SaaS platforms, CRM and ERP systems, and collaboration tools have made the browser the primary gateway, and often the central workspace, for enterprise operations. As LLM-powered workflows and ...
McKinsey’s latest State of AI report revealed that 62% of organizations have started experimenting with AI agents in some form. However, Gartner expects over 40% of these projects to be scrapped by ...
A new Mini Shai-Hulud wave hit keyv and 800+ npm packages. The malware now scans 469 secret locations, including AI agents, ...
keyv npm supply chain attack on August 4, 2026 let the Shai-Hulud worm compromise 400-plus packages and more than two billion monthly downloads. The Wave Six payload hid inside AI agent config files ...
China-linked Jewelbug uses XG-Web for espionage and crypto fraud, stealing over 580,000 browser cookies and thousands of ...
The Jewelbug hacker group has been carrying out espionage operations targeting governments and militaries while also engaging in cryptocurrency fraud. Although the threat actor has targeted government ...
2026年第二季,電子郵件安全環境面臨顯著的威脅典範轉移。攻擊者正加速從依賴傳統的已知病毒特徵碼,轉向以規避防毒軟體靜態偵測為核心的進階威脅形式(對應 MITRE ATT&CK: Defense Evasion)。數據顯示,本季帶有惡意連結的郵件量較上一季暴增約 8 倍,並於 5 月份達到攻擊高峰。
钓鱼邮件、被劫持的 Wi-Fi 网关与三线围剿——酒店行业正成为网络攻击的高频目标。 · 酒店安全 · 钓鱼攻击 · Wi-Fi 劫持 · 2026-08-13 导语:2025 年底以来,从欧洲到日本再到美国,酒店行业正在成为网络攻击的高频目标。攻击者不再只盯着住客的信用卡,而是同时从三个方向下手——给酒店员工发钓鱼邮件、悄悄接管酒店的 Wi-Fi 网关、甚至对大型赛事周边的酒店发动 DDoS。本 ...
Fake alerts about Adobe and Zoom trick users into installing remote access software that gives attackers control of infected devices ...
Researchers assess the activity as China-nexus with medium confidence, citing victim selection, shared malware tooling, ...
Jewelbug, a China-linked hack-for-hire group, breached 15 government ministries at once by inserting one script into a shared ...
Security researchers have identified a new malware loader, dubbed WordlistLoader, used in ClearFake campaigns to deliver the ...