The Storm Infostealer Doesn't Decrypt Your Passwords Locally. It Takes Them Home First.

Storm ships encrypted credentials to attacker servers for decryption, bypassing every endpoint detection built to catch local credential theft.

Read More

Claude Code's Leaked Source Spawned Malware and a DMCA Disaster

Threat actors turned Anthropic's leaked source into a Vidar infostealer campaign within 24 hours. Then Anthropic's DMCA response nuked 8,100 innocent repos.

Read More

Operation Leak Is Still Playing Out, and Russia Just Arrested One of Its Own

LeakBase's alleged admin was arrested in Russia. RedLine's alleged developer was extradited to the US. Two arrests, two continents, and one genuinely unusual week for cybercrime enforcement.

Read More

Torg Grabber Is Coming for Your Crypto Wallet Extensions

Torg Grabber is a new infostealer targeting 728 cryptocurrency browser wallet extensions, including MetaMask, Phantom, Exodus, and Coinbase. It's a full MaaS operation with real victims.

Read More