Security researchers report that ClickFix-style attacks, which trick users into copying and running malicious commands via fake CAPTCHA pop-ups, are proliferating across both Windows and Mac systems. Researcher Kevin Beaumont notes victims are flooding Reddit for help, and attackers are now compromising legitimate websites to embed these prompts, making the scam harder to spot.
techspot.com
· 2026-09-14
Google's threat intelligence team says cybercriminals and state-backed actors from China, Iran, and Russia are increasingly adopting autonomous AI agent systems rather than relying on simple prompt-and-response chatbots. These agents can independently execute multi-step tasks, expanding what threat actors can automate in their operations.
gizmodo.com
· 2026-09-08
Security researchers found that a Chinese-speaking threat actor has compromised Brazilian government and education websites, using them as a reverse-proxy network to funnel traffic to gambling-themed phishing sites. The attackers exploit the trust and infrastructure of official domains to disguise malicious traffic and evade detection.
darkreading.com
· 2026-09-08
Reformed cybercriminal Brett Johnson explains that generative AI tools now let attackers plan and execute fraud schemes far faster than before, compressing what once took days into hours. He describes AI's biggest value to threat actors as accelerating research, content creation, and social engineering rather than inventing new attack types.
darkreading.com
· 2026-09-02
A study by Interisle Consulting Group found that at least 10% of new generic top-level domain registrations in 2025 had already turned up on security blocklists, with the true share of malicious registrations potentially reaching 20% once related but unlisted domains are counted. Interisle's Greg Aaron and Karen Rose presented these figures at the ICANN 86 Policy Forum, citing ICANN's own research that for every three blocklisted domains, two associated ones often go undetected. ICANN's Office of the CTO has since pushed back somewhat, arguing the numbers hinge heavily on how 'abuse' is defined.
labs.ripe.net
· 2026-08-30
Cybersecurity firm Malwarebytes has identified fake websites posing as Rockstar Games that promise a playable Grand Theft Auto VI demo, which doesn't actually exist. Clicking the 'Play Now' button on these sites downloads an information-stealing malware disguised as a game installer, rather than any game files.
techcrunch.com
· 2026-08-25