PromptSnatcher Ad Blocker Extensions Steal AI Chats From ChatGPT, Claude, and Gemini

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 15, 2026 Two browser extensions masquerading as ad blockers have been caught secretly recording private conversations from ChatGPT, Claude, Gemini, and five other major AI platforms. The extensions, named “Smart Adblocker” and “Adblock for Browser,” were installed by roughly …

Hackers Abuse LNK Files, PowerShell, and Python Loader to Deploy NarwhalRAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 15, 2026 A sophisticated malware campaign is quietly targeting Korean users through a well-crafted chain of deception. Threat actors are using innocent-looking shortcut files, built-in Windows tools, and a compiled Python payload to plant a remote access trojan called …

Windows 11 Update KB5094126 Freezes Systems, Forces BitLocker Recovery, and More

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 15, 2026 Microsoft’s June 2026 Patch Tuesday cumulative update for Windows 11, KB5094126 (OS Builds 26200.8655 and 26100.8655), has triggered a wave of reports across community forums and enterprise environments, with users experiencing system freezes, forced BitLocker recovery loops, …

Critical Wazuh Vulnerability Lets Attackers Tamper with Alerts and Delete Security Evidence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 15, 2026 A critical security flaw in Wazuh Manager has been disclosed that could allow remote attackers to manipulate security alerts, delete forensic evidence, and tamper with SIEM data across environments. The vulnerability carries a maximum CVSS score of …

WinRAR Vulnerability Exploited by Russian Hackers to Deploy GIFTEDCROOK Stealer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 15, 2026 Russian hackers are exploiting a known flaw in WinRAR to quietly steal passwords, session cookies, and sensitive files from Ukrainian organizations. The vulnerability, tracked as CVE-2025-8088, was patched in July 2025, yet multiple Russia-aligned groups are still …

Palo Alto Warns of GlobalProtect VPN Vulnerability Actively Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 15, 2026 Palo Alto Networks Unit 42 has issued an urgent warning about active exploitation of CVE-2026-0257, a critical authentication bypass vulnerability affecting the GlobalProtect portal and gateway components of PAN-OS software. The flaw allows unauthenticated remote attackers to …

Criminal IP at Infosecurity Europe 2026: Introducing AITEM, the Next Chapter of Attack Surface Management

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Torrance, United States / California, June 11th, 2026, CyberNewswire Criminal IP by AI SPERA, a cyber threat intelligence platform delivering decision-ready intelligence and attack surface visibility to security teams worldwide, participated in Infosecurity Europe 2026 at ExCeL London this week, …

Maine Takes Data Breach Reporting Portal Offline After Fake VRChat and Discord Filings

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 14, 2026 The Office of the Maine Attorney General has temporarily taken its public-facing data breach reporting database offline after discovering that an unknown entity submitted fabricated breach notifications targeting two major online platforms, VRChat and Discord, in what …

152 Chrome Extensions Hide Ad Tracking and Fake Google Search Traffic

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 14, 2026 152 Chrome “live wallpaper” extensions on the Chrome Web Store have been caught secretly logging user data and faking Google “organic search” traffic to inflate ad revenue, despite promising they do not collect any data. This adware‑adjacent …

New Agentjacking Attack Hijacks Your AI Coding Agent to Run Code From a Hacker’s Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 13, 2026 New “Agentjacking” attack that hijacks AI coding agents and silently executes attacker-controlled code on developer machines using nothing more than a single injected Sentry error. The technique turns trusted AI assistants like Claude Code and Cursor into …