News
-
Sri Lanka arrests 37 Chinese nationals in suspected scam centre raid
Sri Lankan police arrested 37 Chinese nationals in a suburb of Colombo after raiding a suspected scam centre, seizing phones, tablets and SIM cards. Officials say the case fits a broader pattern of suspected fraud compounds in the country.
-
Mozilla says AI-assisted Mythos found 271 Firefox vulnerabilities with few false positives
Mozilla said its Mythos AI-assisted security research found 271 Firefox vulnerabilities, including 180 rated sec-high. The company faced skepticism over false positives and the lack of individual CVEs.
-
Ivanti says EPMM flaw exploited in limited attacks, CISA adds it to watchlist
Ivanti said a high-severity flaw in its Endpoint Manager Mobile software has been used in limited attacks and can allow remote code execution on affected on-premises systems. CISA added the issue to its exploited vulnerability catalog.
-
PCPJack credential stealer targets cloud systems and removes TeamPCP traces
Researchers said PCPJack is a new cloud-focused credential stealer that targets exposed services, removes TeamPCP-related artifacts and uses multiple exploits to spread across compromised environments.
-
Australia warns of ClickFix attacks spreading Vidar Stealer malware
Australia’s cyber security agency warned of a ClickFix campaign using compromised WordPress sites to push Vidar Stealer. The advisory recommends restricting PowerShell, using allow-listing and updating WordPress plugins and themes.
-
Fake Claude AI site pushes new Windows backdoor Beagle
A fake Claude AI website is pushing a malicious Claude-Pro Relay download that installs a new Windows backdoor called Beagle. The campaign uses a lookalike site, a 505MB archive and multiple malware delivery methods.
-
US commerce unit expands AI model testing agreements with Google, Microsoft and xAI
A US commerce unit has signed agreements with Google DeepMind, Microsoft and xAI to test frontier AI models before release, joining earlier deals with Anthropic and OpenAI as Washington weighs broader oversight.
-
vm2 library hit by a dozen critical Node.js sandbox escape flaws
A dozen critical vm2 vulnerabilities disclosed on May 7, 2026 can let attackers escape Node.js sandboxes, run code on the host and bypass allowlists. Fixes are available in vm2 3.11.2 and earlier patch releases.
-
Mirai-based xlabs_v1 botnet targets Android devices with exposed ADB
A Mirai-derived botnet called xlabs_v1 is targeting Android devices with exposed ADB services, using them for DDoS attacks and bandwidth-based profiling, according to a technical analysis from Hunt.io.
-
MuddyWater linked to Microsoft Teams intrusion that used Chaos ransomware branding
A Rapid7 technical analysis says MuddyWater used Microsoft Teams, screen-sharing and remote access tools in an early 2026 intrusion that looked like Chaos ransomware but focused on data theft and persistence.









