Chinese Hackers Deploy Atlas RAT Malware in Europe
A Chinese-speaking cybercrime group has shifted its sights to Europe, deploying a newly discovered remote access trojan called Atlas RAT malware alongside several custom-built tools. The campaign is targeting organizations in Germany, Italy, the United Kingdom, and South Africa. This is a sharp departure from the group's previous focus on East Asia. Researchers tracking the activity have labeled the group

WeedHack Minecraft Malware Has Infected Over 116,000 Systems
Gamers downloading Minecraft mods or cheat tools face a serious threat. A malware campaign called WeedHack Minecraft malware has infected more than 116,000 systems since January 2026, and it is still spreading at a rate of 2,000 to 3,000 new infections every day. The campaign was uncovered by researchers at McAfee Labs and represents one of the more sophisticated attacks

Dashlane Hit by Brute Force Attack, User Vaults Exposed
Attackers hit multiple Dashlane accounts using brute force methods, attempting logins from distant locations and unknown devices. Users discovered the problem when suspension emails arrived without warning, and many turned to Reddit to compare notes. Those emails told affected users that someone had tried to register a new device on their account and failed to enter the correct token after

Fake ChatGPT Download Used to Spread Infostealer Malware
Hackers have found a way to turn one of ChatGPT's own features against its users. A newly identified campaign is using ChatGPT's content-sharing tool to display convincing fake outage pages, pushing visitors toward a fake ChatGPT download that installs infostealer malware on their devices. The attack is especially dangerous because it never leaves a legitimate OpenAI domain. How the LLMShare

GPU Mining Malware Hides Inside Fake PC Tools
Hackers have found a new way to put your computer to work for them, and you might never notice it happening. Researchers have uncovered an active cryptojacking campaign that deploys GPU mining malware to hijack victims' graphics cards for cryptocurrency mining. What separates this campaign from similar attacks is the delivery method: poisoned search results and, for the first time,

Ajax Data Breach Leads to Dutch Police Arrest
Dutch police arrested a 35-year-old man from the municipality of Buren on the morning of May 27 in connection with the Ajax data breach. Investigators determined he had accessed the football club's computer systems without authorization on multiple occasions earlier this year. Officers searched his home and seized computers, hard drives, and other digital storage devices as part of the

Ghost CMS Flaw Hijacks 700+ Sites in ClickFix Attack
A security flaw in Ghost CMS is turning trusted websites into traps. Attackers are exploiting a critical SQL injection vulnerability to hijack hundreds of sites and launch a large-scale ClickFix attack against ordinary visitors — people who have no idea the pages they trust have been weaponized. The vulnerability, tracked as CVE-2026-26980, carries a CVSS score of 9.4. It affects

Microsoft Shuts Down Fox Tempest Malware Operation
A cybercrime group called Fox Tempest turned Microsoft's own software infrastructure into a weapon. The group ran a malware-signing service that let ransomware gangs and other criminals make dangerous software look completely legitimate — and it worked for nearly a year before Microsoft shut it down. Microsoft's Digital Crimes Unit dismantled the operation in May 2026, seizing infrastructure, revoking over

Teen Ran Infostealer Malware That Stole 28,000 Accounts
An 18-year-old from Odesa, Ukraine, has been identified as a key operator behind an infostealer malware campaign that compromised tens of thousands of online shoppers in the United States. Ukrainian cyberpolice, working alongside U.S. law enforcement, linked the suspect to attacks that ran throughout 2024 and into 2025 — draining credentials, hijacking accounts, and generating hundreds of thousands of dollars

How an npm Supply Chain Attack Poisoned 600 Packages
Over 600 software packages got poisoned in a single hour in the latest wave of the Shai-Hulud npm supply chain attack — and this time, the malware can forge the security badges developers trust to verify safe code. The npm supply chain attack represents a sharp escalation from a campaign that first emerged last September and has steadily grown more
