TCLBANKER Banking Trojan Spreads Through WhatsApp and Outlook
Elastic reports that TCLBANKER hides inside a fake peripheral-device installer, uses DLL sideloading, and spreads through WhatsApp and Outlook while targeting Brazilian banking users.
News desk
Security incidents, exploited vulnerabilities, breach reports, malware campaigns, and urgent patch notes arranged for fast daily scanning.
June 24, 2026
Elastic reports that TCLBANKER hides inside a fake peripheral-device installer, uses DLL sideloading, and spreads through WhatsApp and Outlook while targeting Brazilian banking users.
Microsoft says a code-of-conduct phishing campaign targeted 35,000 users with PDF lures, CAPTCHA gates, and AiTM token theft that can bypass ordinary MFA.
Cisco Talos says CloudZ RAT and its Pheno plugin target Microsoft Phone Link data on infected Windows PCs, turning phone-to-PC syncing into a path…
Rapid7 says MuddyWater used Microsoft Teams social engineering, remote tools, stolen credentials, and a custom RAT while dressing the intrusion as Chaos ransomware.
Palo Alto Networks says CVE-2026-0300 is being exploited on exposed PAN-OS User-ID Authentication Portals; the real triage is whether Response Pages expose the portal…
Backdoor:Win64/RogueDaemon.LTSN!MTB is a Microsoft Defender alert linked by users to the DAEMON Tools Lite supply-chain incident. Check affected versions, remove old builds, scan for…
Scam shops are moving fast to capitalize on the Milano Cortina 2026 mascots. Tina and Milo, the stoat siblings chosen from more than 1,600…
Microsoft has patched a Windows 11 Notepad flaw that let Markdown links run files without a warning. It is tracked as CVE-2026-20841 and has…
Details from users of WormGPT, an AI tool marketed for offensive use, appear to be circulating on a data leak forum. Cybernews reports that…