Software

ClickFix attack pushes macOS infostealer for crypto theft attacks

A Go-based malware delivered in ClickFix attacks targeting macOS users is stealing cryptocurrency assets, browser-stored passwords, Apple Keychain data, and cached credentials. ​The malware can intercept and redirect transactions with various cryptocurrencies. Although it can empty wallets entirely, it can also calculate the total value of a transaction to determine how much to divert to […]

ClickFix attack pushes macOS infostealer for crypto theft attacks Read More »

Real emails, hijacked payments: Two H1 2026 attack chains

Gen Threat Labs followed two H1 2026 campaigns where attackers used legitimate accounts, browser settings and blockchain data as part of the attack path. The Gen Threat Report is a twice-yearly examination of the biggest cyber threats shaping the digital landscape, offering an in-depth look at the trends affecting consumers around the world. Gen’s H1

Real emails, hijacked payments: Two H1 2026 attack chains Read More »

North Carolina Ports confirms cyberattack disrupting operations

The North Carolina Ports Authority has confirmed that a cyberattack disrupted IT systems and slowed operations at the Port of Wilmington, Port of Morehead City, and Charlotte Inland Port. The three facilities are all part of the port, constituting two principal commercial deepwater seaports and an inland hub. The Port of Wilmington, which is the

North Carolina Ports confirms cyberattack disrupting operations Read More »

Levi Strauss & Co. says hackers stole corporate data in cyberattack

Levi Strauss & Co. (Levi’s) says that hackers used social engineering on three of its employees to gain access to and steal corporate data stored on their machines. The company has disclosed the incident in a filing with the U.S. Securities and Exchange Commission (SEC), saying that its response was sufficiently quick to prevent the

Levi Strauss & Co. says hackers stole corporate data in cyberattack Read More »

Unlimited Technology Systems breach impacts 3.8 million people

Healthcare software company Unlimited Technology Systems reported that more than 3.8 million people were impacted by a data breach incident that occurred in October 2025. The organization submitted data breach notification samples to the authorities this year on July 1st without revealing the exact number of impacted individuals. An entry on the breach notification portal

Unlimited Technology Systems breach impacts 3.8 million people Read More »

Metabase SQLi zero-day exploited in customer data-theft attacks

A critical Metabase SQL injection vulnerability was exploited in zero-day attacks to breach customer instances in data theft attacks, known to impact Framework and Tally. Metabase disclosed the attacks on Thursday, warning that its Metabase Cloud SaaS platform was compromised through a previously unknown vulnerability affecting versions 1.58 and above. The company warns that self-hosted

Metabase SQLi zero-day exploited in customer data-theft attacks Read More »

Chrome on Android is falling behind — here are 5 features it needs now

Affiliate links on Android Authority may earn us a commission. Learn more. Extensions, proper privacy controls, customization, and background playback — competing browsers have been checking these boxes for years. The list of things Chrome still hasn’t gotten around to is longer than it should be, and it’s high time Google closed the gap. If

Chrome on Android is falling behind — here are 5 features it needs now Read More »

How AI-powered phishing killed blocklists for good

Blocklists were already losing ground before AI entered the picture. Phishing domains have been getting shorter-lived for years, campaigns have been burning infrastructure faster, and the gap between blocklists and attacker campaigns keeps getting wider. AI just finished the job. Attackers are using AI to generate phishing pages from screenshots in minutes, spin up and

How AI-powered phishing killed blocklists for good Read More »

Google Blogger locks hundreds of blogs in malware false positive

Google has locked hundreds of Blogger websites after a false positive claimed they violated its “Malware and Similar Malicious Content” policy, with some sites actually deleted from the platform. The issue began on August 4, and it appears to affect many legitimate blogs that do not host malware or have malicious scripts. As seen by

Google Blogger locks hundreds of blogs in malware false positive Read More »

COLDCARD security audit phishing attack installs remote access tool

A phishing campaign is exploiting fears surrounding the recently disclosed COLDCARD wallet vulnerability and suspected $88.6 million Bitcoin theft to trick users into installing ScreenConnect remote access software. Proofpoint, which discovered the campaign, says it uses emails impersonating COLDCARD that claim a security audit is underway across its hardware cold storage wallet devices. The phishing

COLDCARD security audit phishing attack installs remote access tool Read More »