- Geekom mini PCs were vulnerable to malware. Here's how to check yours 2026-08-19 15:15 PC World According to the latest details, the following models were vulnerable: Geekom A7 Geekom A8 Geekom AE7 Geekom AE8 Geekom AX7 Pro Geekom AX8 Pro Important: You are only at risk of malware on your Geekom mini PC if you manually searched for a driver for one …
- StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data 2026-08-19 14:48 The Hacker News Cybersecurity researchers have flagged a global cybercrime operation that abuses thousands of hacked WordPress websites as infrastructure to disseminate malware, commandeer infected hosts, store stolen documents, screenshots, and activity logs created to …
- Microsoft smothers malware by tracking behavior instead of blocking domains 2026-08-19 14:42 TechRadar Pro Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Microsoft says blocking domains is ineffective against MacSync Stealer’s evolving infrastructure Defender experts tracked over 30 domains by analyzing behavioral …
- 4,500 SIM cards, China malware: Pakistan links emerge in Ahmedabad cyber probe 2026-08-19 07:07 India Today An investigation into a Rs 1.5 crore ‘Boss Scam’ in Ahmedabad has blown open a sprawling international cybercrime network, with police uncovering around 4,500 SIM cards procured for cybercrime operations and tracing suspected links to China and Pakistan …
- Projextor Abuses Cross-Platform Electron Framework to Conceal Malware Activity 2026-08-19 01:24 GBHackers Threat actors behind the Projextor campaign are abusing Electron-based productivity applications to conceal malware-like capabilities behind fully functioning document converters, meal planners, recipe tools, and PDF utilities. The applications deliver …
- Laptop maker admits Malware was distributed through Driver Downloads 2026-08-18 19:38 Cybersecurity Insiders Geekom, a Chinese PC manufacturer has acknowledged that malware was accidentally distributed to users through network driver downloads available on its official website. The affected downloads were reportedly associated with several Geekom laptop and Mini …
- ‘Technical assessment’ was malware: SPF and CSA warn of S$15 million LinkedIn crypto scam targeting tech workers 2026-08-18 18:40 The Independent Singapore SINGAPORE: The Singapore Police Force (SPF) and the Cyber Security Agency (CSA) of Singapore have issued a joint advisory warning businesses and individuals, particularly in the technology and cryptocurrency sectors, about a sophisticated scam that …
- Projextor Shows How Malware Can Hide Behind Trusted Electron Executables 2026-08-18 17:51 Cyber Security News Projextor is a malware campaign that turns ordinary-looking desktop tools into a doorway for hidden code. Its operators package it inside working document converters, meal planners and recipe applications, so victims receive a program that appears useful …
- Hackers Hijack Thousands of WordPress Sites to Use as C2 Servers for StopAndProtect Malware 2026-08-18 17:51 Cyber Security News A newly uncovered malware operation dubbed StopAndProtect is transforming thousands of hacked WordPress websites into a sprawling criminal command-and-control (C2) infrastructure. The campaign blends double-extortion ransomware with covert data theft, …
- Beware: Pirated Copies Of The Odyssey Found With Crypto Malware 2026-08-18 16:48 Blockzeit A major cybersecurity firm warns that many pirated copies of Christopher Nolan’s The Odyssey may be embedded with malware that attacks crypto wallets. Christopher Nolan’s rendition of Homer’s The Odyssey is now a certified box office success. After a …
- Geekom reveals multiple mini-PCs may be infected with malware hidden in a network driver — but it's now down to you to fix your PC 2026-08-18 15:35 TechRadar Pro Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Geekom has admitted a software driver contained malware A LAN driver on a legacy page was hosting the Asruex backdoor The malware can track keystrokes, steal passwords …
- Ghosts in the machine: AI malware shows why it is time to extend Zero Trust to code 2026-08-18 12:19 TechRadar Pro Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Software security was built around human development. People wrote, reviewed and deployed code. Now machines are taking over. In a recent paper, Anthropic reports that …
- New malware turns Microsoft 365 and Azure into its control center 2026-08-18 11:15 Computerworld <div id="remove_no_follow"> <div class="grid grid--cols-10@md grid--cols-8@lg article-column"> <div class="col-12 col-10@md col-6@lg col-start-3@lg"> <div class="article-column__content"> < …
