Russia-Linked Turla Uses Compromised Infrastructure to Deploy STOCKSTAY in Ukraine Operations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Russia-linked threat group Turla has been quietly expanding its espionage arsenal with a new backdoor called STOCKSTAY, actively targeting government and military organizations in Ukraine since at least December 2022. The malware is built in .NET and …

ClawHub Skills Expose AI Agents to Remote Control Backdoors and Data Theft Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 AI-powered agents are no longer just answering questions. They now take actions, manage files, and run code on behalf of users. That shift has opened a dangerous new door, and attackers have already walked through it. Malicious …

LLM-Generated Mythic Agents Enable Disposable Red-Team Tooling From Prompt to Deployment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Red teamers and offensive security researchers have entered a new era where AI can write functional attack tools from a single sentence. A concept known as “disposable tooling” is now taking shape, and the implications for defenders …

Millenium RAT Rewritten in C++ Infects 62,000+ Devices Across 160 Countries

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 A remote access trojan known as Millenium RAT has been quietly spreading across the globe, and the numbers are hard to ignore. Over 62,000 devices have been compromised across more than 160 countries, with no signs of …

UNC1151 Ghostwriter Hackers Target Belarusian Politician in Gmail Phishing Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A well-known hacker group called UNC1151, also widely known as Ghostwriter, has been caught running a targeted phishing campaign against a prominent Belarusian pro-democracy politician. The group, which has long been tied to the interests of the Belarusian government and, …

China’s New Zhipu AI Reportedly Matches Claude Mythos in Vulnerability Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Zhipu AI’s open-weight GLM-5.2 model is reportedly performing on par with Anthropic’s restricted Claude Mythos in specific cybersecurity and software vulnerability detection tasks, a development that is intensifying concerns inside the U.S. government about the effectiveness of …

RedAmon AI Tool that Chains Reconnaissance, Exploitation, and Post-exploitation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 A new open-source offensive security platform called RedAmon is redefining automated penetration testing by chaining reconnaissance, exploitation, post-exploitation, AI-driven triage, and automated code remediation all into a single end-to-end pipeline that culminates in a GitHub pull request …

OpenAI Released GPT-5.6 Sol With Limited Access and Strong Cyberattack Protections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has officially begun a limited preview of the GPT‑5.6 model series Sol, Terra, and Luna, positioning its flagship Sol as the company’s most capable and security-hardened AI model to date, available initially only to a small group of trusted …

Anthropic Confirms Claude Mythos 5 Redeployment for US Critical Infrastructure Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 27, 2026 Anthropic has confirmed that Claude Mythos 5, its most powerful AI cybersecurity model, will be redeployed to a select set of U.S. organizations responsible for operating and defending critical infrastructure, following a government-led review process that began …

New Bucket Hijacking Attack Allows Hackers to Reroute Cloud Data Streams to External Storage

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 27, 2026 A critical cloud storage attack technique dubbed “bucket hijacking” a method that enables threat actors to silently redirect an organization’s active cloud data streams, including audit logs and telemetry, into attacker-controlled external storage buckets across major cloud …