Microsoft Defender automatically isolated a compromised QNET endpoint in 129 seconds, stopping a multi-stage attack before the payload could persist or spread.
Fake The Odyssey downloads are already spreading Lumma Stealer malware, putting passwords, browser sessions and crypto ...
A researcher demonstrated a proof-of-concept attack chain that provided C2-style influence over ChatGPT's isolated sandbox at Black Hat USA 2026.
Fake alerts about Adobe and Zoom trick users into installing remote access software that gives attackers control of infected devices ...
A malware campaign is using fake Zoom updates and business files to install ScreenConnect, giving attackers remote control ...
SMOKE#SCREEN uses fake Adobe and Zoom updates, document lures, and trusted cloud services to install ScreenConnect for persistent remote access.
Agentic AI armed attackers first, but it also put real building power in defenders’ hands. Here’s what security practitioners built in two days at Black Hat USA 2026, and how the CyberAgents Exchange ...
Hotel Wi-Fi malware campaign CaptiveCrunch, attributed to Russia’s SVR-linked Midnight Blizzard, compromised hotel captive ...
The Coldcard hack is a preview. When machines can read what humans couldn't (or just didn't), closed source stops being a ...
When trying to copy files into your VMware Workstation or Player VM, you may encounter Cannot write to local file. Canceling the file copy operation. What is happening in this case is that VMware ...
The attacks use diverse social engineering lures and rotating payloads to deliver ScreenConnect for persistent remote access to compromised networks.
Note: This list was updated at 8 a.m. ET on Aug. 3 and will not be updated again for 2026. Players ranked by total trade ...