July 3, 2026 Anthropic has published detailed technical documentation on the cybersecurity safeguards protecting Claude Fable 5, following the model’s global redeployment. The disclosure covers both the AI’s safety classifier …
Google Dismantles NetNut Residential Proxy That Hacked 2 Million Home Devices
July 3, 2026 Google, working alongside the FBI, Lumen Technologies, and other industry partners, has taken action to dismantle the NetNut residential proxy network, also tracked as “Popa,” which is …
FBI Seizes NetNut Proxy Platform, Popa Botnet
The Federal Bureau of Investigation (FBI) said today it worked with industry partners to seize hundreds of domains associated with NetNut, a sprawling residential proxy service operated by the publicly-traded …
AsyncRAT Campaign Uses DLL Sideloading and ScreenConnect for Stealthy Remote Access
July 2, 2026 A stealthy campaign is turning trusted remote access software into a weapon against everyday users and businesses. Attackers have hidden the AsyncRAT trojan inside fake software installers, …
Microsoft 365 Phishing Panel Uses OAuth Device Code Flow to Capture Tokens and Persist Access
July 2, 2026 A newly uncovered phishing panel called ARToken is giving cybercriminals an easy way to steal Microsoft 365 login sessions without ever touching a password. The tool works …
AsyncRAT Campaign Abuses TryCloudflare Tunnels and Python Scripts for Malware Delivery
July 2, 2026 AsyncRAT is back in the headlines, and the attackers behind it have found a clever way to hide in plain sight. Instead of relying on suspicious servers, …
Ousaban Malware Uses Phishing PDFs and VBS Downloader to Target Iberian Banking Users
July 2, 2026 A newly documented campaign is quietly hijacking online banking sessions across Spain and Portugal, and it starts with something as ordinary as a broken PDF file. The …
Claude Cowork’s Sandbox Vulnerability Allows Attackers to Run Arbitrary Commands as Root
July 2, 2026 A vulnerability chain in Anthropic’s Claude Cowork allows an attacker with local code execution to escalate privileges and run arbitrary commands as root inside the product’s isolated …
CitrixBleed Vulnerability Exploited by Hackers Within 24 Hours of Public Disclosure
July 2, 2026 A newly disclosed CitrixBleed-class vulnerability in Citrix NetScaler appliances came under active exploitation less than a day after public disclosure, with decoy infrastructure operator Lupovis confirming a …
DHS Confirms Breach of Information-Sharing Network Platform HSIN
July 2, 2026 The Department of Homeland Security has confirmed that hackers breached the Homeland Security Information Network (HSIN), a sensitive but unclassified platform relied upon by federal, state, local, …
