Information Security News Blog

A conceptual image showing the United States Department of Justice seizing domains connected to the QTFY hacking group. 0

US Seizes Domains Linked to QTFY Group

The United States successfully seized the domains of two prominent hacking platforms. The Department of Justice and the FBI allege the Chinese state-sponsored group QTFY operated these platforms. The group utilized these domains to...

Langflow CVE-2026-0768 exploitation harvesting OpenAI and AWS keys from an exposed AI application server 0

Langflow Flaw Exploited to Steal OpenAI and AWS Keys

Servers for developing AI applications have become vaults of valuable secrets, accessible through a single unprotected request. Attackers have begun exploiting the critical vulnerability CVE-2026-0768 in Langflow to extract OpenAI and AWS keys, administrator...

Nearly 22,000 internet-facing Exchange servers remain unpatched against CVE-2026-62911, an authentication bypass that can hijack every user's mailbox 0

22,000 Exchange Servers Exposed to Mailbox-Hijack Flaw

Corporate email can fall into an attacker’s hands after the compromise of a single low-privilege account. Nearly 22,000 internet-facing Microsoft Exchange servers have not received the fix for CVE-2026-62911, a flaw that allows every...

A conceptual image illustrating a fake MP4 file concealing malicious code 0

Fake MP4 Files Conceal Malware

Sometimes, threat actors utilize video files not for mere viewing, but for cunning concealment. Censys specialists recently discovered a sophisticated malware campaign. This campaign actively deploys structurally sound, yet entirely unplayable MP4 files. These...

A visual representation of the Andrew Tate War Room data leak exposing secret courses on bribery and manipulation 0

Secret Tate War Room Courses Exposed

Andrew Tate’s exclusive “War Room” sold far more than basic financial and relationship advice. A massive data leak recently exposed highly secretive internal courses. These materials instructed members on bribing government officials and police...

BraZetsu malware profiling a compromised computer by value to feed an underground Initial Access Broker marketplace 0

BraZetsu Malware Ranks and Sells Access to Compromised PCs

A hacked computer has become a commodity whose value an algorithm determines by its banking software, corporate systems, and owner data. Group-IB specialists have discovered a malicious framework named BraZetsu, which supplies an underground...

A conceptual image illustrating a cybersecurity professional orchestrating a corporate cyberattack. 0

Israeli Police Arrest Cybersecurity Expert

Israeli authorities recently arrested an information security specialist. Investigators allege this individual spent his free time intentionally infecting the very corporate networks he was trained to protect. Police suspect the Ashkelon resident, a man...

A cybercriminal infiltrating a complex banking network to authorize fraudulent money transfers. 0

BREEZE COMET Attacks Brazilian Banks

Banking trojans typically target individual retail customers. However, the BREEZE COMET group selected significantly larger targets. The Google Threat Intelligence Group recently exposed this dangerous organization. Since 2024, they successfully penetrated Brazilian banks, fintech...

A conceptual image illustrating the static deobfuscation process extracting readable pseudocode from the JSCeal compiled V8 bytecode malware 0

Static Deobfuscation Defeats JSCeal Cryptocurrency Malware Defenses

Compiled code no longer functions as an impenetrable shell protecting JSCeal. Check Point specialists recently developed a fully static deobfuscation method. This innovative technique effectively transforms the hidden malware into readable pseudocode. Crucially, it...

GoCaracal malware retrieving a backup command-and-control address from an Ethereum smart contract 0

GoCaracal Malware Uses Ethereum Smart Contract for C2 Backup

Blocking a malware’s command server is usually insufficient if a new address can be fetched straight from the blockchain. Arctic Wolf specialists have discovered a previously unknown modular malware belonging to the Dark Caracal...