Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Hacktivism today: What three years of research reveal about its transformation
- Winter Olympics 2026: Hacktivism surges ahead of protests and suspected sabotage
- Unveiling GRU’s information operations troops with OSINT and medals
- New survey reveals how security researchers and journalists experience legal and criminal threats
- Palantir’s Swiss exit highlights global data sovereignty challenge
- The hidden backdoor to 200 airports: A supply chain failure in aviation
- Cryptocurrency flows to suspected human trafficking services surge 85% year-over-year
For the more technical
- February 2026 Patch Tuesday: Six zero-days among 59 CVEs patched
- Active exploitation of SolarWinds Web Help Desk
- DKIM replay attacks exposed: How cybercriminals abuse Apple and PayPal invoice emails
- Tenant from hell: Prometei's unauthorized stay in your Windows Server
- Fake 7-Zip downloads are turning home PCs into proxy nodes
- AgreeToSteal: The first malicious Outlook add-in leads to 4,000 stolen credentials
- Malicious dYdX packages published to npm and PyPI after maintainer compromise
- Foxveil – new malware loader abusing Cloudflare, Discord, and Netlify as staging infrastructure
- Technical analysis of GuLoader obfuscation techniques
- OysterLoader unmasked: The multi-stage evasion loader
- LummaStealer is getting a second life alongside CastleLoader
- Infostealers without borders: macOS, Python stealers, and platform abuse
- Odyssey stealer: Inside a macOS crypto-stealing operation
- Deep dive into new XWorm campaign utilizing multiple-themed phishing emails
- Employee monitoring and SimpleHelp software abused in ransomware operations
- 19 shades of LockBit5.0, inside the latest cross-platform ransomware’s newest leaked samples: Part 1, Part 2, Part 3
- Phorpiex phishing campaign delivers Global Group ransomware
- Knife Cutting the Edge: Disclosing a China-nexus gateway-monitoring AitM framework
- BADIIS to the bone: New insights to a global SEO poisoning campaign
- Amaranth-Dragon: Weaponizing CVE-2025-8088 for targeted espionage in the Southeast Asia
- Fake recruiter campaign targets crypto devs
- UNC1069 targets cryptocurrency sector with new tooling and AI-enabled social engineering
- The Shadow Campaigns: Uncovering global espionage
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments