Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Fake Xeno Executor installers are infecting unsuspecting Roblox players with malware that provides remote access and steals sensitive information.
Fake Xeno Executor installers are infecting unsuspecting Roblox players with malware that provides remote access and steals sensitive information.
Cybersecurity researchers discovered malicious npm packages targeting Alibaba developer tools with a cross-platform remote access trojan. The attack impersonates private packages under the @ali scope, splitting malicious loader functionality across multiple packages.
Cybersecurity researchers discovered malicious npm packages targeting Alibaba developer tools with a cross-platform remote access trojan. The attack impersonates private packages under the @ali scope, splitting malicious loader functionality across multiple packages.
Unit 42 researchers discovered three attack paths that allow malware on a compromised Windows machine to silently hijack passkey-protected accounts via Google Password Manager. The attacks exploit weaknesses in how Chrome stores device keys and re-enrolls devices, without breaking the underlying cryptography.
Unit 42 researchers discovered three attack paths that allow malware on a compromised Windows machine to silently hijack passkey-protected accounts via Google Password Manager. The attacks exploit weaknesses in how Chrome stores device keys and re-enrolls devices, without breaking the underlying cryptography.