Software

New AmnesiaStealer macOS malware hijacks browser sessions via remote control

A new information-stealing malware called AmnesiaStealer, which targets macOS users via ClickFix attacks, includes a streaming module that allows the attacker to interactively control the victim’s web browser. A notable capability is copying the victim’s Chromium profile, including its authentication state, and loading it into a hidden, headless browser on the infected system. This allows […]

New AmnesiaStealer macOS malware hijacks browser sessions via remote control Read More »

Large-scale DDoS attacks disrupted Threema secure messaging service

Multiple distributed denial-of-service (DDoS) attacks targeted the Threema secure messaging service earlier this week, causing severe disruptions to communications. ​Organizations using Threema On-Prem did not experience any issues because they rely on their own infrastructure. In a post-mortem report on Friday, the end-to-end encrypted instant messaging service said that the attacks were difficult to defend

Large-scale DDoS attacks disrupted Threema secure messaging service Read More »

SafePal data breach impacts 39,798 customers, stolen info for sale

Cryptocurrency hardware wallet provider SafePal is warning of a data breach affecting about 39,798 customers after a flaw was exploited to steal customer order information, and a threat actor is now claiming to be selling the stolen data. SafePal says the breach impacts customers who placed orders between March 2, 2025, and April 11, 2026,

SafePal data breach impacts 39,798 customers, stolen info for sale Read More »

US courts will start publishing how often the government uses spyware

The FBI has been using hacking techniques and tools, such as spyware, since at least 1998, but to date there is no public data counting how often the feds were deploying them. That’s about to change — at least for the use of spyware for tapping into someone’s real-time communications. Starting in 2029, U.S. judiciary

US courts will start publishing how often the government uses spyware Read More »

Shell investigates ‘potential incident’ after Clop data theft claims

Oil giant Shell has confirmed it is investigating a potential security incident after the Clop ransomware gang claimed it stole 89GB of data. Shell is a British multinational energy conglomerate and one of the world’s top three oil and gas companies, after Chevron and ExxonMobil. It has 85,000 employees in more than 70 countries and

Shell investigates ‘potential incident’ after Clop data theft claims Read More »

Microsoft’s blobby AI companion has begun his ascent to the heavens to join Clippy and Cortana. Okay, he’s being booted to another platform

Pour one out for Mico, Microsoft’s Copilot AI character that is definitely not Clippy in disguise. The blobby little companion isn’t dead, though. He’s instead being removed from Copilot’s voice mode and sent to Microsoft’s “Learn Live” platform, where he’ll work as some sort of teaching assistant. Which sounds a lot like “went to live

Microsoft’s blobby AI companion has begun his ascent to the heavens to join Clippy and Cortana. Okay, he’s being booted to another platform Read More »

RingCentral data breach exposed info of 1.6 million accounts

The ShinyHunters extortion group stole personal information from 1.6 million RingCentral accounts after hacking the company in July, according to the data breach notification service Have I Been Pwned. RingCentral is a cloud-based collaboration and communication platform used by over 600,000 businesses for services such as calling, messaging, and voicemail. The company disclosed the incident

RingCentral data breach exposed info of 1.6 million accounts Read More »

Data analyst sent to prison for stealing data, extorting employer

A former data analyst contractor for Brightly Software has been sentenced to two years in prison for targeting his employer in a $2.5 million extortion scheme. Brightly is a Software-as-a-Service (SaaS) company formerly known as SchoolDude, which was acquired by Siemens in August 2022. Brightly employs over 700 people and provides asset management and maintenance

Data analyst sent to prison for stealing data, extorting employer Read More »

Chrome just flagged a hugely popular extension as unsafe

Affiliate links on Android Authority may earn us a commission. Learn more. Having a Chrome extension you have relied on for years suddenly red-flagged can instantly spark concerns about malware or compromised software. That exact panic hit over 11 million users this week when GoFullPage, a staple full-page screenshot utility, abruptly disappeared from the Chrome

Chrome just flagged a hugely popular extension as unsafe Read More »

Hackers breach govt webmail while running parallel crypto fraud

The Jewelbug hacker group has been carrying out espionage operations targeting governments and militaries while also engaging in cryptocurrency fraud. Although the threat actor has targeted government agencies and organizations in critical sectors, including defense, telecommunications, education, and aviation, its cryptocurrency-related activity suggests that they may also operate as a hack-for-hire group that seeks to

Hackers breach govt webmail while running parallel crypto fraud Read More »