PromptSpy: Android Malware Uses Google Gemini AI
PromptSpy is a newly discovered Android malware family that uses Google’s Gemini AI model to make real-time decisions on infected devices. Instead of using fixed screen coordinates or simple automation [...]
Microsoft 365 Copilot AI Summary Flaw Exposes Emails
A security weakness in Microsoft 365 Copilot is allowing the AI assistant to generate summaries of emails that are marked as confidential. This happens even when Data Loss Prevention (DLP) [...]
Threat Actors Push ClickFix Payload via Browser Cache
Cybersecurity researchers have uncovered a new version of the ‘ClickFix’ social engineering campaign. In this updated attack, malware is hidden directly inside the victim’s browser cache to avoid detection. This [...]
Critical zero-day vulnerability is being actively exploited in Dell RecoverPoint
The flaw, tracked as CVE-2026-22769, has a maximum CVSS score of 10.0 (Critical) and has been exploited since at least mid-2024. Incident response investigations link the activity to UNC6201, a [...]
Cloud Password Managers Expose 25 Security Flaws
Researchers from ETH Zurich have discovered 25 serious security vulnerabilities in three major cloud password managers: Bitwarden, LastPass, and Dashlane. Together, these platforms protect more than 60 million users worldwide. [...]