MuddyWater Launches “Operation Olalampo” Targeting MENA with GhostFetch, CHAR, and HTTP_VIP

A well-known hacking group called MuddyWater has launched a new cyberattack campaign targeting organizations in the Middle East and North Africa (MENA). Security researchers have named this campaign “Operation Olalampo.” The activity was first observed on January 26, 2026. Experts say the attacks mainly focus on government bodies, businesses, and critical sectors in the region. … Continued

Trade Secret Theft Charges and Apple Zero-Click Spyware Expose Dual Cybersecurity Threats

Federal prosecutors in the United States have indicted three individuals linked to Silicon Valley over the alleged theft of trade secrets. The case involves two former Google engineers, Samaneh Ghandali and Soroor Ghandali, along with Mohammadjavad Khosravi. The charges were announced by the U.S. Attorney’s Office for the Northern District of California. Authorities say sensitive … Continued

PromptSpy Becomes First Android Malware to Use Generative AI at Runtime

A new Android malware named PromptSpy has been discovered by cybersecurity researchers. It is being described as the first known Android malware to use generative AI while running on a device. This marks a significant change in how mobile threats are being developed. Instead of relying only on fixed code, this malware can make decisions … Continued

Africa-Wide Cybercrime Crackdown Leads to 651 Arrests, $4.3 Million Recovered in INTERPOL Operation

Police agencies across Africa arrested 651 suspects in a major cybercrime crackdown carried out with the support of INTERPOL. The operation was named Operation Red Card 2.0 and was conducted between 8 December 2025 and 30 January 2026. It focused on organized online scam networks operating across multiple countries. The action highlighted the growing concern … Continued

Dell RecoverPoint for VMs Zero-Day (CVE-2026-22769) Actively Exploited Since Mid-2024

A critical security vulnerability has been identified in Dell Technologies RecoverPoint for Virtual Machines. The flaw is tracked as CVE-2026-22769 and has been classified as critical. Security researchers confirmed that it has been actively exploited since mid-2024. Because attackers used it before a fix was released, it is considered a zero-day vulnerability. The vulnerability is … Continued

Notepad++ Fixes Hijacked Update Infrastructure After Months-Long Targeted Supply-Chain Malware Campaign

Notepad++ has fixed a serious security issue after hackers hijacked its update system to deliver targeted malware. The incident involved attackers secretly manipulating how software updates were delivered to certain users. Instead of receiving legitimate updates, selected victims were redirected to malicious servers. The issue has now been officially addressed, and a secure update has … Continued

Ireland Launches GDPR Investigation Into X Over Grok-Generated Explicit Content

Ireland’s Data Protection Commission (DPC) has opened a formal investigation into social media platform X over concerns related to its AI chatbot, Grok. The announcement was made on February 17, 2026. Ireland acts as X’s lead regulator in the European Union because the company’s EU headquarters is located in Dublin. The inquiry will examine whether … Continued

Washington Hotel Japan Confirms Ransomware Attack, Business Data Accessed

The Washington Hotel group in Japan has confirmed that it recently experienced a ransomware attack on part of its internal computer systems. The company publicly disclosed the incident through an official notice. According to the statement, the issue was identified late at night on February 13, 2026, at around 10:00 PM local time. Suspicious activity … Continued

Chrome Zero-Day CVE-2026-2441 Under Active Attack, Emergency Update Released

Google has released an urgent security update for its Chrome browser after confirming an actively exploited zero-day vulnerability. The flaw is tracked as CVE-2026-2441. It was discovered while attackers were already using it in real-world attacks. Because of this confirmed exploitation, Google responded with an emergency patch. The vulnerability is described as a “use-after-free” bug … Continued

Newsletter line