Aug 3, 2026, 10:26 PM UTC / 6 min
Unit 42 showed three post-compromise paths from Chrome's local passkey state to silent assertions, substituted verification keys, or the master secret protecting synced credentials.
Read article → Aug 3, 2026, 2:32 PM UTC / 5 min
Chrome fixed more security bugs in two milestones than in the previous 23 while using AI across discovery, triage and fix preparation.
Read article → Aug 3, 2026, 10:24 AM UTC / 6 min
N-central operators need Hotfix 2 build 2026.3.1.10 and a downstream endpoint hunt because the new release supersedes the first hotfix.
Read article → Aug 2, 2026, 1:50 PM UTC / 5 min
A ServiceWorker and SharedWorker combine a clean Bun runtime, delivered PE sections, and locally generated bytes before a same-origin download.
Read article → Aug 2, 2026, 3:17 AM UTC / 5 min
A poisoned build can start a memory-resident loader, re-arm through macOS preferences, and seed more projects, Git hooks, and archives.
Read article → Jul 29, 2026, 3:53 AM UTC / 4 min
Kaspersky found BridgeHead using Windows SSO to cross corporate proxies before relaying server-selected TCP traffic through compromised hosts.
Read article → Jul 27, 2026, 4:51 AM UTC / 4 min
The botnet spread through developer extensions and packages, then used stolen credentials to force-push malicious code into default branches.
Read article → Jul 27, 2026, 4:28 AM UTC / 5 min
Push Security traced paid search ads to shared ChatGPT and Claude pages that handed visitors to fake desktop-app downloads.
Read article → Jul 27, 2026, 3:11 AM UTC / 5 min
A Teams lure installed a headless Edge extension and a Python native-messaging host, giving a ransomware access broker a quiet route to local command execution.
Read article → Jul 27, 2026, 1:39 AM UTC / 6 min
Cursor 3.0 fixed path-handling failures that let injected instructions write beyond a project and tamper with the sandbox protecting the host.
Read article →