Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Cyber Security News
cybersecuritynews.com > fake-claude-and-chatgpt-installers

Hackers Use Fake Claude and ChatGPT Installers to Infect Mac Users With Password-Stealing Malware

3+ day, 13+ min ago   (629+ words) Mac users seeking AI tools face a malware trap. Attackers are using fake Claude and ChatGPT installers and sponsored search results to push MacSync, a macOS password stealer. The campaign relies on persuasion instead of a software flaw. A visitor…...

gbhackers.com
gbhackers.com > clickfix-lures-target-macos

Hackers Use ClickFix Lures to Deploy MacSync Stealer and Bypass macOS Security.

3+ day, 2+ hour ago   (593+ words) The campaigns do not require a macOS vulnerability; instead, they abuse user trust by persuading victims to paste attacker-controlled commands into Terminal, sidestepping traditional file-centric protections. However, Russian-language artifacts observed in some samples do not establish attribution to a particular…...

Basic Tutorials
basic-tutorials.com

Claude Hacked? Info-stealing malware steals tokens from subscribers

4+ day, 7+ hour ago   (565+ words) Basic Tutorials What happened in the Claude attacks? The debate was sparked by the case of Grant De Swardt, an independent AI consultant from East Sussex in the UK, as reported by TechCrunch. De Swardt uses Claude agents professionally to…...

eSecurity Planet
esecurityplanet.com > news > news-weedhack-fake-minecraft-malware

WeedHack Malware Persists as Fake Minecraft Sites Survive C2 Disruption

4+ day, 23+ hour ago   (404+ words) Fake Minecraft sites continue distributing WeedHack malware through SEO poisoning and trusted hosting platforms despite disruption of its original C2 infrastructure. Disrupting WeedHack’s command-and-control infrastructure did not stop its distribution. Fake Minecraft client sites and trusted hosting services continued serving the…...

SiliconANGLE
siliconangle.com > 09/08/2026 > clickfix-moves-into-the-browser-and-onto-webdav-cisco-talos-finds

ClickFix moves into the browser and onto WebDAV, Cisco Talos finds

5+ day, 7+ min ago   (448+ words) UPDATED 06:00 EDT / SEPTEMBER 08 2026 Cisco Systems Inc.’s Talos Threat Intelligence group today detailed two ClickFix campaigns that push the technique past the copy-and-paste PowerShell prompt it is known for, one that never touches the operating system at all and one…...

4sysops
4sysops.com > archives > fake-software-installers-use-msiexec-to-bypass-defenses-and-persist-on-windows

Fake software installers use msiexec to bypass defenses and persist on Windows – 4sysops

5+ day, 17+ hour ago   (21+ words) Microsoft is tracking an active fake software campaign that regenerates malicious archives behind familiar download filenames, then uses Windows components such...

MSSP Alert
msspalert.com > brief > new-synkloader-malware-distributed-via-microsoft-teams-phishing

New SynkLoader malware distributed via Microsoft Teams phishing

5+ day, 18+ hour ago   (109+ words) The SynkLoader malware operates through a multi-stage process, beginning with convincing Microsoft Teams messages that mimic IT support communications. These messages aim to lure recipients into downloading and executing malicious files. Once activated, SynkLoader presents a fake Windows lock screen,…...

Security Affairs
securityaffairs.com > 198573 > malware > jsceal-hides-crypto-malware-in-v8-bytecode.html

JSCeal Hides Crypto Malware in V8 Bytecode

5+ day, 23+ hour ago   (764+ words) Why AI Agent Sandboxes Are Failing Security Tests Berlin Ransomware Leak Exposes State Secrets Your MikroTik Router May Already Be Compromised: Look for SSH User “-2” AI Agents Hijacked German Wiki to Cheat, OpenAI Delayed Disclosure Security Affairs newsletter Round 593 by…...

Cyber Security News
cybersecuritynews.com > 14-fake-macos-installers

14 Fake macOS Installers Linked to DPRK Campaign Deliver Credential-Stealing RAT

1+ week, 2+ day ago   (612+ words) Mac users are being targeted with 14 fake application installers that appear to offer familiar software but instead start a credential-stealing remote-access trojan. The files were distributed as macOS disk images and installer packages, giving attackers another route into systems used…...

detections.ai
detections.ai > detections > 01a070bc-5104-740a-8d7a-8cbb595326fe

BraZetsu Malware Framework - Evasive Browser Credential Harvesting via shutil.copyfile

1+ week, 16+ hour ago   (62+ words) This detection identifies processes that exhibit behavior consistent with browser credential and session data harvesting from Chromium-based browsers. Specifically, it looks for command lines containing the Python function shutil.copyfile() used to copy sensitive browser SQLite databases, including Login Data,…...