- New Malware turns Microsoft cloud into its control center 2026-08-18 11:13 CSO The pathway is different from Edge transport. The implant launches Microsoft Edge in headless mode, attaches through the Chrome DevTools Protocol, and issues Graph API calls as “same-origin fetch ()” requests from within the browser. From network telemetry …
- Shadow hVNC Malware Kit Gives Hackers Hidden Windows Desktop for Covert Remote Control 2026-08-18 09:14 GBHackers A newly advertised malware-as-a-service toolkit named Shadow hVNC combines browser credential theft, hidden virtual desktop control, reverse proxying, and extensive persistence into a single Windows-focused payload. Marketed by a user known as “RemoteX” in …
- 'Turf War' Between Claude Agents Leads to Self-Replicating Malware 2026-08-18 00:46 Dark Reading It turns out that AI agents don't always play nice together. In the latest episode of agentic AI producing unexpected results, Anthropic recently observed "a multiagent turf war" between three instances of the same Claude model with …
- HoneyMyte Upgrades CoolClient With Windows Kernel Rootkit to Hide Malware and C2 Connections 2026-08-17 22:17 GBHackers HoneyMyte, the China-aligned espionage group also tracked as Mustang Panda, has upgraded its CoolClient backdoor with a signed Windows kernel-mode rootkit that can conceal malware artifacts and command-and-control infrastructure from security tools. The …
- Are Antivirus Apps Necessary on Android? What They Mean for Phone Security and Malware Protection 2026-08-17 20:28 iTech Post - New York Android phones have built-in security features that can detect and block many types of malicious software. As a result, the need for separate antivirus apps is less straightforward than it once was. Android already provides several layers of phone security …
- Windows 11 WMIC Removal Targets a Legacy Tool Abused by Malware and Ransomware for Years 2026-08-17 20:28 iTech Post - New York Microsoft is moving ahead with the final removal of WMIC from Windows 11, ending the availability of a legacy command-line utility that has been part of Windows administration for decades. The Windows Management Instrumentation Command-line, better known …
- Geekom Pulls Download Pages After Malware Found in Legacy Mini PC Drivers 2026-08-17 19:17 TechPowerUp
- New macOS malware ‘AmnesiaStealer' hijacks browser sessions after infection 2026-08-17 18:47 GEO TV Cybersecurity analysts have found a new macOS malware that not only steals users’ sensitive data but also gets remote access to the victim’s browser sessions. Known as “AmnesiaStealer” by Jamf Threat Labs, the multi-stage malware spreads via a counterfeit …
- This Malware Can Take Over Web Browsers on macOS, but You Can Protect Yourself 2026-08-17 18:27 Lifehacker - Massachusetts In a new ClickFix attack iteration, hackers are pushing an infostealing malware to macOS users that is capable of hijacking your sessions in Google Chrome, Microsoft Edge, and a number of other Chromium-based browsers. AmnesiaStealer grants remote control …
- Geekom admits to shipping malware-laced network drivers for AMD mini PCs — company responds with guidance, removes malicious package 2026-08-17 18:22 Tom's Hardware Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter For the most part, you can rest assured that your device will remain uncompromised by malware if you keep to verified, trusted sources for downloading software. And yet …
- Conflicting Test Goals Pushed Claude Agents to Deploy Self-Replicating Malware 2026-08-17 14:51 SecurityWeek Anthropic has published new research showing that Claude-based AI agents, when placed in situations with competing objectives, deployed self-replicating malware against one another. The finding comes from an experiment designed to mirror behavior Anthropic …
- AmnesiaStealer malware hijacks macOS browsers via fake GitHub pages 2026-08-17 13:56 ARY News A new and sophisticated malware campaign targeting Mac computers has been uncovered by researchers at Jamf Threat Labs. Known as AmnesiaStealer, this infostealer not only collects passwords and sensitive information, but also allows attackers to quietly …
- AI Makes 3 Things We “Know” About Malware Detection Wrong 2026-08-17 13:51 The AI Journal Protecting identity ranks high on most CISOs’ priority lists yet tried-and-true malware attacks continue to be a go-to vector for those looking to ransom or exfiltrate data and take over accounts. That’s not because email and security providers take …
