Ghost CMS Flaw Exploited to Hijack Over 700 Sites in ClickFix Attacks

Over 700 websites were hijacked in a massive campaign that exploited a critical Ghost CMS vulnerability, turning legitimate pages into gateways for Windows malware. This alarming attack was made possible by CVE-2026-26980, an SQL injection flaw with a near-perfect CVSS score of 9.4.

https://osintsights.com/ghost-cms-flaw-exploited-to-hijack-over-700-sites-in-clickfix-attacks?utm_source=mastodon&utm_medium=social

#GhostCms #Cve202626980 #SqlInjection #Clickfix #WindowsMalware

Ghost CMS Flaw Exploited to Hijack Over 700 Sites in ClickFix Attacks

Learn how CVE-2026-26980 in Ghost CMS was exploited to hijack 700+ sites. Discover security measures to protect your site now and prevent similar attacks.

OSINTSights

Malicious Hugging Face repository targets Windows users with infostealer malware

Malicious actors on Hugging Face tricked Windows users into downloading infostealer malware by creating a fake repository that mimicked OpenAI's popular Privacy Filter release. The rogue repository briefly shot to the top of Hugging Face's trending list, racking up 244,000 downloads before being swiftly removed.

https://osintsights.com/malicious-hugging-face-repository-targets-windows-users-with-infostealer-malware?utm_source=mastodon&utm_medium=social

#InfostealerMalware #HuggingFace #Typosquatting #AiModelAbuse #WindowsMalware

Malicious Hugging Face repository targets Windows users with infostealer malware

Discover how a malicious Hugging Face repository spread infostealer malware to Windows users and learn how to protect yourself from similar threats now.

OSINTSights

Malicious Site Exploits AI Interest to Deploy Beagle Backdoor

Beware of a fake website masquerading as Anthropic's Claude interface, tricking users into downloading a 505 MB ZIP archive that unleashes a new, previously undocumented Windows backdoor called Beagle. This malicious campaign uses a convincing imitation of the legitimate site to spread the infection.

https://osintsights.com/malicious-site-exploits-ai-interest-to-deploy-beagle-backdoor?utm_source=mastodon&utm_medium=social

#BeagleBackdoor #AiMalware #WindowsMalware #Malvertising #DllSideloading

Malicious Site Exploits AI Interest to Deploy Beagle Backdoor

Learn how Beagle backdoor is deployed via a malicious site exploiting AI interest, and protect your system now with expert security tips and advice today.

OSINTSights

Fake Claude AI site delivers Beagle Windows backdoor malware

Beware of a fake Claude AI site that's really a malware trap: a 505MB archive disguised as a legitimate installer delivers a sneaky Windows backdoor called Beagle. Clicking the download button on the site leads to trouble, not the AI tool you might be expecting.

https://osintsights.com/fake-claude-ai-site-delivers-beagle-windows-backdoor-malware?utm_source=mastodon&utm_medium=social

#FakeClaudeAiSite #BeagleWindowsBackdoor #MalwareOperations #EmergingThreats #WindowsMalware

Fake Claude AI site delivers Beagle Windows backdoor malware

Discover how a fake Claude AI site delivers Beagle Windows backdoor malware and protect your system now with expert security tips and advice. Learn more today.

OSINTSights

CloudZ Malware Exploits Phone Link to Harvest SMS OTPs

Beware of CloudZ malware, a sneaky Windows threat that's been stealing SMS messages and one-time passwords since January 2026 by exploiting Microsoft's Phone Link app. This malicious duo, paired with the Pheno plugin, can capture mobile authentication data without ever touching your smartphone.

https://osintsights.com/cloudz-malware-exploits-phone-link-to-harvest-sms-otps?utm_source=mastodon&utm_medium=social

#CloudzMalware #WindowsMalware #MicrosoftPhoneLink #SmsOtp #RemoteAccessTool

CloudZ Malware Exploits Phone Link to Harvest SMS OTPs

Learn how CloudZ malware exploits Phone Link to steal SMS OTPs and protect yourself from this threat with expert insights and security tips now.

OSINTSights
ClickFix Malware-Kampagne: Fake-Cloudflare-Check installiert unbemerkt MIMICRAT

ClickFix Malware-Kampagne verteilt MIMICRAT über Fake-Cloudflare-Seiten mit fünfstufiger Infektionskette, AMSI-/ETW-Bypass und HTTPS-C2.

TARNKAPPE.INFO
Stealka Stealer: Fake-Roblox-Mods und Cheats plündern Krypto-Wallets

Stealka Stealer ist eine neue Windows-Malware, die sich als Roblox-Mod oder Cheat tarnt und Browserdaten sowie Krypto-Wallets plündert.

TARNKAPPE.INFO

😱 Siete al sicuro? Un nuovo malware sfrutta l'automazione di Windows per rubare i tuoi dati sensibili. Aggiorna il tuo antivirus e fai attenzione! #CyberSecurity #WindowsMalware

🔗 https://www.tomshw.it/hardware/coyote-primo-malware-che-sfrutta-windows-ui-2025-07-25

Questo malware sfrutta un'automazione di Windows per rubarvi i dati

Il malware Coyote sfrutta Windows UI Automation per rubare credenziali bancarie, colpendo utenti di 75 banche e piattaforme crypto.

Tom's Hardware
Dissecting Windows Malware Series – Beginner To Advanced – Part 1 - 8kSec

In Part-1 of Dissecting Windows Malware blog series, we’ll lay down the foundations of analysing and reverse engineering Windows malicious files.

8kSec - 8kSec is a cybersecurity research & training company. We provide high-quality training & consulting services.

Elastic Security Labs analyzed a Windows dataset of over 100,000 malicious files: https://www.elastic.co/security-labs/unveiling-malware-behavior-trends

#windowsmalware #elastic #MalwareBehavior

Globally distributed stealers — Elastic Security Labs

This article describes our analysis of the top malware stealer families, unveiling their operation methodologies, recent updates, and configurations. By understanding the modus operandi of each family, we better comprehend the magnitude of their impact and can fortify our defences accordingly.