Report calls for AI sector to be designated critical infrastructure
The report defines the AI sector broadly, encompassing organizations, technologies, and industries involved in the development, training, deployment, and ope...
20 articles
The report defines the AI sector broadly, encompassing organizations, technologies, and industries involved in the development, training, deployment, and ope...
The attack, developed by Rony Utevsky, a researcher at Adversa, is dubbed "cryptographic context injection" and exploits a fundamental weakness in how AI mod...
Socket researchers identified 40 malicious extensions and 37 others disguised as unrelated utilities, all linked through shared code, infrastructure, and pub...
Discovered by Zimperium's zLabs team, ToxicPanda 2.0 leverages the Android Accessibility Service to enable wireless debugging, effectively gaining shell acce...
Manic Android malware combines banking fraud and spyware, using a Bluetooth relay to steal data even when devices are offline. ThreatFabric’s Mobile Threat I...
Adversa AI has disclosed an attack technique that it says can cause xAI's Grok chatbot to send a user's name, approximate location, subscription tier, and th...
The latest campaign, observed in May 2026, utilizes DLL sideloading to execute the banking trojan.
Security researchers have demonstrated a “Zombie Card” attack that can reactivate certain expired Visa contactless cards, allowing them to be used for NFC pa...
Researchers at the University of Massachusetts Amherst have demonstrated an attack that revives expired Visa contactless credit cards for real in-store purch...
ToxicPanda 2.0, an evolved Android banking Trojan that significantly expands its fraud, device control, and credential theft capabilities.
A new Android threat codenamed Manic has been observed actively targeting Ukrainian banks, government and identity services, and messaging applications, as w...
Cybersecurity researchers have shed light on an updated version of ToxicPanda (aka TgToxic) that comes with "significant enhancements," including a set of 16...
Threat actors are increasingly abusing Microsoft 365 identity sessions rather than deploying malware, as shown in a cloud-only business email compromise (BEC...
Zimperium lifts the lid on the ToxicPanda 2.
A set of 40 Mozilla Firefox extensions has been found to engage in cryptocurrency wallet theft by masquerading as OKX, Rabby Wallet, TronLink, and other Web3...
Online fraud has become a routine concern for consumers and businesses that rely on digital accounts, payments and customer service. Experian’s 2026 U.
A team from the University of Massachusetts Amherst has shown that a contactless credit card keeps working past its printed expiration date, even after the c...
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public ...
A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public ...
The breach, which occurred on May 7, 2026, exposed the personal and financial information of potentially over 730,000 Texans, and affected individuals in Ala...