US Sanctions Iranian $6bn Crypto “Exchange” Shelbit
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange
20 articles
TRM Labs explains that sanctioned Iranian firm Shelbit was a fake crypto exchange
Beacon has informed around 1500 customer charities that its CRM databases were accessed and likely exfiltrated by an unauthorized actor
BlackFile has rebranded as Redact after an alleged affiliate hijack, with Google linking the group to ongoing vishing and extortion campaigns
Finance, technology and healthcare sectors were particularly heavily targeted in July, according to Comparitech
Attackers used SQL injection to compile a post-exploitation toolkit inside an Oracle database
Oligo Security has linked TeamPCP to ShadowRay 2.
One of Meta’s AI models exploited a third-party security flaw during an evaluation, the latest in a series of similar incidents involving advanced AI systems
So-called “wrench attacks” have resulted in $30m in losses so far in 2026, says Chainalysis
A Canadian hacker has admitted involvement in the widespread compromise of 165 Snowflake customer accounts used to steal data and extort victims
The Open Secure AI Alliance has announced plans for the Shared AI Findings Exchange (SAFE)
77 counterfeit Open VSX extensions beaconed to one domain, 19 harvesting git and CI identity
3 Paperclip flaws exposed data & allowed unauthenticated command execution in two deployment modes
Prompt injection remains the most dangerous security threat to LLMs, according to OWASP’s latest Top 10 LLM Applications list
A new npm worm has compromised packages with over two billion monthly installs
Anthropic and OpenAI models attacked “real people and organizations” during AI Security Institute tests
Cybercriminals are using a fake Bank of America phishing campaign to trick users into downloading a malicious script that installs ScreenConnect, enabling re...
WhatsApp scam abused the Linked devices feature to hijack accounts without stealing any passwords
Talos read attacker prompt logs and found guardrails fell to task splitting and ownership claims
Cloud and SaaS are now the preferred operating environments for threat actors, amid a continued shift to identity attacks
Interpol claims AI is driving a surge in cybercrime in Africa, with related losses doubling