Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Written by: Jules Czarniak Introduction As highlighted in the Mandiant M-Trends 2026 report, the mean time-to-exploit (TTE) has dropped to -7 days, meaning vulnerabilities are often exploited a week before a patch even exists.
You're browsing a legitimate small business website.
A new macOS infostealer malware dubbed "ClickFix" is being distributed through compromised legitimate small business websites, according to LevelBlue SpiderLabs. The attack begins when users encounter a fake Cloudflare verification prompt asking them to paste and execute a malicious Terminal command.
This article describes a macOS ClickFix campaign where compromised websites display fake human verification prompts. Users are instructed to open Terminal and paste code, which downloads and executes a blockchain-powered infostealer.
Kaspersky researchers uncovered an ongoing APT campaign, dubbed HelloNet, targeting Russian organizations in government, energy, transport, education, logistics, and industrial sectors since at least May 2026. The attackers exploited the ViPNet update system (a secure networking suite) to deploy malware via DLL sideloading, placing a malicious file (wtsapi32.dll) in the ViPNet directory.
The article reports on the HelloNet APT campaign, which exploits the ViPNet update system to launch implants. It targets large Russian organizations in multiple sectors, including government, energy, and logistics.