Fake Windsurf extension uses Solana to steal dev data

Bitdefender researchers have identified a malicious extension that targeted the Windsurf integrated development environment (IDE) and used the Solana blockchain to deliver malware designed to steal developer credentials. The extension posed as a tool for R language development in Visual Studio Code-compatible environments. The sample Bitdefender analysed was named reditorsupporter.r-vscode-2.8.8-universal and closely resembled the legitimate … Read more

Fake Claude AI ads spread malware to target developers

Bitdefender has identified a malware campaign that uses Google Ads to distribute fake downloads of Anthropic’s Claude AI coding tool, with developers among the main targets. The activity centres on sponsored search results that appear when users search for terms such as “Claude code” and related developer tools. Attackers buy ads that mimic legitimate software … Read more

Slow patching leaves SMB endpoints exposed for weeks

Acronis reported that small and midsize businesses often install software patches within a week. However, a significant minority of devices remain unpatched for weeks, leaving systems exposed after vulnerabilities become public. Analysis by the Acronis Threat Research Unit, based on telemetry from the second half of 2025, found a global median installation time of 185 … Read more

Microsoft tops global phishing brand rankings again

Microsoft remained the most imitated brand in phishing attacks during the fourth quarter of 2025, according to data from Check Point Research, which tracked brand impersonation across phishing attempts globally. The research unit said Microsoft accounted for 22% of all detected brand phishing attempts in the quarter. Google followed with 13% and Amazon with 9%. … Read more

Attackers Exploit Cryptographic Keys for Malware Deployment

Cybercrime , Fraud Management & Cybercrime , Next-Generation Technologies & Secure Development 3,000 Exposed ASP.NET Keys Put Web Applications at Risk of Code Injection Attacks Prajeet Nair (@prajeetspeaks) • February 7,… Source link

Attackers Exploit Cryptographic Keys for Malware Deployment

Cybercrime , Fraud Management & Cybercrime , Next-Generation Technologies & Secure Development 3,000 Exposed ASP.NET Keys Put Web Applications at Risk of Code Injection Attacks Prajeet Nair (@prajeetspeaks) • February 7,… Source link