Search
From the feed · 5
Two attack chains defined the first half of 2026 in Gen's threat report. • Compromised business inboxes paired with browser manipulation for banking malware • Clipboard hijacking to redirect cryptocurrency payments
Microsoft Teams has a CVSS 7.5 vulnerability from improper cryptographic signature verification. An attacker can spoof identities over the network without authentication.
ClickFix attacks are reportedly pushing a Go-based macOS infostealer that steals cryptocurrency assets, browser passwords, Apple Keychain data, and cached credentials.
Cloudflare has introduced Cloudflare Wallets, letting AI agents execute payments across the internet using crypto stablecoins.
Adform's ad platform script was compromised in a supply-chain attack that replaced cryptocurrency wallet addresses copied to visitors' clipboards with attacker-controlled ones.