Microsoft Warns Infostealer Malware Is Spreading to macOS, Using Python and Malvertising to Steal iCloud Keychain Data

75/69 Friday, February 6, 2026 Microsoft Defender security researchers have warned of a growing trend in infostealer malware targeting the macOS operating system. Attackers are leveraging Python to develop cross-platform malware and employing social engineering techniques such as ClickFix, along with malvertising campaigns on Google Ads, to trick users into downloading fake installers. Once installed, […]

sittisak mintaboon

February 6, 2026

CISA Warns VMware ESXi Vulnerability Is Being Exploited in Ransomware Campaigns

74/69 Friday, February 6, 2026 CISA has disclosed that ransomware groups have begun exploiting a VMware ESXi vulnerability related to virtual machine sandbox escape. The flaw, tracked as CVE-2025-22225, was previously used in zero-day attacks and is classified as an arbitrary write vulnerability that could allow attackers with privileges inside the VMX process to write […]

sittisak mintaboon

February 6, 2026

Cyberattack Campaign Targets NGINX Servers, Aiming at Government and Educational Websites Across Asia

73/69 Friday, February 6, 2026 Researchers from DataDog Security Labs have discovered a cyberattack campaign targeting NGINX servers, a widely used web traffic management software. Threat actors modify configuration files to secretly install redirect commands, routing user data through hacker-controlled infrastructure before forwarding it to the legitimate destination. The campaign primarily targets websites using Asian […]

sittisak mintaboon

February 6, 2026