Mass Telnet Exploitation Underway as Hackers Target Hundreds of Thousands of Internet-Exposed Systems
Open-Source Attacks – Active Telnet Exploitation Campaign Date Observed: February 5, 2026 Overview A large-scale, active exploitation…
continue reading..
Russian APT28 Hackers Weaponize New Microsoft Office Flaw Within Hours, Launch Silent Espionage Blitz Across Europe and Middle East
APT28 “Operation Phantom Net Voxel” Incident Window: February 4–5Threat Actor: APT28Motivation: Strategic cyber-espionageConfidence Level: High Executive Summary…
continue reading..
Fileless Malware Campaign Uses Disk Images and Memory Injection to Bypass Antivirus on Windows Systems
DEAD#VAX Campaign The activity tracked as DEAD#VAX represents a stealthy malware delivery campaign designed to establish persistent…
continue reading..
Malicious VS Code Extensions Turn Developer Tools Into Data Spies, Exposing Code From 1.5 Million Machines
VS Code Marketplace Malicious Extensions Incident Timeframe: January 28–31Category: Supply-chain compromise / malicious IDE extensionsImpact: Source-code theft,…
continue reading..
Trusted Antivirus Turned Weapon: eScan Update Server Breach Pushes Malware to Users Worldwide
eScan Antivirus Update Server Compromise Incident Type: Supply-chain compromise / trusted software abuseSeverity: CriticalScope: Consumer and enterprise…
continue reading..
AI-Powered Espionage: RedKitten Targeted NGOs and Activists During Iran Protest Crackdown
RedKitten Campaign – Detailed Incident Analysis Date observed: January 2026Threat actor: RedKitten (Farsi-speaking, politically motivated)Primary region of…
continue reading..
iOS Banking Trojan Steals Faces: GoldPickaxe Uses Deepfake Videos to Bypass Mobile App Security
Incident Overview: GoldPickaxe iOS Malware Campaign What happened In late January, a new mobile malware campaign was…
continue reading..
Fake KYC Alerts Turn Smartphones into Silent Spies, Government Warns Android Users
Incident Overview: “Twice is Wise” Cyber Awareness Campaign – Social Engineering RAT Malware via Fake KYC Updates…
continue reading..
0APT Ransomware Floods Leak Sites in 24 Hours, Overwhelming US Tech and Professional Firms
Ransomware Incident Overview – 0APT Surge What happened On 30 January, the ransomware operation known as 0APT…
continue reading..
