June 19, 2026 A newly discovered cryptocurrency clipper malware has been quietly stealing digital assets from victims since February 2026, spreading through a trick that most users would never suspect: …
AI-Powered Public Surveillance and Biometric Data Collection Expand Government Monitoring
June 19, 2026 Governments are expanding their digital reach in ways unimaginable just a decade ago. A growing wave of AI-powered surveillance, biometric data collection, and commercial spyware is reshaping …
Authorities Dismantle SocGholish Malware Network — 106 Servers and 101 Domains Seized
June 18, 2026 Authorities have dismantled the criminal infrastructure behind SocGholish, one of the most persistent malware frameworks active since 2017, seizing 106 servers and 101 domains while remediating nearly …
‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm
For the past four years, a sprawling Android-based botnet called Popa has forced millions of consumer TV boxes to relay Internet traffic linked to advertising fraud, account takeovers, and mass …
New iPhone BootROM Vulnerability Exposes Apple SoCs to Full Chain-of-Trust Compromise
June 18, 2026 A novel BootROM vulnerability, dubbed usbliter8, affects Apple devices powered by A12, S4/S5, and A13 SoCs. The exploit chains a hardware-level bug in the Synopsys DWC2 USB …
Hackers Breached Klue Integration to Steal Salesforce CRM Data via OAuth Tokens
June 18, 2026 Threat actors exploited a trusted third-party SaaS integration to silently harvest enterprise CRM data, marking the latest chapter in an escalating wave of OAuth-abuse attacks targeting Salesforce …
Multiple Vulnerabilities in Firefox 152 Enables Remote Code Execution Attacks
June 18, 2026 Mozilla has released Firefox 152 to address multiple high-severity vulnerabilities that could allow remote code execution (RCE) and sandbox escape attacks. The security advisory, published on June …
Hackers Can Leverage SQL Server 2025 AI Features to Exfiltrate Sensitive Data
Hackers are increasingly finding new ways to abuse legitimate enterprise features, and Microsoft SQL Server 2025’s newly introduced AI capabilities are now raising serious security concerns. SpecterOps researchers have demonstrated …
Hackers Abuse Microsoft Fondue.exe to Side-Load APPWIZ.cpl and Execute Malware
June 18, 2026 A newly uncovered attack campaign has brought a rarely scrutinized Windows executable into the spotlight. Threat actors are actively abusing Fondue.exe, a legitimate Microsoft utility built into the …
Hackers Abuse Legitimate RMM Tools to Maintain Persistent Access and Evade Detection
June 18, 2026 Hackers have found a new way to get AI tools to do their dirty work without paying for it. Instead of using their own resources, attackers are …

