Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Barracuda Targets i2i-systems in Ransomware Attack
16+ hour, 54+ min ago (277+ words) Check if your email or company was exposed in a breach, in seconds. Talk to our team about partnering with DeXpose. Get an instant exposure summary for your domain. See the DeXpose platform live with an analyst. On September 13, 2026, the…...
How to Know if Your Website is Hacked: 10-Minute Check
19+ hour, 29+ min ago (11+ words) CediRates...
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
1+ day, 2+ hour ago (734+ words) Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam messages and using passkey-themed social engineering to breach cloud environments. Evidence indicates that the operators behind the campaign…...
CyberDefenders Write-up: Oski Category: Threat Intel | Tools: VirusTotal, ANY.RUN
1+ day, 6+ hour ago (28+ words) Scenario The accountant at the company received an email titled “Urgent New Order” from a client late in the …...
One Click Away from Account Compromise: What a Recent Microsoft 365 Phishing Campaign Teaches Us
1+ day, 19+ hour ago (352+ words) Phishing is still one of the simplest ways to target an employee. A message does not always look …...
WordPress Uses AI to Stop Malicious Plugin Updates Before They Reach Millions of Websites
4+ day, 2+ hour ago (592+ words) WordPress has rolled out an automated, AI-driven security review that screens every plugin release before it reaches the WordPress.org update API, adding a critical checkpoint to a distribution pipeline that had previously lacked one. The move follows a real-world…...
Multi-Hop Phishing Through Legitimate Google Services
4+ day, 3+ hour ago (1457+ words) 1. Basic Information Article Title: Attackers Use Multi-Hop Google Redirects for Phishing Publisher: Dark Reading Publication Date: 2026-09-08 Original Source: Dark Reading Related Sources: KnowBe4: Bypassing the Gatekeepers Related Malware, Groups, CVEs, and Products: Google Meet, Google DoubleClick, Google Custom Search, Google Image…...
Browser-Based ClickFix: Google Sheets C2 and Tampermonkey Manipulate Cryptocurrency Transactions
4+ day, 3+ hour ago (1431+ words) 1. Basic Information Article Title: ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2 Publisher: Cisco Talos Publication Date: 2026-09-08 Original Source: Cisco Talos Related Sources: Dark Reading: ClickFix Campaigns Abuse Legitimate Services Related Malware, Groups, CVEs, and Products: Browser web skimmer,…...
Hackers Use ClickFix Lures to Deploy MacSync Stealer and Bypass macOS Security.
4+ day, 9+ hour ago (593+ words) The campaigns do not require a macOS vulnerability; instead, they abuse user trust by persuading victims to paste attacker-controlled commands into Terminal, sidestepping traditional file-centric protections. However, Russian-language artifacts observed in some samples do not establish attribution to a particular…...
Hackers Abuse Google Links to Hide Credential Theft
4+ day, 16+ hour ago (532+ words) KnowBe4 found hackers abusing trusted Google services to hide phishing pages that steal Microsoft credentials and enable persistent ScreenConnect remote access. A familiar Google address in a suspicious email may be exactly what attackers want you to trust. KnowBe4 Threat Lab uncovered…...