Multiple Hacking Groups Exploit OpenClaw Instances to Steal API key and Deploy Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hacking Groups Exploit OpenClaw Instances A widespread exploitation of OpenClaw, formerly known as MoltBot and ClawdBot, by multiple hacking groups to deploy malicious payloads. OpenClaw, an open-source autonomous AI framework developed by Peter Steinberger, now at OpenAI, has become a high-severity target following its …

Cloudflare Down – 6 Hour of Massive Global Service Outage Cause Customers Unreachable From the Internet

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cloudflare experienced a significant six-hour global service outage on February 20, 2026, causing major disruptions for customers utilizing its Bring Your Own IP (BYOIP) services. The incident, which began at 17:48 UTC and lasted for six hours and seven minutes, …

Hackers Leveraging Multiple AI Services to Compromise 600+ FortiGate Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

600+ FortiGate Devices Hacked A financially motivated threat actor exploited various commercial generative AI services to compromise over 600 FortiGate devices across more than 55 countries between January 11 and February 18, 2026. The campaign marks a defining demonstration of …

SuperClaw – Open-Source Framework to Red-Team AI Agents for Security Testing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Superagentic AI has released SuperClaw, an open-source, pre-deployment security testing framework built specifically for autonomous AI coding agents. Announced in late 2025, SuperClaw addresses a growing blind spot in enterprise AI adoption: agents are routinely deployed with broad tool access …

Cybersecurity Companies’ Stocks Fall Sharply as Anthropic Releases Claude Security Tool

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Claude Security Tool Stocks Impacted Shares of major cybersecurity companies nosedived on Friday after AI startup Anthropic unveiled Claude Code Security, a new AI-powered tool capable of autonomously scanning codebases for software vulnerabilities and suggesting targeted patches sparking fears that …

New Shai-Hulud–like npm Worm Attack 19+ Packages to Steal dev/CI Secrets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Shai-Hulud–like npm Worm Attack A new supply chain worm is actively targeting the npm ecosystem, with a research team identifying at least 19 malicious npm packages designed to steal developer and CI/CD secrets and automatically spread across repositories and workflows. …

Anthropic Launches Claude Code Security to Scan Codebases for Security Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Claude Code Security A new feature inside Claude Code enables developers and security teams to identify and remediate vulnerabilities across their codebases, known as Claude Code Security. Currently available in a limited research preview, the tool offers AI-powered code scanning …

‘Starkiller’ Phishing Service Proxies Real Login Pages, MFA

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

February 20, 2026 0 Comments Most phishing websites are little more than static copies of login pages for popular online destinations, and they are often quickly taken down by anti-abuse activists and security firms. But a stealthy new phishing-as-a-service offering …

PayPal Data Breach Exposes SSNs and Business PII of Customers for Over Six Months

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

PayPal Data Breach PayPal has issued a formal data breach notification disclosing that a coding error in its PayPal Working Capital (PPWC) loan application exposed the personally identifiable information (PII) of an undisclosed number of customers for approximately six months, …

Grandstream VoIP Phones Vulnerability Allows Attackers to Gain Root Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VoIP desk phones are trusted devices, but many are managed like office furniture. A newly disclosed flaw in Grandstream phones shows how a simple network-facing bug can turn a handset into an entry point for eavesdropping and wider access. In …