A campaign offers fake desktop clients for three US payroll platforms, then installs ScreenConnect to give an attacker unattended access…
The documentation stand-in third-party[.]com has been weaponised, serving a ClickFix lure that poisons the clipboard on Windows machines.
Fake recruiters are booking video calls with Rust maintainers and pushing malware.
A year-old sealed plea became public this week when prosecutors moved to seize about $17.6M in crypto, vehicles and luxury…
A verified HBO Max Reddit account pushed 108 malicious ads in 48 hours, part of a broader operation spreading infostealers.
A government-linked Indian IT portal served a fake Cloudflare check that tried to get visitors to run a copied command.
A forged request sent from inside a real government domain was enough to pull identity documents, selfies, and Bitcoin histories…
A June intrusion at the medical equipment network reached patient and insurance data.