- Bitdefender warns of Lumma Stealer malware hiding in pirated copies of The Odyssey 2026-08-17 13:24 Crypto Briefing Fake downloads of the 2026 blockbuster are already circulating with malware designed to drain crypto wallets and hijack browser sessions Nothing says “summer blockbuster season” quite like cybercriminals racing to exploit your movie habits. Bitdefender …
- SilverFox Hackers Target Asia With Fake Claude Apps: How to Spot the Malware Scam 2026-08-17 13:02 International Business Times Singapore You want Claude on your laptop. You search for the desktop app, click what looks like the official download and run the installer. The application opens normally. It looks like Claude, behaves like Claude and lets you start chatting. The problem is what …
- New macOS malware turns stolen browsers into attacker-controlled sessions 2026-08-17 12:14 CSO The loader takes a number of steps to make the payload harder to notice, Jamf said. It extracts the binary into “/tmp,” gives it a hidden Apple-looking filename, removes the macOS quarantine attribute, applies an ad-hoc code signature and launches it …
- Cinia says March malware attack did not access customer data 2026-08-17 11:57 Telecompaper Finnish infrastructure company Cinia said a malware incident in March did not lead to the attacker gaining access to customer data or other confidential information. Its comment follows a report by newspaper Helsingin Sanomat that said Cinia, betting …
- Revealed: Cyber spies used malware from GitHub to hack EncroChat cryptophone network 2026-08-17 11:08 TechTarget Computer Weekly reveals for the first time how French cyber spies hacked EncroChat phones, used by organised crime groups, in 2020. In the first of two major articles, we describe how a Czech spyware company rehacked the French hack and found that French …
- ChainDrop Publishes Initial Malware Without Stealing a Long-Lived npm Token 2026-08-17 08:01 GBHackers The ChainDrop campaign has exposed a gap in modern software supply-chain defenses: malware no longer needs a durable npm publishing token or even an npm install event to spread through developer environments. The self-propagating npm worm, also tracked as …
- Malicious Google Apps Script Profiles Crypto Victims Before Delivering Signed Windows Malware 2026-08-17 08:01 GBHackers A targeted cryptocurrency intrusion has exposed how Google-hosted Apps Script pages can be weaponized to profile prospective victims before delivering signed Windows malware. The campaign used a fake Web3 recruitment process to deploy a three-payload stack …
- Go malware targets Mac crypto wallets and credentials 2026-08-17 07:06 Arabian Post A newly analysed macOS information-stealing malware is targeting cryptocurrency holdings, passwords and Apple Keychain data after victims are tricked into executing malicious commands through ClickFix social-engineering attacks. The malware, written in …
- APT36-linked malware cluster targets South Asia telecoms 2026-08-17 06:16 SecurityBrief Acronis has identified a malware cluster targeting telecommunications providers and critical infrastructure organisations in Afghanistan and South Asia. It linked the activity with moderate confidence to APT36 or a closely related Pakistan-linked threat …
- CSA: S$15M lost in cryptocurrency scams using fake job offers by scammers posing as recruiters; victims are tricked into downloading malware through fake technical assessments 2026-08-16 16:05 The Independent Singapore Summary Cryptocurrency scams using fake job offers caused about US$11.8 million (S$15 million) in losses, Singapore authorities said on Aug 14. One victim was contacted on LinkedIn by a fake recruiter claiming to represent a cryptocurrency-related company …
- ChainDrop Worm Exposes Cracks in npm Defenses as Self-Replicating Malware Poisons 444 Packages 2026-08-15 22:39 WebProNews - Kentucky Software developers opened their terminals this week to a familiar command. npm install. What arrived instead carried hidden code capable of raiding credentials and spreading silently across repositories. The incident marks the latest escalation in attacks …
- Three new Windows flaws can bypass security, gain system privileges, and even install malware remotely 2026-08-15 20:06 TechSpot What we know so far: Cybersecurity researchers have uncovered at least three new vulnerabilities that could potentially allow attackers to gain system privileges even on patched Windows computers. These include a memory configuration chip exploit named …
