Category: Uncategorized
-

Bearlyfy Hits 70+ Russian Firms with Custom GenieLocker Ransomware [email protected] (The Hacker News)
A pro-Ukrainian group called Bearlyfy has been attributed to more than 70 cyber attacks targeting Russian companies since it first surfaced in the threat landscape in January 2025, with recent attacks leveraging a custom Windows ransomware strain codenamed GenieLocker. “Bearlyfy (also known as Labubu) operates as a dual-purpose group aimed at inflicting maximum damage upon…
-

LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI Frameworks [email protected] (The Hacker News)
Cybersecurity researchers have disclosed three security vulnerabilities impacting LangChain and LangGraph that, if successfully exploited, could expose filesystem data, environment secrets, and conversation history. Both LangChain and LangGraph are open-source frameworks that are used to build applications powered by Large Language Models (LLMs). LangGraph is built on the foundations ofRead More
-
DarkSword iOS Exploit Chain
What is the Attack? Researchers from Google Threat Intelligence Group identified DarkSword, a sophisticated full-chain iOS exploit framework actively used by multiple surveillance vendors and suspected state-sponsored actors. Observed since at least November 2025, the exploit has been deployed in targeted campaigns across Saudi Arabia, Turkey, Malaysia, and Ukraine, enabling silent compromise of iOS devices…
-

China-Linked Red Menshen Uses Stealthy BPFDoor Implants to Spy via Telecom Networks [email protected] (The Hacker News)
A long-term and ongoing campaign attributed to a China-nexus threat actor has embedded itself in telecom networks to conduct espionage against government networks. The strategic positioning activity, which involves implanting and maintaining stealthy access mechanisms within critical environments, has been attributed to Red Menshen, a threat cluster that’s also tracked as Earth Bluecrow,Read More
-

Claude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any Website [email protected] (The Hacker News)
Cybersecurity researchers have disclosed a vulnerability in Anthropic’s Claude Google Chrome Extension that could have been exploited to trigger malicious prompts simply by visiting a web page. The flaw “allowed any website to silently inject prompts into that assistant as if the user wrote them,” Koi Security researcher Oren Yomtov said in a report shared…
-

Masters of Imitation: How Hackers and Art Forgers Perfect the Art of Deception [email protected] (The Hacker News)
Unmasking impostors is something the art world has faced for decades, and there are valuable lessons from the works of Elmyr de Hory that can apply to the world of defensive cybersecurity. During the 1960s, de Hory gained infamy as a premier forger, passing off counterfeit masterworks of Picasso, Matisse, and Renoir to unsuspecting collectors…
-

ThreatsDay Bulletin: PQC Push, AI Vuln Hunting, Pirated Traps, Phishing Kits & 20 More Stories [email protected] (The Hacker News)
Some weeks in security feel loud. This one feels sneaky. Less big dramatic fireworks, more of that slow creeping sense that too many people are getting way too comfortable abusing things they probably shouldn’t even be touching. There’s a little bit of everything in this one, too. Weird delivery tricks, old problems coming back in…
-
![[Webinar] Stop Guessing. Learn to Validate Your Defenses Against Real Attacks info@thehackernews.com (The Hacker News)](https://sekuritasit.com/wp-content/uploads/2026/03/validate-itcWdw.jpg)
[Webinar] Stop Guessing. Learn to Validate Your Defenses Against Real Attacks [email protected] (The Hacker News)
Most teams have security tools in place. Alerts are firing, dashboards look clean, threat intel is flowing in. On the surface, everything feels under control. But one question usually stays unanswered: Would your defenses actually stop a real attack? That’s where things get shaky. A control exists, so it’s assumed to work. A detection rule…
-

Coruna iOS Kit Reuses 2023 Triangulation Exploit Code in New Mass Attacks [email protected] (The Hacker News)
The kernel exploit for two security vulnerabilities used in the recently uncovered Apple iOS exploit kit known as Coruna is an updated version of the same exploit that was used in the Operation Triangulation campaign back in 2023, according to new findings from Kaspersky. “When Coruna was first reported, the public evidence wasn’t sufficient to…
-

WebRTC Skimmer Bypasses CSP to Steal Payment Data from E-Commerce Sites [email protected] (The Hacker News)
Cybersecurity researchers have discovered a new payment skimmer that uses WebRTC data channels as a means to receive payloads and exfiltrate data, effectively bypassing security controls. “Instead of the usual HTTP requests or image beacons, this malware uses WebRTC data channels to load its payload and exfiltrate stolen payment data,” Sansec said in a report…
