Official Game Installs Malware

PC Security Channel·267K views · 5 months ago
VulnerabilityArs Technica·5 months ago

Millions of iPhones can be hacked with a new tool found in the wild

A powerful iPhone-hacking technique called DarkSword has been discovered actively used by Russian threat actors in the wild. The attack is capable of compromising millions of iPhones, representing a significant threat to iOS users globally.

MalwareWeLiveSecurity·5 months ago

EDR killers explained: Beyond the drivers

ESET researchers examine the broader EDR killer ecosystem, revealing tactics attackers use to abuse vulnerable drivers in order to disable endpoint detection and response solutions. This analysis extends beyond initial driver-based research to provide deeper insight into how adversaries exploit these weaknesses against enterprise security infrastructure.

Mac Imaging Made Easy with Fuji

13Cubed·4.5K views · 5 months ago

🎉 New for 2026! In this episode, we’ll look at Fuji — a free, open-source tool for performing live, logical forensic acquisitions of Mac computers (Intel or Apple Silicon). You’ll see how Fuji leverages built-in macOS tools to generate a DMG image, ready for analysis in your forensic tool of choice.

MalwareBitdefender Labs·5 months ago

Windsurf IDE Extension Drops Malware via Solana Blockchain

Bitdefender researchers have identified a malicious Windsurf IDE extension that leverages the Solana blockchain to deliver and host a multi-stage NodeJS stealer payload. This attack chain represents an unconventional approach to malware distribution, using blockchain infrastructure to obscure and deploy the theft functionality against developers using the compromised IDE extension.

VulnerabilityWeLiveSecurity·5 months ago

Face value: What it takes to fool facial recognition

ESET researcher Jake Moore demonstrated vulnerabilities in widely-used facial recognition systems using smart glasses, deepfakes, and face swaps to bypass their security controls. Moore will present these attack techniques and findings at RSAC 2026, highlighting practical methods for compromising biometric authentication systems.

Undetected Discord Malware

PC Security Channel·170K views · 5 months ago
MalwareBitdefender Labs·5 months ago

Windows and macOS Malware Spreads via Fake “Claude Code” Google Ads

Bitdefender Labs has identified a malicious Google Ads campaign impersonating Claude, Anthropic's large language model, to distribute malware across Windows and macOS systems. The threat leverages search traffic from users looking to download Claude, exploiting the popularity of the AI tool to increase infection rates. This attack demonstrates how threat actors continue to abuse legitimate advertising platforms to deliver multi-platform malware at scale.

PhishingBitdefender Labs·5 months ago

Global Scam Machines: Inside a Meta-Powered Investment Fraud Ecosystem Spanning 25 Countries

In February-March 2026, Bitdefender Labs identified and mapped a sprawling global scam infrastructure and scalable disinformation-for-profit network that uses trusted news brands, real personalities, fabricated media narratives, emotional hooks, and advanced evasion techniques to drive victims into investment fraud funnels. On February 9-March 5, 2026, we analyzed 310 malvertising campaigns distributed through paid advertising on Meta platforms. Key findings: * This is a global, coordinated

Policy & LegalWeLiveSecurity·5 months ago

What cybersecurity actually does for your business

The ability to continue operating safely in an unsafe environment where competitors cannot is a competitive advantage that is rarely measured or discussed

OtherGoogle Project Zero·5 months ago

On the Effectiveness of Mutational Grammar Fuzzing

Mutational grammar fuzzing, while effective at finding complex bugs, suffers from two key limitations: coverage gains don't necessarily correlate with bug discovery, especially when bugs require chaining multiple function calls, and the technique tends to produce overly similar samples that lack diversity. A simple but effective mitigation strategy involves periodically restarting fuzzing workers with empty corpora while maintaining a server corpus, allowing workers to generate fresh diverse samples independently before syncing with accumulated coverage, which empirical testing on libxslt demonstrated could uncover unique crashes more quickly than continuous fuzzing sessions.

Load more