Fixed Intel

Latest Cybersecurity News

Stay informed with real-time threat intelligence, vulnerability disclosures, and expert analysis from the cybersecurity community.

UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW Malware
The Hacker News
Industry News

UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW Malware

UNC6692 targeted 77% senior employees between March 1–April 1, 2026, via Teams impersonation, enabling malware, data theft.

The Hacker NewsApr 23, 20265m5
New Checkmarx supply-chain breach affects KICS analysis tool
BleepingComputer
Malware & Threats

New Checkmarx supply-chain breach affects KICS analysis tool

Hackers have compromised Docker images, VSCode and Open VSX extensions for the Checkmarx KICS analysis tool to harvest sensitive data from developer environments.

BleepingComputerApr 23, 20263m5
Cloudsmith Raises $72 Million in Series C Funding
SecurityWeek
Industry News

Cloudsmith Raises $72 Million in Series C Funding

The company will use the investment to accelerate product development and grow go-to-market efforts.

SecurityWeekApr 23, 20262m6
Industry News

Bad Memories Still Haunt AI Agents

Dark Reading
Industry News

Bad Memories Still Haunt AI Agents

Cisco found and fixed a significant vulnerability in the way Anthropic handles memories, but experts warn that mishandled memory files will continue threaten AI systems.

Dark ReadingApr 23, 20261m6
Cosmetics giant Rituals discloses data breach affecting customers
BleepingComputer
Malware & Threats

Cosmetics giant Rituals discloses data breach affecting customers

Dutch cosmetics giant Rituals disclosed a data breach after attackers stole the personal information of an undisclosed number of customers from its "My Rituals" membership database.

BleepingComputerApr 23, 20262m6
Regular Password Resets Aren’t as Safe as You Think
BleepingComputer
Malware & Threats

Regular Password Resets Aren’t as Safe as You Think

Password resets are one of the easiest ways for attackers to bypass security controls. Specops Software shows how helpdesk social engineering turns a seemingly legitimate reset request into full account compromise.

BleepingComputerApr 23, 20265m6
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign
The Hacker News
Industry News

Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign

Bitwarden CLI 2026.4.0 was compromised via GitHub Actions in Checkmarx campaign, exposing secrets and distributing malicious npm code

The Hacker NewsApr 23, 20262m6
Microsoft: Some Teams users can’t join meetings after Edge update
BleepingComputer
Malware & Threats

Microsoft: Some Teams users can’t join meetings after Edge update

Microsoft confirmed that a recent Microsoft Edge browser update introduced a bug that prevents Windows users from joining Teams meetings.

BleepingComputerApr 23, 20262m6
Industry News

ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New Stories

The Hacker News
Industry News

ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New Stories

You scroll past one incident and see another that feels familiar, like it should have been fixed years ago, but it still works with small changes. Same bugs. Same mistakes. The supply chain is messy. Packages you did not check are stealing data, adding backdoors, and spreading. Attacking the syst...

The Hacker NewsApr 23, 20261m6
Chinese Cybersecurity Firm’s AI Hacking Claims Draw Comparisons to Claude Mythos
SecurityWeek
Industry News

Chinese Cybersecurity Firm’s AI Hacking Claims Draw Comparisons to Claude Mythos

360 Digital Security Group claims to have uncovered 1,000 vulnerabilities using AI, including at the Tianfu Cup hacking contest.

SecurityWeekApr 23, 20263m6
UK warns of Chinese hackers using proxy networks to evade detection
BleepingComputer
Malware & Threats

UK warns of Chinese hackers using proxy networks to evade detection

The United Kingdom's National Cyber Security Centre (NCSC-UK) and international partners warned that China-nexus hackers are increasingly using large-scale proxy networks of hijacked consumer devices to evade detection and disguise their malicious activity.

BleepingComputerApr 23, 20263m6
New GopherWhisper APT group abuses Outlook, Slack, Discord for comms
BleepingComputer
Malware & Threats

New GopherWhisper APT group abuses Outlook, Slack, Discord for comms

A previously undocumented state-backed threat actor named GopherWhisper is using a Go-based custom toolkit and legitimate services like Microsoft 365 Outlook, Slack, and Discord in attacks against government entities.

BleepingComputerApr 23, 20263m6