Iran-linked actors use AI to accelerate malware and phishing operations

Iran-nexus threat groups are using generative AI for malware development, industrial control system mapping, and multilingual phishing campaigns.

The Latest

Breaking News and Alerts

EU orders Google to open Android mic, camera and screen to rival AI assistants

The European Commission orders Google to give rival AI assistants the same hardware access as Gemini under the Digital Markets Act.

Spotlight

Cybersecurity Profiles and Stories

New NadMesh botnet hunts exposed AI services for cloud credentials

Researchers discovered the NadMesh botnet, which targets exposed AI infrastructure to steal cloud keys and Kubernetes tokens.

Grok Build uploaded entire Git repositories to xAI cloud storage

A security researcher found that xAI's Grok Build CLI packaged and uploaded entire code repositories, including deleted secrets, to Google Cloud Storage.

Claude for Chrome flaw lets rogue extensions read Gmail messages

Researchers discovered that malicious Chrome extensions can abuse a permission flaw in the Claude for Chrome extension to read Gmail without user consent.

ACR Stealer uses ClickFix lures to steal browser tokens and Microsoft 365

Microsoft observed two ACR Stealer campaigns using fake error messages to trick users into running code that steals credentials and cloud session tokens.

Features

Research and Thought Leadership