• VoidLink is a new Linux rootkit family that combines classic kernel modules with eBPF to hide processes and network activity deep inside modern cloud environments. It targets distributions from CentOS 7 up to Ubuntu 22.04, giving attackers a stealthy way to persist across a wide range of kernel versions. VoidLink is part of a broader […]

    The post VoidLink Rootkit Leverages eBPF and Kernel Modules to Stealthily Infiltrate Linux Systems appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • This practitioner-focused review covers Acalvio ShadowPlex, a deception-first platform designed to stop attacker progress across IT, cloud, OT,…

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • SAN FRANCISCO — American society is becoming increasingly apathetic to major cyberattacks, and the U.S. has still not achieved a hardline strategy to deter foreign adversaries and their hacker operatives, former NSA and Cyber Command leaders said Tuesday.

    “I think we’ve become numb to it,” said retired Gen. Paul Nakasone, who served as director of Cyber Command and NSA from 2018 to 2024. He was joined on stage at an RSAC Conference discussion with other retired officials who held the dual-hatted role over the years, including Gen. Keith Alexander, Adm. Mike Rogers and, most recently, Gen. Tim Haugh.

    “I think we continue to see these different intrusions, and intrusions have gotten to a size that the scale is just incredible to me” Nakasone said. “And I think that we are out of balance in terms of being able to keep up with the adversary, whether or not it’s ransomware, whether or not it’s deepfakes, whether or not it’s the brain drain within our government.”

    “I think for society, we are just becoming so numb to this,” said Rogers. “We’re starting to accept this, in some ways, as the price of living in the digital age, and we have not yet had a level of trauma that has driven fundamental behavioral change.”

    The sobering remarks underscore a growing concern among former U.S. cyber leaders that the steady drumbeat of high-impact cyber intrusions has failed to galvanize a proportional policy or societal response.

    Recent incidents highlight that threat picture, from China-linked hackers like Volt Typhoon embedding in U.S. critical infrastructure systems and Salt Typhoon targeting global telecom networks for espionage, to ongoing disruptions at home, including a March breach at medical device maker Stryker that’s been tied to a pro-Iran hacker gang.

    “I would definitely say we have not achieved deterrence,” Rogers said. “I see a private sector, network owners, that are very energized and focused. I see a government that’s unwilling to expend political capital to really drive fundamental change in cyber, and it’s a reflection of the fact that, politically, we are so divided. And as a society, we are so divided.”

    Alexander reinforced the same worry over a lack of national readiness against major cyber players. 

    “What I’m concerned about is what we’re doing as a nation to think about what China could do to hurt us,” he said.

    The Trump White House has released a long-anticipated national cyber strategy, which includes a pillar focused on reshaping the behavior of cyber adversaries to create incentives to not target U.S. networks. Details of that effort remain to be seen, though the private sector is expected to play a major part.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Cybersecurity researchers have disclosed a vulnerability in Anthropic’s Claude Google Chrome Extension that could have been exploited to trigger malicious prompts simply by visiting a web page. The flaw “allowed any website to silently inject prompts into that assistant as if the user wrote them,” Koi Security researcher Oren Yomtov said in a report shared with The Hacker News. “No clicks, no

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • GhostClaw is a multi-stage macOS infostealer that now abuses both GitHub and AI-assisted development workflows to harvest credentials and deploy secondary payloads, significantly widening its potential victim base. Jamf Threat Labs has since expanded on this work, uncovering at least eight additional samples hosted in GitHub repositories that impersonate trading bots, SDKs, and developer tools. […]

    The post GhostClaw AI Malware Targets macOS Users with Credential-Stealing Payloads appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • This week in cybersecurity from the editors at Cybercrime Magazine

    Sausalito, Calif. – Mar. 26, 2026

    The 2026 CISO Report from Cybersecurity Ventures in partnership with Sophos was released on the first day of the RSAC Conference in San Francisco earlier this week. A key theme is the growing need for managed security providers (MSPs) and managed security service providers (MSSPs) to fill in the security gaps for large enterprises, and to take over security for the small businesses who are unable to manage it themselves.

    Cybersecurity Ventures spoke to numerous chief information security officers (CISOs) and MSSPs after releasing the report. Domain security, and the consequences of not getting it done right, came up enough times for our editors to conclude that CISOs are worried about a surge in domain-based threats, and MSSPs view those threats as an opportunity.

