Iranian Hackers Launch Global Embassy Email Attack

A group of hackers linked to Iran recently carried out a worldwide email attack aimed at embassies and diplomatic offices. These cybercriminals sent fake emails designed to look like official diplomatic messages, tricking recipients into opening a harmful document disguised as a Microsoft Word file. The troubling part? When the document was opened, it prompted […]

Google Releases September 2025 Android Security Updates, Fixing 120 Vulnerabilities—including Two Actively Exploited Zero-Days

Google has released a major security update for Android phones that fixes more than 120 different issues. Two of these problems were especially serious because hackers had already found ways to use them in real attacks before the fixes were available. These flaws made it possible for attackers to take control of parts of the […]

AI Browsers Exploited by “PromptFix” Trick Technique

Cybersecurity experts have uncovered a dangerous new prompt injection method known as PromptFix, designed to fool AI-powered browsers into executing malicious actions—without the user realizing it. By embedding hidden harmful instructions within a fake CAPTCHA on a webpage, PromptFix manipulates AI browsers like Perplexity’s Comet—tools intended to streamline tasks such as online shopping or email […]

Over 15,000 Fake TikTok Shop Domains Steal Credentials and Crypto in AI-Driven Scam Campaign

Cybersecurity researchers have uncovered a widespread scam targeting TikTok Shop users worldwide. The campaign, which aims to steal personal credentials and distribute malicious apps, is using a combination of phishing and malware attacks. The campaign, named FraudOnTok, was detailed by CTM360, a cybersecurity company based in Bahrain. The attack targets users by creating fake versions […]