New ‘StegaBin’ Campaign Uses Malicious 26 npm Packages to Deploy Multi-Stage Credential Stealer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new software supply-chain attack is abusing the npm ecosystem today, where a single mistaken dependency can quietly open a door into a developer’s machine. The activity, tracked as “StegaBin,” …

Hackers Leverage Telegram for Initial Access to Corporate VPN, RDP, and Cloud Environments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Telegram, once widely recognized as a privacy-focused messaging application, has quietly transformed into one of the most powerful operational platforms used by cybercriminals today. What dark web forums once offered …

Epic Fury/Roaring Lion Sparks Escalating Cyber Conflict as Iran Goes Offline, Hacktivists Step Up Retaliation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

On February 28, 2026, the United States and Israel launched a coordinated offensive — code-named Operation Epic Fury by the U.S. and Operation Roaring Lion by Israel — setting off …

Malvertising Campaign Delivers AMOS ‘malext’ macOS Infostealer via Fake Text‑Sharing Lures

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new malvertising campaign is actively targeting macOS users worldwide, delivering a new variant of the AMOS infostealer called “malext.” Attackers are purchasing Google Search ads that push victims toward …

Google Unveils Merkle Tree Certificates to Shield HTTPS Against Quantum Threats

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google Chrome Unveils Merkle Tree Certificates Shield HTTPS Google has announced a major initiative to protect HTTPS connections from the emerging threats posed by quantum computing. Working with the Internet …

Hackerbot-Claw Bot Attacks Microsoft and DataDog via GitHub Actions CI/CD Misconfiguration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Between February 21 and February 28, 2026, an autonomous bot named hackerbot-claw launched a week-long attack campaign against major open source repositories. It targeted GitHub Actions CI/CD pipelines belonging to …

New Claude Memory Feature Allow Users to Transfer Data from ChatGPT and Other AI Providers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Claude Memory feature Anthropic has introduced a new memory import tool for Claude that allows users to seamlessly transfer their stored preferences, habits, and context from other AI platforms, including …

Threat Actors Exploit OpenVSX Aqua Trivy with Malicious AI Prompts to Hijack Local Coding Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A supply chain attack targeting developers surfaced on March 2, 2026, when unauthorized code was found inside two versions of the Aqua Trivy VS Code extension on the OpenVSX registry. …

Hackers Leveraged CyberStrikeAI Tool to Breach Fortinet FortiGate Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CyberStrikeAI Tool Breach FortiGate Devices A new artificial intelligence (AI) offensive security tool called CyberStrikeAI, which is being actively leveraged by threat actors to target edge devices, particularly Fortinet FortiGate …