Information Security News Blog

H96 Android TV boxes hijacked for ad fraud and residential proxies 0

H96 Android TV Boxes Secretly Drive Massive Ad Fraud

The Hidden Life of Cheap Streaming Devices An inexpensive set-top box connected to your television could be generating illicit revenue long after the screen goes dark, entirely without your knowledge. Cybersecurity researchers at Bitsight...

TA488 OWAReaper Outlook exploit infection flow diagram 0

TA488 OWAReaper Outlook Exploit Bypasses Passwords

The Invisible Intrusion A completely mundane email, utterly devoid of malicious links or suspicious attachments, proved sufficient for the formidable TA488 hacker collective to secure persistent access to a victim’s inbox. Consequently, the perpetrators...

Diagram showing ai guardrails security research and open weight ai models workflow 0

How AI Guardrails Impede Security Research

The Clash Between Safety Classifiers and Vulnerability Research Protective mechanisms in advanced AI models aim to hinder malicious actors. However, excessive safety restrictions can also halt legitimate software debugging. Security researcher Daniel Fox Franke...

AnMed malware cyberattack impacting clinic closures and healthcare services 0

AnMed Malware Cyberattack Shuts Down Clinic Operations

Initial Disruptions and Network Failures Digital infrastructure failures increasingly disrupt medical clinic operations. Recently, another severe cyber incident struck the United States. This devastating attack forced a major healthcare system to suspend various essential...

Illustration of a Copilot prompt injection attack altering a corporate Word document 0

The Dawn of the AI Worm: Copilot Prompt Injection

An infected Word document can imperceptibly distort a corporate report and subsequently transfer malicious instructions into new files. Merely opening the document is insufficient to launch this attack. Instead, the file must enter the...

Diagram illustrating the Firefox CVE-2026-10702 exploit and IonStack attack chain 0

Firefox CVE-2026-10702 Exploit: Android Flaw Exposed

Sometimes, compromising a digital environment requires zero downloads or explicit user confirmations. Indeed, the CVE-2026-10702 vulnerability embedded within Firefox for Android enabled seamless arbitrary code execution. Unsuspecting victims merely needed to visit a single,...

GenieLocker ransomware attacks and encryption process overview 0

GenieLocker Ransomware Attacks Target Cross-Platform Systems

Cybercriminals now possess a proprietary tool to simultaneously strike workstations, Linux servers, and corporate virtual infrastructures. Hackers already deploy the new GenieLocker ransomware against Russian organizations. Furthermore, industrial enterprises frequently fall victim to these...

NosyNeighbor attack analyzing real-time system timing side-channels 0

NosyNeighbor Attack Exposes Real-Time System Vulnerabilities

Security researchers have devised a novel side-channel exploit designated as the NosyNeighbor attack, capable of determining the operational status of individual components within mission-critical infrastructure solely by analyzing task execution timing. During experimental evaluations,...