Steve Zurier
- Indexed articles, last 90 days
- 26
- Latest publication
- Sep 9, 2026
- Outlet visibility, for SC Media
- Top 5M sites
- Earliest in this view
- Jul 10, 2026
Latest articles
Gigabud banking trojan uses app cloning to evade fraud detection (opens the original)
Read excerpt
As reported by Infosecurity Magazine, the Gigabud Android banking trojan has been updated with a new capability to clone banking applications into a separate Android work profile, creating a significant challenge for fraud detection systems.Researchers at Group-IB have identified that Gigabud is now being paired with Vwork, a modified version of the Shelter app, attributed to the GoldFactory threat group. This combination allows Gigabud to clone legitimate banking apps into an isolated work prof
Broadcom patches critical VMware Workstation and Fusion VM escape vulnerabilities (opens the original)
Read excerpt
Broadcom has released security advisories addressing two critical vulnerabilities in VMware Workstation and Fusion products. These flaws allow for potential code execution on the host system from within a virtual machine, with no existing workarounds. Users are urged to update to the latest version immediately to mitigate these risks, with further coverage provided by Security Affairs.The first vulnerability, CVE-2026-59346, is a critical integer-overflow flaw within the VMXNET3 virtual network
DEF CON bans Meta smart glasses due to privacy concerns (opens the original)
Read excerpt
Following insights from The Register, DEF CON, a prominent cybersecurity conference, has announced a ban on Meta-style glasses equipped with recording capabilities ahead of its upcoming event in Las Vegas. This decision reflects growing concerns over privacy and the discreet nature of these devices.DEF CON organizers stated that no exceptions will be made, even for prescription lenses, urging attendees to pack alternative eyewear. This policy update comes as Meta's smart glasses, developed with
GitHub and PyPI implement new security measures against supply-chain attacks (opens the original)
Read excerpt
Based on information from Bleeping Computer, GitHub and the Python Package Index (PyPI) have introduced new time-based security mechanisms within their development tools to combat supply-chain attacks and mitigate their potential impact.GitHub's Dependabot, a tool that automates dependency updates, now includes a default three-day cooldown period. This delay is intended to prevent the automatic adoption of newly published malicious packages, as attackers have previously exploited the window betw
Steam forums used for ClickFix cryptominer attacks (opens the original)
Read excerpt
In a report by Bleeping Computer, threat actors are exploiting Steam discussion forums to distribute cryptominers through a social engineering tactic known as ClickFix. Attackers create fake Steam accounts to post seemingly helpful solutions to users' technical problems.These malicious posts instruct users to open PowerShell as an administrator and execute a command, which secretly downloads and runs the XMRig cryptominer. The PowerShell script disguises itself as a Windows optimization utility,
Publishing over time
Last 90 days. Choose a month to open its work.
Recurring subjects
Named in the text we hold. One piece can cover several.
Audience
Top 5M sites
For SC Media, the outlet · Measured Aug 1, 2026
Website popularity band, not a count of readers or article views.
About this data
Counts cover the work we have indexed. Tone needs enough text and a confident classification. Excerpts and episode notes are not full articles or transcripts.
Identity or attribution wrong? Suggest a correction.