Operation “HookedWing” Phishing Campaign Targets 500 Organizations Worldwide Over Four Years

258/69 Tuesday, May 12, 2026 SOCRadar has disclosed details of a long-running phishing campaign known as “Operation HookedWing,” which has reportedly operated continuously for more than four years and impacted over 500 organizations worldwide. The campaign is believed to have stolen more than 2,000 sets of user credentials from victims across critical sectors including aviation, […]

sittisak mintaboon

May 12, 2026

Germany Shuts Down Crimenetwork Cybercrime Marketplace Again After Platform Relaunch

257/69 Tuesday, May 12, 2026 German law enforcement authorities have successfully dismantled the relaunched version of the cybercrime marketplace known as “Crimenetwork,” only a few months after the original platform had previously been taken offline. The marketplace reportedly had more than 22,000 registered users and over 100 active vendors, highlighting how underground cybercrime platforms can […]

sittisak mintaboon

May 12, 2026

Hackers Abuse Google Ads and Claude.ai Chat Feature to Trick macOS Users into Installing Infostealer Malware

256/69 Tuesday, May 12, 2026 Reports have emerged of a malicious advertising campaign targeting macOS users searching for the Anthropic Claude application to install on their computers. Attackers reportedly purchased advertising space through Google Ads and linked victims to shared chat pages hosted on the official Claude.ai domain, making the pages appear legitimate and trustworthy. […]

sittisak mintaboon

May 12, 2026

JDownloader Confirms Supply Chain Incident, Users at Risk of Malware Infection via Modified Download Links

255/69 Monday, May 11, 2026 Security researchers have identified a supply chain attack targeting the official website of JDownloader, where attackers were able to modify download links on the website to redirect users to malicious files instead of legitimate installers. The incident occurred between May 6–7, 2026, and affected users who downloaded and executed files […]

sittisak mintaboon

May 11, 2026

RansomHouse Claims Breach of Trellix, Publishes Alleged Internal System Screenshots on Leak Site

254/69 Monday, May 11, 2026 The cybercriminal group RansomHouse has claimed responsibility for a cyberattack targeting Trellix, listing the company on its Tor-based leak site and publishing screenshots allegedly showing access to the organization’s internal systems as proof of compromise. Earlier in May, Trellix disclosed that it had detected unauthorized access affecting part of its […]

sittisak mintaboon

May 11, 2026

Warning: TCLBANKER Malware Targets Financial Platforms and Spreads via WhatsApp and Outlook

253/69 Monday, May 11, 2026 Researchers from Elastic Security Labs have identified a new malware strain known as TCLBANKER (tracked as REF3076), a Brazilian banking trojan targeting more than 59 financial platforms, fintech services, and cryptocurrency-related systems. The malware is particularly concerning because it evolved from the Maverick malware family and now includes worm-like self-propagation […]

sittisak mintaboon

May 11, 2026

Hackers Abuse Google Ads to Impersonate GoDaddy ManageWP Login Pages and Steal User Accounts

252/69 Friday, May 8, 2026 Researchers from Guardio Labs have uncovered a phishing campaign that abuses Google Ads to impersonate the login page of GoDaddy ManageWP, a platform used to manage multiple WordPress websites from a single dashboard. The malicious advertisements appeared above legitimate search results when users searched for the keyword “managewp,” leading victims […]

sittisak mintaboon

May 8, 2026

Taiwanese Student Disrupts High-Speed Rail System, Exposing Security Weaknesses in Critical Infrastructure

251/69 Friday, May 8, 2026 Taiwan’s high-speed rail system experienced a temporary service disruption after four trains received emergency alarm signals and were forced into emergency stop mode, causing operations to halt for nearly one hour and affecting a large number of passengers. Subsequent investigations revealed that the incident was caused by a 23-year-old university […]

sittisak mintaboon

May 8, 2026

New xlabs_v1 Botnet Targets IoT Devices via Exposed ADB Services, Offers DDoS-for-Hire Attacks Against Servers

250/69 Friday, May 8, 2026 Cybersecurity researchers from Hunt.io have disclosed the discovery of a new Mirai-based botnet named “xlabs_v1,” which specifically targets devices exposing Android Debug Bridge (ADB) services over TCP port 5555. The botnet primarily focuses on Android TV boxes, smart TVs, set-top boxes, home routers, and various IoT devices supporting ARM, MIPS, […]

sittisak mintaboon

May 8, 2026

Critical Vulnerability in Ollama May Expose Over 300,000 Publicly Accessible Instances

249/69 Thursday, May 7, 2026 Security researchers from Cyera have warned about a critical vulnerability in Ollama tracked as CVE-2026-7482, also referred to as “Bleeding Llama,” which could place more than 300,000 internet-exposed Ollama instances at risk of sensitive data theft. The vulnerability is a heap out-of-bounds read issue within the GGUF model loader and […]

sittisak mintaboon

May 7, 2026
1 2 19