled by a coalition of law enforcement agencies and security companies. First launched in August 2023, this subscription-based phishing kit was described by Europol as one of the world’s largest phishing operations. The kit […]

FBI and Europol seize LeakBase forum used to trade stolen credentials

Ravi LakshmananMarch 5, 2026Malware/Dark Web A joint law enforcement operation dismantled LeakBase, one of the world’s largest online forums where cybercriminals buy and sell stolen data and cybercrime tools. According to the U.S. Department of Justice (DoJ), the LeakBase forum had over 142,000 members as of December 2025, with over 215,000 messages between members. Anyone […]