- Crooks Are Buying Your Expired Domains and Using Them to Deliver Malware 2026-08-15 18:17 Security Affairs Crooks Are Buying Your Expired Domains and Using Them to Deliver Malware Attackers are buying expired domains to exploit their reputation, traffic and DNS history, using them for malware delivery, scams and C2 infrastructure. Every day, roughly 65,000 …
- Official mini PC driver package from Geekom triggers malware alert 2026-08-15 17:55 Notebook Check The flag doesn't appear to be false positive. Pictured: the front of the Geekom A8 Max. A Geekom mini PC user reports that a driver package available on the official site contains malware. The executable in question is in the LAN driver folder, and it’ …
- Android Malware WindRelay Turns Your Phone Into an NFC Payment Trap 2026-08-15 15:18 International Business Times Singapore The call took 13 minutes. By the end of it, a fraudster had taken out a loan in the victim's name and was using the victim's own Android phone to relay live card data to a payment terminal while the physical card was still in the victim's hand …
- Bring Your Own EDR Attack Turns SentinelOne Into PPL-Protected Trojan Horse to Shield Malware 2026-08-15 01:31 Cyber Security News A “Bring Your Own EDR” attack abuses trusted SentinelOne components to turn endpoint protection into a powerful malware shield. The research was presented at DEF CON 34 in Las Vegas, and SentinelOne fixed the reported issue in Agent version 26.1.1. …
- AI Agents Don’t Stop When Malware Fails, They Write Another Tool and Keep Attacking 2026-08-15 01:24 Cyber Security News AI agents are changing the shape of cyberattacks. Instead of relying on a fixed piece of malware, an agent can test an approach, see it fail, write a replacement tool, and continue toward the same goal. Recent incidents show that this is no longer only a …
- HoneyMyte’s CoolClient Malware Now Hides Behind a Windows Rootkit 2026-08-14 20:24 WindowsReport.com HoneyMyte has upgraded its CoolClient backdoor with a Windows rootkit that gives the malware stronger protection against detection, removal, and security tools. Kaspersky says the HoneyMyte APT group, also known as Mustang Panda, added a kernel-level …
- Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware 2026-08-14 18:48 The Hacker News Threat actors are acquiring expired domains to inherit website traffic and reputation to redirect victims to scams and malware on a large scale. DNS threat intelligence firm Infoblox has given the name dropcatch domains to those that get a second chance, …
- 24 Malware Crypter Sellers Turn EDR Evasion and In-Memory Execution Into Paid Services 2026-08-14 18:48 GBHackers A growing underground market is turning mature malware-evasion techniques into subscription products. An analysis of 24 active crypting-service vendors shows that customers can now buy payload obfuscation, in-memory execution, anti-analysis controls, …
- Agentic AI Models Rebuild Malware and Sustain Real-World Cyber Intrusions, SentinelOne Warns 2026-08-14 18:48 GBHackers Four incidents involving OpenAI, Anthropic, Meta and the UK AI Security Institute (AISI) describe AI agents reaching systems belonging to other organizations without their consent. The defining capability is now persistence: models can repeatedly test …
- DCRat Campaign Hides Malware Archive Inside SVG Using HTML Smuggling 2026-08-14 15:20 Cyber Security News A new DCRat campaign is using a familiar image format to hide a dangerous malware archive. The operation begins with phishing emails that pose as legal notifications and urge recipients to open an attached SVG file. The attachment looks harmless because …
- HACKERAI Malware Turns GitHub Gists Into a Command-and-Control Channel 2026-08-14 11:16 Cyber Security News A newly identified malware framework called HACKERAI C2 Agent is using GitHub Gists as a hidden channel for attacker commands and stolen data. The technique lets operators blend malicious traffic with a service that many organizations allow on their …
- Malware Crypter Services Sell Windows Defender, EDR and SmartScreen Bypasses to Cybercriminals 2026-08-14 11:16 Cyber Security News Criminal services that hide malware are becoming easier to buy. These services, known as crypters, change a malicious file so that security tools struggle to recognize it. Their operators promise customers a way around Windows Defender, endpoint detection …