hackers

Tech Optimizer
July 27, 2026
Sergey Lozhkin, head of Kaspersky’s global research and analysis team for the Asia-Pacific, Middle East, Turkey, and Africa, reported an increase in malware injection attacks targeting AI agents, particularly from outside an organization’s network. He noted that traditional signature-based analysis is becoming ineffective as AI skills operate in the cloud, connecting to external resources. Dmitry Galov, leading Kaspersky’s research for Russia and the CIS, emphasized the importance of behavioral analysis and sandboxing AI applications to combat these threats. Lozhkin warned that the rapid growth of skills and plugins requires organizations to adopt innovative security measures, as old models are no longer sufficient.
Tech Optimizer
July 18, 2026
North Korea's Contagious Interview hackers have been using a deceptive strategy to target developers by posing as recruiters and embedding malware in SVG files. Elastic Security Labs discovered that the attackers hid malicious payloads within HTML comment blocks of these files, allowing the malware to evade antivirus detection. At the time of the findings, no antivirus engines flagged the compromised repositories, which included trojanized GitHub repositories disguised as coding challenges. The malware executed automatically at server startup and deployed four modules: a browser credential and cryptocurrency wallet stealer, a file stealer, a remote access Trojan, and a clipboard monitor. The campaign, tracked as REF9403, is part of the ongoing Contagious Interview operation attributed to North Korea's Lazarus Group, which aims to generate revenue through cryptocurrency theft. Developers are advised to audit any projects run from unsolicited sources and to monitor specific domains associated with the attack.
Winsage
July 15, 2026
Microsoft unveiled its July 2026 Patch Tuesday update, identified as KB5101650, for Windows 11 versions 25H2 and 24H2. The update introduces the Point-in-Time Restore (PITR) feature, allowing users to take full backups and create snapshots every 4 to 24 hours, with snapshots retained for a maximum of 72 hours. PITR can restore local files and applications. Users can now pause Windows updates for up to 35 days. Other enhancements include discreet widget operation, optimized taskbar notifications, faster File Explorer startup, quicker disk image mounting, improved Bluetooth functionality, reduced eye strain through screen tinting, and enhancements in voice control and input capabilities. Not all features will be available immediately after installation, with security-related improvements being deployed universally.
AppWizard
July 14, 2026
Recent findings from a study by Positive Technologies indicate that AI is increasingly being used by hackers to modify mobile applications, with a success rate of over 60% for embedding unauthorized code without disrupting functionality. The study analyzed 90 Android applications, finding closed commercial models had an 84% success rate, while open-source applications had a 61% success rate. Modifications were completed in as little as 5 minutes and 38 seconds to up to 9 minutes and 9 seconds, with costs ranging from 0.88 to 40.89 rubles per modification. Messaging platforms and third-party sites are particularly at risk, especially for users seeking unofficial app versions. Developers are advised to improve security against code modification and unauthorized clones.
Winsage
July 12, 2026
Microsoft is integrating artificial intelligence into its vulnerability detection processes for the Windows operating system to enhance security. This will lead to more frequent security updates during monthly Patch Tuesday releases. The company aims to address the rise in AI-driven exploits and is refining its secure software development model to combat evolving tactics used in AI-driven attacks. While AI will assist in identifying vulnerabilities, human oversight will remain essential, with developers reviewing code and validating AI-generated findings before deploying updates.
AppWizard
July 11, 2026
Radiator Forever, a collection of short and experimental gay games by developer Robert Yang, has launched on Steam alongside its presence on Itch.io. Yang discussed the challenges faced by adult game creators, particularly due to payment processor issues and online regulations in the UK, which affect the viability of such games on major platforms. Users must log in to view the collection on Steam, and UK users need a valid credit card for age verification. The Steam listing is difficult to find without a direct link and is subject to geoblocking in certain regions. Yang explained that the anti-sexuality censorship campaign led by Collective Shout and payment processors prompted Itch to obscure many NSFW games. He noted that Valve has classified Radiator Forever as containing "frequent nudity and sexual content," which limits its visibility on Steam. Despite efforts to comply with content guidelines, Yang faced challenges due to perceived biases against indie developers compared to major publishers. The re-remastered collection includes enhancements like a completion percentage tracker and a tagging system for new content.
Tech Optimizer
July 10, 2026
Cybercriminals are exploiting the VLC media player to install ValleyRAT, a remote access trojan, by embedding malware in a seemingly harmless file linked in phishing emails. The attack starts with an email that prompts the victim to download a ZIP archive containing a fake VLC executable and a malicious DLL named libvlc.dll. This method uses DLL sideloading to execute the malware under the guise of a legitimate application. Once executed, the malware establishes persistence by creating a registry entry and connects to a remote server to retrieve the final payload. ValleyRAT employs evasion tactics to avoid detection, including assessing system characteristics before executing harmful actions and using a fileless approach to deliver the payload directly into memory. Researchers have identified indicators of compromise, including specific SHA1 hashes and URLs associated with the malicious campaign.
Winsage
July 10, 2026
Microsoft is enhancing its security update process by integrating artificial intelligence to identify potential security issues earlier, resulting in more fixes in each release. This initiative responds to the increasing use of AI by hackers and security researchers, which has led to a rise in high-severity vulnerabilities. Microsoft is updating its Secure Development Lifecycle to address AI-enabled attack techniques and is investing in new technologies to improve the generation and validation of security fixes while ensuring human oversight. Developers will continue to verify AI findings and make informed decisions about updates.
Search