Find a story
Search Spins
Search titles, summaries, and missing voices across published articles — press releases, announcements, and media coverage.
19 results for “remote access”
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
Active exploitation has begun of CVE-2026-59310, a critical (CVSS 9.8) directory-traversal vulnerability in Broadcom’s VMware vCenter server enabling arbitrary code execution and persistent remote access.
Aug 12, 2026
COLDCARD security audit phishing attack installs remote access tool
A phishing campaign is impersonating COLDCARD wallet security concerns to trick users into installing ScreenConnect, a remote access tool, leveraging fear from a disclosed vulnerability and a high-profile Bitcoin theft.
Aug 5, 2026
Fake party invitation scam can hijack your computer
A phishing scam using fake party invitations tricks users into downloading malware that enables remote computer access and spreads via contact lists.
Aug 5, 2026
Smoke#Screen RMM Takeover Gambit Exposes Threat Actor Playbook
A threat actor campaign dubbed 'Smoke#Screen' is exploiting Remote Monitoring and Management (RMM) tools—specifically ScreenConnect—to gain persistent remote access to enterprise networks via socially engineered lures and variable payloads.
Aug 5, 2026
Fake Adobe and Zoom Updates Install ScreenConnect for Persistent Remote Access
A cybersecurity threat campaign named SMOKE#SCREEN is actively using fake Adobe and Zoom update lures to socially engineer users into installing ConnectWise ScreenConnect — a legitimate RMM tool — for unauthorized, persistent remote access.
Aug 4, 2026
New DOUBLECUP ClickFix service hides malware in browser cache images
A Russian cybercrime-as-a-service operation named DOUBLECUP deploys stealthy browser-cache-based malware delivery via manipulated PNG images, distributing CountLoader and a novel RAT called DeviceManager across Windows and macOS.
Aug 4, 2026
Fake Roblox Xeno script launcher pushes infostealer, RAT malware
Cybercriminals are distributing counterfeit Roblox Xeno Executor installers that deliver infostealer and remote access trojan (RAT) malware to players, exploiting platform trust and modding culture.
Aug 4, 2026
Microsoft Teams vishing attacks lead to Chaos ransomware attacks
Cybercriminals are using Microsoft Teams to conduct vishing attacks—impersonating IT support—to trick employees into granting remote access, enabling deployment of Chaos ransomware across North American organizations.
Jul 30, 2026
New Dolphin X malware uses AI to rank high-value targets
A new remote access trojan named Dolphin X allegedly incorporates AI to profile and prioritize victims based on inferred value, representing a novel escalation in automated cybercrime targeting logic.
Jul 24, 2026
ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories
A weekly cybersecurity threat roundup highlights emerging risks including Android spyware, PLC attacks, and AI image prompt injection, framing them as evolving, stealthy threats disguised as benign tools.
Jul 23, 2026
How smart home devices have given abusive partners a new tool to remotely manipulate, intimidate, and disturb their victims, in a form of tech-assisted abuse (Financial Times)
Smart home devices are being weaponized by abusive partners for remote manipulation and intimidation, prompting policy and industry responses to address tech-assisted domestic abuse.
Jul 20, 2026
AsyncAPI npm packages infected with credential-stealing malware
Five compromised AsyncAPI npm packages delivered credential-stealing malware via a supply-chain attack, exposing developers and downstream systems to unauthorized access and data theft.
Jul 15, 2026
LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts
A newly discovered Rust-based remote access trojan named LabubaRAT impersonates NVIDIA software to evade detection and establish persistent access on Windows systems.
Jul 14, 2026
New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic
A China-linked cybercrime group named Silver Fox deployed a new Rust-based remote access trojan called MODBEACON that uses gRPC streaming for encrypted command-and-control (C2) traffic, according to attribution by Chinese cybersecurity firm QiAnXin.
Jul 10, 2026
BeyondTrust warns of critical flaws in remote access software
BeyondTrust issued a security advisory warning customers to patch two critical authentication-bypass vulnerabilities in its Remote Support and Privileged Remote Access software, posing immediate risk of unauthorized system access.
Jul 9, 2026
New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS
A newly identified Java-based cross-platform remote access trojan (QuimaRAT) is being sold as malware-as-a-service targeting Windows, Linux, and macOS, with tiered subscription pricing.
Published Jul 6, 2026 · Analyzed Jul 8, 2026
North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets
North Korea-linked threat actors published malicious npm packages impersonating legitimate Rollup polyfill tools to steal developer credentials and enable remote access.
Published Jul 3, 2026 · Analyzed Jul 7, 2026
NIST Guidelines for Secure Remote Access in Water and Wastewater Systems
NIST released final cybersecurity guidelines for secure remote access in water and wastewater systems to mitigate cyber risks to critical infrastructure.
Published Jun 24, 2026 · Analyzed Jul 4, 2026
Eye on Fraud: Mastercard Merchant Trust Services Debuts; Darwinium Takes on Remote Access Scams - Digital Transactions
Mastercard launched Merchant Trust Services, a new fraud prevention offering, while highlighting Darwinium's work against remote access scams — positioning both as timely responses to rising digital payment threats.
Published May 19, 2026 · Analyzed Jul 8, 2026