    Standing in the epicenter of the cybersecurity industry at RSAC with hundreds of top cybersecurity vendors, several CISOs and MSSPs pointed us to booth N-4318 at the Early Stage Expo. Who’s there? EasyDMARC, according to the RSAC exhibitor directory, with a short overview:

    EasyDMARC is a one-stop platform for securing your email domain infrastructure and empowering you to manage email authentication effortlessly. It simplifies and automates your DMARC journey, helping you minimize the risk of cyberattacks.



    The company clearly knows a thing or two about branding. Their name is easy to say, easy to remember, easy to tell someone else about it, easy to type in your web browser, and of course they’ve got the matching dot com name: EasyDMARC.com.

    CISOs and MSSPs want easy, and they want DMARC. The CISOs and MSSPs also want each other. EasyDMARC is already trusted by the leading MSSPs, and they’ve got an excellent Partner Program for new solution providers to get started with them.

    There’s enough here for savvy CISOs and MSSPs to dig in and learn more about EasyDMARC. But, if you’re looking for some good reading material during the trip home from RSAC, then we recommend the EasyDMARC 2026 DMARC Adoption & Enforcement Report: Insights from 1.8M Domains, the Fortune 500, and Inc. 5000. It’s a global look at how DMARC adoption is progressing from monitoring to enforcement, and whether organizations and their users are truly protected.

    Who’s who in domain security? Our editors will take a deep dive into domain security after they return home from RSAC, and then we’ll tell you about some other companies worth taking a look at – unless of course EasyDMARC has you covered by that time.


    Cybercrime Magazine is Page ONE for Cybersecurity. Go to any of our sections to read the latest:

    • SCAM. The latest schemes, frauds, and social engineering attacks being launched on consumers globally.
    • NEWS. Breaking coverage on cyberattacks and data breaches, and the most recent privacy and security stories.
    • HACK. Another organization gets hacked every day. We tell you who, what, where, when, and why.
    • VC. Cybersecurity venture capital deal flow with the latest investment activity from various sources around the world.
    • M&A. Cybersecurity mergers and acquisitions including big tech, pure cyber, product vendors and professional services.
    • BLOG. What’s happening at Cybercrime Magazine. Plus the stories that don’t make headlines (but maybe they should).
    • PRESS. Cybersecurity industry news and press releases in real time from the editors at Business Wire.
    • PODCAST. New episodes daily on the Cybercrime Magazine Podcast feature victims, law enforcement, vendors, and cybersecurity experts.
    • RADIO. Tune into WCYB Digital Radio at Cybercrime.Radio, the first and only round-the-clock internet radio station devoted to cybersecurity.

    Contact us to send story tips, feedback and suggestions, and for sponsorship opportunities and custom media productions.

    The post Who’s Who In Domain Security: CISOs And MSSPs at RSAC 2026 appeared first on Cybercrime Magazine.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about a critical code-injection vulnerability in Langflow. Tracked as CVE-2026-33017, this severe security flaw has been officially added to CISA’s Known Exploited Vulnerabilities (KEV) catalog following verified evidence of active exploitation in the wild. Network defenders and organisations utilising Langflow in their development […]

    The post CISA Issues Urgent Warning on Langflow Code Injection Vulnerability Actively Exploited in Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Unmasking impostors is something the art world has faced for decades, and there are valuable lessons from the works of Elmyr de Hory that can apply to the world of defensive cybersecurity. During the 1960s, de Hory gained infamy as a premier forger, passing off counterfeit masterworks of Picasso, Matisse, and Renoir to unsuspecting collectors and renowned museums. Over the next several decades,

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • In February 2026, threat actors actively exploited two critical remote code execution (RCE) vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM). A recent incident response investigation by WithSecure’s STINGR Group revealed that attackers used highly automated methods to exfiltrate sensitive data from compromised servers within seconds. These zero-day vulnerabilities allow unauthenticated attackers to execute arbitrary code […]

    The post Critical Ivanti EPMM Vulnerabilities Expose Systems to Arbitrary Code Execution Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Sonatype uncovers a sophisticated malware campaign using hijacked npm developer accounts to steal API keys and passwords. Is your dev environment at risk?

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