Emojis in PureRAT’s Code Point to AI-Generated Malware Campaign Information Security Magazine 2 weeks 1 day ago Researchers discover that PureRAT’s code now contains emojis – indicating it has been written by AI based-on comments ripped from social media.
AI Security Threats Loom as Enterprise Usage Jumps 91% Information Security Magazine 2 weeks 1 day ago Zscaler analysts found critical vulnerabilities in 100% of enterprise AI systems, with 90% compromised in under 90 minutes
Researchers Uncover 454,000+ Malicious Open Source Packages Information Security Magazine 2 weeks 1 day ago Sonatype warns that open source threats became industrialized with a surge in malicious packages in 2025
Chinese Money Launderers Drive Global Ecosystem Worth $82bn Information Security Magazine 2 weeks 1 day ago Chainalysis claims Chinese money launderers now account for 20% of global activity
Pyodide Sandbox Escape Enables Remote Code Execution in Grist-Core Information Security Magazine 2 weeks 2 days ago Critical sandbox escape vulnerability in Grist-Core enables remote code execution via a malicious formula
PeckBirdy Framework Tied to China-Aligned Cyber Campaigns Information Security Magazine 2 weeks 2 days ago PeckBirdy command-and-control framework targeting gambling, government sectors in Asia since 2023 has been linked to China-aligned APTs
Over 80% of Ethical Hackers Now Use AI Information Security Magazine 2 weeks 2 days ago Bugcrowd study reveals 82% of security researchers now use AI, a big increase from 2023 figures
Microsoft Releases Patch for Office Zero Day Amid Evidence of Exploitation Information Security Magazine 2 weeks 2 days ago Microsoft urged customers running Microsoft Office 2016 and 2019 to apply the patch to be protected
World Leaks Ransomware Group Claims 1.4TB Nike Data Breach Information Security Magazine 2 weeks 2 days ago Nike is investigating after the World Leaks ransomware group posted a 1.4TB data dump
eScan Antivirus Supply Chain Breach Delivers Signed Malware Information Security Magazine 2 weeks 3 days ago Supply chain breach in eScan antivirus distributes multi-stage malware via legitimate updates
CISA Releases List of Post-Quantum Cryptography Product Categories Information Security Magazine 2 weeks 3 days ago CISA released initial list of PQC-capable hardware and software to guide companies amid quantum threats
Researchers Uncover “Haxor” SEO Poisoning Marketplace Information Security Magazine 2 weeks 3 days ago Fortra researchers have discovered a new SEO poisoning operation known as “HaxorSEO”
Law Firm Investigates Coupang Security Failures Ahead of Class Action Deadline Information Security Magazine 2 weeks 3 days ago The US law firm Hagens Berman will lead a class action lawsuit against Coupang over security failures that led to a June 2025 data breach
Okta Flags Customized, Reactive Vishing Attacks Which Bypass MFA Information Security Magazine 2 weeks 3 days ago Threat actors posing as IT support teams use phishing kits to generate fake login sites in real-time to trick victims into handing over credentials
Wiper Attack on Polish Power Grid Linked to Russia’s Sandworm Information Security Magazine 2 weeks 3 days ago A destructive cyber attack targeting Poland’s energy sector has been linked to Russian APT group Sandworm
NHS Issues Open Letter Demanding Improved Cybersecurity Standards from Suppliers Information Security Magazine 2 weeks 6 days ago Open letter by NHS technology leaders outlines plans to identify risks to software supply chain security across health and social care system
Under Armour Investigates Data Breach After 72 Million Records Allegedly Exposed Information Security Magazine 2 weeks 6 days ago Under Armour said there is no evidence at this point to suggest the incident affected systems used to process payments or store customer passwords
Critical Appsmith Flaw Enables Account Takeovers Information Security Magazine 3 weeks ago Critical vulnerability in Appsmith allows account takeover via flawed password reset process
RealHomes CRM Plugin Flaw Affected 30,000 WordPress Sites Information Security Magazine 3 weeks ago Security flaw in RealHomes CRM plugin allowed file uploads; patches released for 30,000+ sites
Zero-Day Exploits Surge, Nearly 30% of Flaws Attacked Before Disclosure Information Security Magazine 3 weeks ago VulnCheck analysts found that vulnerabilities exploited before being publicly disclosed rose from 23.6% in 2024 to 28.96% in 2025