CERT UA Warns Of MATCHBOIL V2 Malware Hidden In Fake Notepad Plus Plus Plugin
CERT UA has warned of a phishing campaign by UAC 0099 that uses a fake Notepad++ plugin to deploy MATCHBOIL.V2 malware and establish persistent access on Windows systems.
CERT UA has warned of a phishing campaign by UAC 0099 that uses a fake Notepad++ plugin to deploy MATCHBOIL.V2 malware and establish persistent access on Windows systems.
A newly disclosed Cursor vulnerability allows malicious Git repositories on Windows to execute arbitrary code by placing a fake git.exe file in the project root, with no security patch currently available.
Microsoft has released security updates to address the RoguePlanet vulnerability, tracked as CVE 2026 50656, a privilege escalation flaw in Microsoft Defender that could allow attackers to gain SYSTEM level access.
A security researcher analyzed 3,000 ClickFix payloads and uncovered API driven malware delivery, new evasion techniques, and evolving social engineering methods targeting Windows and macOS users.
Kaspersky has uncovered the StrikeShark campaign using the newly identified SharkLoader malware to deploy Cobalt Strike across government, diplomatic, and enterprise organizations by exploiting multiple public facing vulnerabilities.
Microsoft has acknowledged the RoguePlanet zero day vulnerability affecting Microsoft Defender and confirmed that a security update is under development to address the privilege escalation flaw tracked as CVE 2026 50656.
Researchers have uncovered a cyber intrusion against a French automotive business where an attacker used Tailscale and OpenSSH to maintain persistent access even after command and control infrastructure became unavailable.
Security researcher Chaotic Eclipse has released a proof of concept exploit for Microsoft Defender zero day RoguePlanet, enabling SYSTEM level access on updated Windows 10 and Windows 11 systems.
National CERT has issued a cybersecurity advisory warning users and organizations about malware hidden in a fake PDF editor capable of stealing credentials and sensitive data.
Microsoft has warned users about two actively exploited Microsoft Defender vulnerabilities, including a privilege escalation flaw and a denial of service issue impacting Defender systems.