ClawJacked Vulnerability Exposed OpenClaw to Website-Based Hijacking and Data Theft

A serious security vulnerability named “ClawJacked” has been discovered in OpenClaw, a popular self-hosted AI agent platform. Security researchers revealed that malicious websites could secretly take control of a user’s locally running OpenClaw instance. This flaw allowed attackers to hijack the AI agent and potentially steal sensitive data. The discovery has raised significant concern within … Continued

Trojanized Gaming Tools Deliver Java-Based RAT Through Browser and Chat Platforms

Cybersecurity researchers have uncovered a new malware campaign targeting users through fake gaming utilities. Attackers are distributing trojanized tools that secretly install a Java-based Remote Access Trojan (RAT). The activity was identified and analyzed by Microsoft’s security team. This campaign shows how gaming platforms are becoming a new distribution channel for malware. In this operation, … Continued

Malicious StripeApi NuGet Package Mimics Official Library and Steals API Tokens

A malicious software package pretending to be a Stripe integration library was recently discovered on the NuGet repository. The fake package was created to closely imitate Stripe’s official .NET library used for payment processing. At first glance, it looked legitimate and worked like the real tool. However, hidden inside it was code designed to steal … Continued

Law Enforcement Takes Down RAMP, A Key Hub in the Ransomware Ecosystem

In a major cybercrime crackdown, U.S. authorities have seized control of a well-known ransomware forum called RAMP, short for Russian Anonymous Marketplace. The platform was widely used by ransomware gangs to advertise services, recruit partners, and trade stolen access to networks. After the operation, both its regular website and dark web domain were replaced with … Continued

FileZen CVE-2026-25108 Added to CISA KEV List Following Active Exploitation

The Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that a serious vulnerability in FileZen is being actively exploited. The flaw is tracked as CVE-2026-25108. Because of confirmed attacks, CISA added it to its Known Exploited Vulnerabilities catalog. This means the threat is real and organizations must act quickly. FileZen is a secure file transfer … Continued

Lazarus Group from North Korea Tied to Medusa Ransomware Operations

North Korea’s well-known Lazarus hacking group has been linked to recent attacks involving Medusa ransomware. Security researchers confirmed this connection after analyzing real-world incidents. The discovery shows how the group continues to expand its cyber operations. It also highlights the growing overlap between nation-state actors and ransomware campaigns. According to cybersecurity experts at Symantec, a … Continued

FBI Warns ATM Jackpotting Surge Has Cost Banks Over $20 Million in 2025

The Federal Bureau of Investigation (FBI) has issued a warning about a sharp rise in ATM “jackpotting” attacks across the United States. According to the agency, banks have lost more than $20 million in 2025 due to these incidents. The alert highlights a growing trend targeting ATM machines directly. Officials say the scale of these … Continued

Newsletter line