MALVERTISING CAMPAIGN BUILDS MALWARE IN BROWSER MEMORY
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
A widespread malvertising operation is deploying malicious JavaScript on fake cryptocurrency and trading sites to assemble malware directly in browser memory, bypassing traditional detection methods.
■ MORE FROM THE SECURITY DESK
ID verification service IDScan has confirmed a data breach exposing 153 million driver's licenses after hackers placed them up for sale. The stolen credentials pose significant identity theft risks to affected individuals.
Trezor alerted customers Wednesday that attackers exploited a breach at its third-party email provider to launch phishing campaigns. The cryptocurrency hardware wallet maker urged users to remain vigilant against fraudulent communications.
Forgejo, a self-hosted Git service, released version 16.0.4 to address a critical remote code execution vulnerability affecting all versions up to 16.0.3. Users should upgrade immediately.
Microsoft's September 2026 security patches are disabling Remote Desktop Services across Windows Server 2019, 2022, and 2025, leaving administrators unable to access systems and requiring hard resets in some cases.