Browser Hijack
-
Read moreResearchers uncovered a large ClickFix campaign using over 250 fake macOS domains and browser fingerprinting to deliver Atomic Stealer (AMOS), targeting passwords, crypto wallets, and sensitive data.
-
Posted: July 31, 2026Views: 44Read moreAI-generated phishing attacks can steal browser sessions and bypass MFA without malware. Learn how AiTM attacks target session tokens and how businesses can improve security.
-
Read moreMicrosoft warns that ACR Stealer is using ClickFix lures to steal browser passwords, authentication tokens, Microsoft 365 files, and sensitive enterprise data.
-
Posted: June 04, 2026Views: 81Read moreResearchers discovered a Google Gemini vulnerability that allowed malicious WhatsApp, Slack, and SMS notifications to manipulate the AI assistant and trigger unauthorized actions on Android devices.
-
Posted: November 13, 2025Views: 211Read moreMaverick spreads via WhatsApp to steal bank credentials—learn about its tactics, links to Coyote, and defenses against messaging-based threats.
-
Read moreAI browsers like Atlas bypass paywalls—learn the techniques, risks to publishers, and defenses to protect your content.
-
Read moreCVE-2025-54236 in Adobe Magento allows account hijacking—learn about active exploits, risks, and urgent patching needs to secure your e-commerce platform.
-
Read more131 rebranded Chrome extensions spam Brazilian users via WhatsApp—learn about the violations, white-label model, and tips to avoid risky add-ons and protect your messaging.
-
Posted: October 14, 2025Comments: 1Views: 221Read moreKandji uncovers a September 2025 campaign where attackers clone Homebrew sites to inject malware like Odyssey Stealer via clipboard tricks—exploit C2 servers and bypass trust; mitigate by verifying sources and using endpoint monitoring.
-
Read moreAttackers use zero-day in Edge's IE Mode Chakra engine to trick users into legacy reloads, enabling RCE and SYSTEM access for malware. Microsoft disabled easy triggers—configure manually via Settings, migrate from IE, and prioritize modern web standards to stay secure.