THREAT INTELLIGENCE
The Pakistan-aligned threat group tracked as Transparent Tribe (aka APT36 and Earth Karkaddan) has been attributed to a fresh set of cyber attacks targeting government and defense entities…
septiembre 18, 2026
READ →
THREAT INTELLIGENCE
Microsoft has released fixes for a maximum-severity security flaw in Azure AI Foundry that could be exploited to achieve privilege escalation. No customer action is required. The vulnerability,…
septiembre 18, 2026
READ →
THREAT INTELLIGENCE
In July 2025, someone registered a domain that used to belong to a content delivery network. The CDN had been wound down years earlier, and the domain it…
septiembre 18, 2026
READ →
THREAT INTELLIGENCE
A flaw in four widely used AI coding agents lets someone who controls a plugin’s code repository swap the plugin an agent installs for a malicious one, even…
septiembre 18, 2026
READ →
THREAT INTELLIGENCE
Cybersecurity researchers have discovered a cluster of 13 npm packages that have been found to deliver a previously undocumented JavaScript stealer codenamed WeaselBiscuit. The new malware family, per…
septiembre 18, 2026
READ →
THREAT INTELLIGENCE
A financially motivated threat actor has been linked to the development and distribution of a JavaScript (JS)-based information stealer known as PhantomRaven via the npm package registry. “The…
septiembre 18, 2026
READ →
THREAT INTELLIGENCE
Cybersecurity researchers have flagged a new Android malware called RatHat that’s assessed to be operated by China-based threat actors and features an artificial intelligence (AI)-powered system to navigate…
septiembre 18, 2026
READ →
THREAT INTELLIGENCE
A critical vulnerability in Check Point’s Security Management and Log Servers could allow an attacker without login credentials to run code as root on those servers over the…
septiembre 17, 2026
READ →
THREAT INTELLIGENCE
Attackers keep finding new keys. The funny part is that defenders keep inventing where to store them. This week, those keys sit in AI tools, exposed services, old…
septiembre 17, 2026
READ →
THREAT INTELLIGENCE
Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere else on the…
septiembre 17, 2026
READ →