Fixed Intel
Shield

Malware & Threats

Malware analysis, threat intelligence, and emerging cyber threats

Apple pushes first Background Security Improvements update to fix WebKit flaw
BleepingComputer
Malware & Threats

Apple pushes first Background Security Improvements update to fix WebKit flaw

Apple has released its first Background Security Improvements update to fix a WebKit flaw tracked as CVE-2026-20643 on iPhones, iPads, and Macs without requiring a full operating system upgrade.

BleepingComputerMar 18, 20263m5
GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSX
BleepingComputer
Malware & Threats

GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSX

The GlassWorm supply-chain campaign has returned with a new, coordinated attack that targeted hundreds of packages, repositories, and extensions on GitHub, npm, and VSCode/OpenVSX extensions.

BleepingComputerMar 17, 20263m5
Europe sanctions Chinese and Iranian firms for cyberattacks
BleepingComputer
Malware & Threats

Europe sanctions Chinese and Iranian firms for cyberattacks

The European Union Council has announced sanctions against three entities and two individuals for their involvement in cyberattacks targeting critical infrastructure in the region.

BleepingComputerMar 17, 20263m5
Top 5 Things CISOs Need to Do Today to Secure AI Agents
BleepingComputer
Malware & Threats

Top 5 Things CISOs Need to Do Today to Secure AI Agents

AI agents are autonomous actors with real access to data and systems, not just copilots. Token Security explains why identity-based access control is critical to prevent misuse and data exposure.

BleepingComputerMar 17, 20266m5
New font-rendering trick hides malicious commands from AI tools
BleepingComputer
Malware & Threats

New font-rendering trick hides malicious commands from AI tools

A new font-rendering attack causes AI assistants to miss malicious commands shown on webpages by hiding them in seemingly harmless HTML.

BleepingComputerMar 17, 20264m5
Microsoft stops force-installing the Microsoft 365 Copilot app
BleepingComputer
Malware & Threats

Microsoft stops force-installing the Microsoft 365 Copilot app

Microsoft has stopped automatically installing the Microsoft 365 Copilot app on Windows devices outside the European Economic Area (EEA) that have the Microsoft 365 desktop client apps.

BleepingComputerMar 17, 20263m5
LeakNet ransomware uses ClickFix and Deno runtime for stealthy attacks
BleepingComputer
Malware & Threats

LeakNet ransomware uses ClickFix and Deno runtime for stealthy attacks

The LeakNet ransomware gang is now using the ClickFix technique for initial access into corporate environments and deploys a malware loader based on the open-source Deno runtime for JavaScript and TypeScript.

BleepingComputerMar 17, 20263m5
Microsoft shares fix for Windows C: drive access issues on Samsung PCs
BleepingComputer
Malware & Threats

Microsoft shares fix for Windows C: drive access issues on Samsung PCs

Microsoft has shared guidance to fix C:\ drive access issues and app failures on some Samsung laptops running Windows 11, versions 25H2 and 24H2.

BleepingComputerMar 17, 20262m5
New Windows 11 hotpatch fixes Bluetooth device visibility issue
BleepingComputer
Malware & Threats

New Windows 11 hotpatch fixes Bluetooth device visibility issue

Microsoft has released an emergency update to fix a Bluetooth device visibility issue on hotpatch-enabled Windows 11 Enterprise devices.

BleepingComputerMar 17, 20262m5
Microsoft: Enabling Teams Meeting add-in breaks Outlook Classic
BleepingComputer
Malware & Threats

Microsoft: Enabling Teams Meeting add-in breaks Outlook Classic

Microsoft is working to address a known issue that renders the classic Outlook email client unusable for users who have enabled the Microsoft Teams Meeting Add-in.

BleepingComputerMar 17, 20262m5
Stryker attack wiped tens of thousands of devices, no malware needed
BleepingComputer
Malware & Threats

Stryker attack wiped tens of thousands of devices, no malware needed

Last week's cyberattack on medical technology giant Stryker was limited to its internal Microsoft environment and remotely wiped tens of thousands of employee devices.

BleepingComputerMar 16, 20263m8
CISA flags Wing FTP Server flaw as actively exploited in attacks
BleepingComputer
Malware & Threats

CISA flags Wing FTP Server flaw as actively exploited in attacks

CISA warned U.S. government agencies to secure their Wing FTP Server instances against an actively exploited vulnerability that may be chained in remote code execution attacks.

BleepingComputerMar 16, 20262m8