cryptocurrency

AppWizard
August 23, 2026
A new Android malware threat, codenamed Manic, poses significant risks to Ukrainian banks, government services, and messaging applications, with a reach extending to Russian and European financial institutions, global fintech platforms, cryptocurrency services, and military communication channels. Manic combines Android banking malware and mobile spyware, targeting sensitive applications and enabling comprehensive device takeover. It features a novel Wi-Fi mesh technique for data relay through compromised devices and utilizes phishing sites and dropper apps. The malware originated in February 2026, with initial development leading to its first deployment by late May. It monitors 169 package IDs related to banks, payment services, and messaging applications, primarily affecting Ukrainian targets but also impacting applications in Russia and Europe. Manic can infiltrate commercial and military messaging apps, track locations, monitor notifications, and collect files. It exploits Android's accessibility services to capture sensitive data and employs a store-and-forward relay mechanism for data exfiltration through nearby compromised devices. Google has stated that no apps containing this malware are found on Google Play, and Android users are protected by Google Play Protect.
AppWizard
August 22, 2026
The anonymous group CYBERLEEK claims to possess a complete working build of Grand Theft Auto 6 and threatens to release it to millions of PC users unless legal actions against them are stopped. They have distributed backup copies of the game globally, beyond U.S. legal jurisdiction, and have an automated system that could release the game if their communication is disrupted. CYBERLEEK is soliciting cryptocurrency donations and positioning their actions as a protest against the digitalization of the gaming industry. The gaming community is divided on the authenticity of the threat, with some speculating it may be a marketing strategy. Take-Two Interactive and Rockstar Games have not commented and are preparing for the game's release on November 19 for PlayStation 5 and Xbox Series X/S consoles.
AppWizard
August 21, 2026
Cyberleek has released a new gameplay snippet from Grand Theft Auto 6 for the fourth consecutive day. The latest video, titled "hypercar.mp4," features protagonist Jason in a carjacking scene in Vice City. The two-minute clip shows Jason having the option to perform an aggressive extraction of the driver, which may attract attention. It also confirms earlier leaks about visual identification mechanics related to the stolen vehicle and Jason's wanted level. The footage highlights advanced lighting technology, showcasing realistic reflections from the hypercar's headlights. Additionally, the video promotes Cyberleek's cryptocurrency initiative, with a message linking market capitalization to the frequency of leaks. Take-Two has reportedly lost approximately .8 billion in market capitalization this week due to a decline in share price.
AppWizard
August 21, 2026
On August 18, an entity named "Cyberleek" shared what is believed to be authentic gameplay footage from Grand Theft Auto 6, featuring the protagonist Jason. The footage showcased typical GTA activities and was removed from social media due to copyright claims from Take-Two and Rockstar. Cyberleek's leaks were not from testers but indicated access to a segment of GTA 6. They expressed consumer rights grievances and made three demands: no more digital preorders, no selling DLC already included in base game files, and mandatory offline fallback states for single-player games. Cyberleek is also promoting a cryptocurrency token, $Cyberleek, with a market cap of .1 million, allowing token holders to vote on gameplay clips to release. The timing of the leaks suggests a possible European origin, and investigations link Cyberleek to past posts on a German cybersecurity forum. There are indications that Cyberleek is not affiliated with Rockstar Games, and if identified, they could face significant consequences. Rockstar's official gameplay reveal for GTA 6 is scheduled for August 27.
Winsage
August 17, 2026
A suspected advanced persistent threat (APT) group linked to China exploited a newly patched vulnerability in VMware vCenter (CVE-2026-59310), which has a critical CVSS score of 9.8, allowing for arbitrary code execution and the deployment of Babuk-derived ransomware. A recently patched vulnerability in Apple macOS (CVE-2026-65400) has been exploited to deploy a cryptocurrency miner, granting unauthorized root access. The Lazarus Group from North Korea exploited a zero-day vulnerability in Microsoft Windows, targeting defense and aerospace sectors. GeoServer patched a critical SQL injection vulnerability that was actively exploited. A new macOS malware, Amnesia Stealer, targets users through ClickFix attacks, stealing data and allowing real-time access to authenticated sessions. A novel attack technique named GhostSplice can manipulate AI coding assistants. Research revealed a method exploiting Chromium's DevTools Protocol for data theft. Noteworthy CVEs this week include CVE-2026-68820, CVE-2026-58231, and multiple others across various platforms. A high-severity command injection flaw in FileRun allows remote code execution. An advanced ClickFix attack has been reported, deploying sophisticated malware. A heap overflow vulnerability in Citrix NetScaler was patched after indications of exploitation. A new malware loader targeting Portuguese-speaking users has been identified. A significant reduction in exposed Automatic Tank Gauge systems has been observed. A phishing campaign targeting Brazil has been detected, and an F.B.I. agent faces charges for unauthorized crypto withdrawals. Authorities in Ukraine dismantled fraudulent call centers, and a North Carolina man was sentenced for cyber extortion. Unauthorized access to sensitive data by the ExfilSquad group has been confirmed. LightSpy activity linked to China has been detected in over 13 countries. A supply chain attack exposed over 2,500 companies, and an Azure exfiltration campaign has exposed millions of enterprise records.
Search