Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Microsoft tells IT admins to replace slmgr.vbs with PowerShell now – 4sysops
3+ day, 7+ hour ago (23+ words) Microsoft is warning IT administrators not to wait for VBScript removal to disrupt Windows activation automation. Organizations that still rely on `slmgr.vbs` s...
Hackers Use Fake Claude and ChatGPT Installers to Infect Mac Users With Password-Stealing Malware
3+ day, 17+ hour ago (629+ words) Mac users seeking AI tools face a malware trap. Attackers are using fake Claude and ChatGPT installers and sponsored search results to push MacSync, a macOS password stealer. The campaign relies on persuasion instead of a software flaw. A visitor…...
Bithumb warns of malware disguised as fake AI auto-trading tools, launches September cybersecurity campaign
4+ day, 3+ hour ago (445+ words) Bithumb is moving to prevent damage from malware disguised as artificial intelligence (AI) auto-trading programs or investment analysis tools. Bithumb said on Wednesday it will run a malware damage prevention campaign using "fake AI auto-trading programs and investment analysis tools…...
F5 BIG-IP malware hides web shells in memory to evade detection
4+ day, 7+ hour ago (78+ words) scworld.com F5 BIG-IP malware hides web shells in memory to evade detection An In-Depth Guide to Network Security MikroTik routers targeted by active SSH zero-day exploitation Cisco addresses critical vulnerabilities in Nexus 9000 switches and IOS XR HPE patches ArubaOS-CX switches…...
Hackers Use Fake LinkedIn Job Offers to Infect Developers With New Cross-Platform RATs
4+ day, 13+ hour ago (637+ words) Software developers are being targeted with fake job offers that turn routine coding tests into a path for remote access malware. The campaign uses recruiter personas on LinkedIn and other employment platforms to deliver projects that appear safe enough to…...
Automated Reinfection and Worm-Like Lateral Movement via Modified ScreenConnect Clients
5+ day, 3+ hour ago (410+ words) Modified ScreenConnect clients deploy malicious scripts and can spread the infection to operator endpoints that connect to an infected device. In ScreenConnect terminology, the Guest is the endpoint receiving remote support, and the Host is the operator side of the…...
Active crypto address "copy and paste attack" threatens users even after major malware cleanup cut off hackers
5+ day, 16+ hour ago (434+ words) CrowdStrike says the Aug. 31 disruption blocked new payload delivery while installed malware can still swap cryptocurrency payment addresses. The Aug. 31 disruption of the Sality botnet cut off its operator's ability to deliver new malicious software to infected computers, while malware…...
ClearFake WebDAV infection chain delivers Amatera stealer, ZigCryptoStealer, and NetSupport Manager
5+ day, 12+ hour ago (1507+ words) Following the initial investigation, we decided to hunt for similar WebDAV and ordinal-execution patterns in an attempt to recover the full infection chain. Using VirusTotal, we were able to identify a full chain from a second DLL loader named "pf....
New method detects obfuscated malicious JavaScript through data-dependent
5+ day, 15+ hour ago (11+ words) statement pairs Bioengineer.org...
Tracking BigBear 2.0 Evilginx2 Phishing Campaign
6+ day, 10+ hour ago (1054+ words) The panel's own metrics confirm this effectiveness: 80% of password entries resulted in session cookie capture, and the password-to-complete conversion rate exceeded 100%, indicating the AiTM relay captured session tokens even without explicit password entry in some cases. 2.3 Geo-Matched Proxy Pool for…...