Trojan.ChimeraWire: New Windows Malware Turns Chrome into a Stealth SEO Click Fraud Engine

Colorful Chrome logo on textured surface with "ChimeraWire" label underneath.

Security analysts at Doctor Web have reported the discovery of Trojan.ChimeraWire, an unusual Windows-focused Trojan that weaponizes the Google Chrome browser to generate fake yet highly realistic user activity. Instead of encrypting data or stealing funds, this malware is designed to manipulate search rankings and traffic metrics while staying largely invisible to the victim. How … Read more

DroidLock Android Malware Combines Ransomware and Full Remote Control

Smartphone displays ransomware alert over a city skyline background.

Security researchers at Zimperium have identified a new family of Android malware dubbed DroidLock. The threat stands out because it merges two dangerous capabilities: ransomware-style device locking and remote access trojan (RAT) functionality. Once installed, DroidLock can block access to the smartphone, demand a ransom, and at the same time give attackers near-complete control over … Read more

Global Password Leaks 2023–2025: Persistent Weaknesses in Password Security

Silhouette of a man in distress looking at a laptop displaying "123456."

A large-scale analysis of credential leaks from 2023 to 2025 conducted by Kaspersky Lab highlights a long‑standing problem in password security: users continue to rely on weak, recycled passwords and frequently keep them unchanged for years, even after those passwords appear in public data breaches. Key findings from the 2023–2025 global password breach analysis Researchers … Read more

CVE-2025-8110 in Gogs: Critical Remote Code Execution Threat for Self‑Hosted Git Servers

Hooded figure at a computer screen displaying a warning about Git amidst a dramatic background.

A critical zero‑day vulnerability in Gogs, a lightweight self‑hosted Git service written in Go and widely deployed as an alternative to GitLab and GitHub Enterprise, has triggered a large‑scale exploitation campaign. Tracked as CVE-2025-8110, the flaw enables remote code execution (RCE) and has already led to the compromise of hundreds of Gogs servers worldwide. Critical … Read more

React2Shell (CVE-2025-55182): Critical React and Next.js RCE Now Weaponized by EtherRAT Malware

Aerial view of a cityscape with a building featuring "REACT2SHEL" on its roof.

Within days of the disclosure of the critical React2Shell (CVE-2025-55182) vulnerability, threat hunters from Sysdig have observed active exploitation against Next.js applications to deploy a new Linux-focused malware family dubbed EtherRAT. The malware abuses Ethereum smart contracts as a command-and-control (C2) layer and implements several persistence mechanisms, turning vulnerable React Server Components into an attractive … Read more

Microsoft December 2025 Patch Tuesday: Windows Zero-Day, GitHub Copilot, PowerShell and Office Flaws Fixed

Close-up of a textured bronze key with "SYSTEM" and a window logo.

Microsoft has closed 57 security vulnerabilities in its December 2025 Patch Tuesday release, including three zero‑day issues affecting Windows, GitHub Copilot for JetBrains, and Windows PowerShell. One of these, a privilege escalation flaw in Windows, is already being actively exploited to gain SYSTEM‑level access, making timely patch deployment critical for both enterprise and individual users. … Read more

Google Strengthens Chrome AI Agents with Multi-Layer Defense Against Prompt Injection

Robot figure with a lock and alerts near a laptop, symbolizing cybersecurity concerns.

Google has unveiled a multi-layer security architecture for Chrome AI agents powered by Gemini, targeting one of the most pressing risks in modern AI: indirect prompt injection and fraud in the browser. The new protections are designed for scenarios where a Gemini-based agent autonomously browses the web, opens pages, parses content, clicks buttons, fills out … Read more

Gartner Urges Enterprises to Block AI Browsers Amid Growing Cybersecurity Risks

Man with security badge focused on a laptop, with an anti-AI browser sign in the background.

Analyst firm Gartner has released a report titled “Cybersecurity Should Block AI Browsers for Now”, advising organizations to temporarily restrict or fully block the use of AI-powered browsers in corporate environments. According to the report, the current generation of such tools introduces disproportionate cybersecurity and privacy risks, ranging from silent data leakage to unauthorized transactions … Read more

FinCEN Ransomware Report: $4.5 Billion in Payments and a Shifting Threat Landscape

Hooded figures with a laptop against a dramatic fiery backdrop.

The U.S. Treasury’s Financial Crimes Enforcement Network (FinCEN) has released updated ransomware statistics based on thousands of suspicious activity reports filed under the Bank Secrecy Act. The data confirms that ransomware remains one of the most lucrative forms of cybercrime, with victims paying more than $4.5 billion to extortion groups between 2013 and 2024. FinCEN … Read more

EU Fines X €120 Million Under the Digital Services Act: Cybersecurity and Transparency at Stake

Symbols of money and verification contrasted with chains, illustrating economic themes.

The European Commission has imposed a €120 million fine on X (formerly Twitter) for alleged violations of the Digital Services Act (DSA), focusing on three areas with direct cybersecurity and information security implications: a misleading account verification system, an opaque advertising repository, and barriers to researcher access to public platform data. Digital Services Act (DSA): … Read more