Intelligence · Updated daily

Security Intelligence

AI-analysed threats, vulnerabilities and campaigns. Not just what happened — what it means, who's affected, and what to do about it.

Page 8 of 37

176–200 of 906
highMalwareContained

Perplexity Impersonation Attack Exploited Chrome Web Store Trust to Intercept Search Queries

A malicious Chrome extension masquerading as the Perplexity AI search engine intercepted all user searches and address bar input, routing them through an attacker-controlled server before delivering results. Google removed the extension after Microsoft's responsible disclosure, but the attack demonstrates how supply chain compromises in browser extension marketplaces can enable large-scale data harvesting.

Google Chrome, Chrome Web Store, Perplexity (brand/reputation)
informationalPolicyResolved

U.S. Supreme Court mandates warrant requirement for geofence data, reshaping law enforcement digital surveillance

The U.S. Supreme Court ruled that police must obtain a warrant before accessing geofence location data from cellphones, extending Fourth Amendment protections to digital tracking. This represents a significant legal victory for privacy advocates and establishes new constraints on law enforcement digital surveillance practices.

Law enforcement agencies, Technology companies storing location data, Mobile carriers
criticalCampaignActive

Russian Intelligence Deploys Fake Support Messages to Harvest Ukrainian Official Credentials at Scale

Russian intelligence services conducted a sustained phishing campaign using fabricated support messages to compromise messaging accounts of Ukrainian government officials, military personnel, politicians, and activists across Europe and the US. The operation highlights a persistent state-level threat to high-value targets using social engineering rather than zero-days.

Messaging platforms (specific platforms not specified in source), Ukrainian government officials, Ukrainian military personnel +2
highMalwareActive

SharkLoader malware family targets diplomatic and government networks across Indo-Pacific region

A previously undocumented loader malware called SharkLoader has been observed in a campaign tracked as StrikeShark, delivering Cobalt Strike Beacon to diplomatic organisations in Indonesia and government networks in Taiwan. The campaign represents a targeted operation against sensitive government infrastructure using commodity post-exploitation tools.

Indonesian diplomatic organisations, Taiwan government organisations
highSupply ChainEmerging

Dormant Code Injection Flaw in YouTube Ad Blocker Extension Reveals Supply Chain Risk in Chrome Web Store

Adblock for YouTube, a Chrome extension with 10M+ installs and featured status on the Chrome Web Store, contains dormant arbitrary JavaScript execution capability. The presence of this injection mechanism raises questions about extension vetting processes and potential for malicious activation.

Google Chrome, Chrome Web Store, Adblock for YouTube (ID: cmedhionkhpnakcndndgjdbohmhepckk)