The Jewelbug hacker group has been carrying out espionage operations targeting governments and militaries while also engaging in cryptocurrency fraud. Although the threat actor has targeted government ...
China-linked Jewelbug uses XG-Web for espionage and crypto fraud, stealing over 580,000 browser cookies and thousands of ...
WordPress fixes CVE-2026-64638, a pre-auth login XSS affecting every version, with a demonstrated path to PHP execution under ...
China-linked Jewelbug used shared infrastructure to conduct government espionage and cryptocurrency fraud, logging more than ...
A threat actor compromised the upstream infrastructure of BdThemes, a developer of premium WordPress web-design tools, and modified a remote JSON feed delivered to administrators' browsers to create ...
Cloudflare has introduced Kitesurf, a cloud-hosted browser designed for AI agents instead of people. The company says the ...
Amber Salzman has seen a rare, inherited muscle disorder devastate her family. Now, with a fresh $90 million supply of cash, ...
Laundry Bear exploits security flaw in unpatched Zimbra servers, stealing 90 days of emails and authentication data without victims clicking a link.
We've got good news for developers who are enamored with Cloudflare Workers and Durable Objects but don’t want to be tied into that company’s backend infrastructure. Last week, Node.js creator Ryan ...
Researchers discovered hackers-for-hire performing cyber espionage and financially motivated heists from the same Web panel.
Apple is limiting bug bounty program submissions due to AI slop, North Carolina ports face cyberattacks, and Wall Street hedge funds hacked.