CVE-2026-50522 is under active exploitation, allowing attackers to execute code remotely on vulnerable on-premises Microsoft SharePoint servers without authentication. CISA recently flagged three ...
Hackers are actively exploiting the critical CVE-2026-50522 vulnerability in Microsoft SharePoint to steal machine keys and ...
Towr reports active exploitation of SharePoint CVE-2026-50522 after a public PoC, with attackers stealing machine keys for ...
OpenAI says 10 million people are now using Codex and ChatGPT Work, the two products it files under a single "agent" label — ...
By manipulating files later consumed by trusted software, coding assistants can effectively cross security boundaries while ...
The JadePuffer autonomous AI agent has upgraded with custom malware called EncForge that focuses on encrypting AI assets, ...
Microsoft has warned that attackers are varying their post-exploitation techniques while relying on the same ClickFix lure, ...
ACR Stealer is targeting enterprises through ClickFix lures, PowerShell scripts, blockchain services, and malicious image ...
ACR Stealer campaigns use ClickFix lures, JPEG steganography, and WebDAV to steal browser tokens, passwords, PDFs, and synced ...
From late April 2026 to mid-June 2026, Microsoft Defender Experts observed increased ACR Stealer activity across customer ...
Despite the rapid adoption of LLM chatbots, little is known about how they are used. We document the growth of ChatGPT’s consumer product from its launch in November 2022 through July 2025, when it ...