Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Microsoft Copilot App Overhaul Merges Personal Chats and Ends Podcasts, Deep Research
1+ day, 7+ hour ago (462+ words) Microsoft is reshaping its consumer and productivity AI strategy with a major update to its Copilot application, merging personal chat histories and generated content while discontinuing several prominent capabilities. The changes affect consumer users of Copilot and coincide with the…...
Ruby 4.0 Marshal.load RCE Gadget Chain Exposes Critical Deserialization Risk
1+ day, 6+ hour ago (583+ words) A newly disclosed universal deserialization gadget chain shows how a single unsafe Marshal.load operation can reportedly produce remote command execution in Ruby 4.0.6, underscoring the persistent danger of exposing Ruby’s native serialization mechanism to attacker-controlled data. According to research published…...
PATCHCORD Infrastructure Hosts SuperShell C2 for Remote Commands and Webshell Management
2+ day, 7+ hour ago (425+ words) The installer’s metadata, publisher strings, and portal URL were crafted to resemble the legitimate Afghan Telecom environment, showing that the operators had tailored their deception to the intended victim basis. Once launched, PATCHCORD establishes persistence by hijacking browser shortcuts for…...
24 Malware Crypter Sellers Turn EDR Evasion and In-Memory Execution Into Paid Services
2+ day, 6+ hour ago (391+ words) An analysis of 24 active crypting-service vendors shows that customers can now buy payload obfuscation, in-memory execution, anti-analysis controls, process injection, persistence, and rapid “re-crypting” as packaged services rather than develop them internally. The current market is far broader. Higher-tier vendors…...
Fortinet FortiWeb and FortiClient Flaws Let Unauthenticated Attackers Gain Access and Execute Arbitrary Code
2+ day, 8+ hour ago (352+ words) The flaws CVE-2026-26035 and CVE-2026-70465 were disclosed as part of an August 2026 patch release that addressed eight security issues across various Fortinet products. The vulnerabilities affect different attack surfaces and should not be regarded as a single exploit chain. CVE…...
Apple Warns iPhone Users in 110 Countries of Mercenary Spyware Attacks
2+ day, 7+ hour ago (472+ words) Apple has issued a new set of high-confidence Apple Threat Notification alerts, warning selected iPhone users in 110 countries that they may be targets of government-grade mercenary spyware. These notifications are not routine phishing messages or general security advisories. According to…...
Trezor Shipping Provider Data Breach Exposes Personal Data of 13,689 Customers
2+ day, 9+ hour ago (513+ words) Hardware wallet manufacturer Trezor has recently disclosed a data breach at ShipMonk, a third-party shipping provider. This breach exposed the personal information of 13,689 customers. ShipMonk notified Trezor on August 10, 2026, that an unauthorized actor had accessed its systems, which contained customer…...
New AmnesiaStealer Malware Targets macOS Users via ClickFix Attacks
2+ day, 9+ hour ago (545+ words) Researchers have observed the campaign using a counterfeit GitHub-themed page that displays a “Download for macOS” prompt along with a deceptive “Verified Publisher” badge. Rather than downloading an application directly, the site instructs victims to open Terminal, paste a command,…...
Jewelbug Uses Public Google Docs as Malware Command-and-Control Delivery Channel
3+ day, 57+ min ago (418+ words) A China-linked threat group tracked as Jewelbug has turned public Google Docs into a resilient command-and-control delivery channel, embedding freshly obfuscated malware payloads in documents that victim implants retrieve and execute. Investigators found that both missions rely on shared infrastructure,…...
Akira Ransomware Reboots Windows Into Safe Mode to Disable EDR and Microsoft Defender
3+ day, 6+ hour ago (569+ words) An Akira ransomware affiliate has been observed rebooting a compromised Windows host into Safe Mode with Networking to disable endpoint protection an anti-EDR tactic linked to the operation. The intrusion failed to encrypt files after the stripped-down boot environment triggered…...