Infostealer steals OpenClaw AI agent configuration files and gateway tokens

Ravi LakshmananFebruary 16, 2026Artificial Intelligence/Threat Intelligence Cybersecurity researchers have revealed that they have detected instances of successful infiltration of information-stealing infections from victims’ OpenClaw (formerly known as Clawdbot and Moltbot) configuration environments. “This discovery marks an important milestone in the evolution of information thieves’ behavior, from stealing browser credentials to harvesting the ‘soul’ and identity […]

Investigation reveals 25 password recovery attacks on leading cloud password managers

Ravi LakshmananFebruary 16, 2026Vulnerabilities/Encryption New research has found that multiple cloud-based password managers, including Bitwarden, Dashlane, and LastPass, are susceptible to password recovery attacks under certain conditions. Researchers Matteo Scarlata, Giovanni Torrisi, Matilda Backendal, and Kenneth G. Paterson said, “The severity of attacks ranges from integrity violations to complete compromise of all vaults within an […]

Outlook Add-Ins Hijack, 0-Day Patches, Wormable Botnet & AI Malware

Ravie LakshmananFeb 16, 2026 This week’s recap shows how small gaps are turning into big entry points. Not always through new exploits, often through tools, add-ons, cloud setups, or workflows that people already trust and rarely question. Another signal: attackers are mixing old and new methods. Legacy botnet tactics, modern cloud abuse, AI assistance, and […]

How Lithuania is preparing for AI-powered cyber fraud

Presentation of the KTU Consortium’s mission ‘A secure and inclusive digital society’ at the Innovation Agency’s event ‘Innovation Breakfast: How mission-driven science and innovation programs address societal challenges’. Technology is rapidly evolving and reshaping economies, governance, and daily life. But as innovation accelerates, so too does digital risk. Technological change is no longer an abstraction, […]

New ZeroDayRAT mobile spyware enables real-time surveillance and data theft

Cybersecurity researchers have revealed details of a new mobile spyware platform called ZeroDayRAT that is being promoted on Telegram as a way to obtain sensitive data and facilitate real-time surveillance on Android and iOS devices. “Developers operate dedicated channels for sales, customer support, and regular updates, giving buyers a single point of access to a […]

New Chrome Zero-Day (CVE-2026-2441) is under active attack — patch released

Ravi LakshmananFebruary 16, 2026Zero-day/Browser Security Google on Friday released security updates for its Chrome browser to address security flaws it says are being exploited in the wild. This high-severity vulnerability is tracked as CVE-2026-2441 (CVSS score: 8.8) and is described as a use-after-free bug in CSS. Security researcher Shaheen Fazim is credited with discovering and […]

Microsoft exposes DNS-based ClickFix attack using Nslookup to stage malware

Microsoft has revealed details of a new version of its ClickFix social engineering tactic in which attackers trick unsuspecting users into running a command that performs a Domain Name System (DNS) lookup to retrieve the next stage payload. Specifically, this attack uses the “nslookup” (short for nameserver lookup) command to[ファイル名を指定して実行]It relies on performing custom DNS […]

Google collaborates with Russian actor suspect in failed malware attack on Ukrainian organization

Ravi LakshmananFebruary 13, 2026Threat Intelligence/Malware A previously undocumented attacker is believed to have targeted organizations in Ukraine using malware known as CANFAIL. The Google Threat Intelligence Group (GTIG) said the hacking group may have ties to Russian intelligence services. The attacker is assessed to be targeting defense, military, government, and energy organizations within local and […]

Google connects China, Iran, Russia, and North Korea to coordinate defense sector cyber operations

Ravi LakshmananFebruary 13, 2026Malware/Critical Infrastructure Research from the Google Threat Intelligence Group (GTIG) reveals that several state-sponsored, hacktivist, and criminal groups from China, Iran, North Korea, and Russia have set their sights on the Defense Industrial Base (DIB) sector. The tech giant’s threat intelligence division said hostile targets in this area are concentrated around four […]

UAT-9921 Deploys VoidLink malware targeting technology and financial sectors

Ravi LakshmananFebruary 13, 2026Cloud security/cyber espionage According to Cisco Talos findings, an unknown threat actor previously tracked as UAT-9921 was observed leveraging a new modular framework called VoidLink in campaigns targeting the technology and financial services sectors. “This threat actor appears to have been active since 2019, but has not necessarily been using VoidLink during […]