started · updated
Cybersecurity threats escalate with Cl0p leak site takeover and AI assistant vulnerabilities
The cybersecurity landscape has seen significant activity involving ransomware groups and vulnerabilities in AI tools. The ShinyHunters group defaced the Tor-based leak site of the Cl0p ransomware gang, claiming to have stolen server logs, source code, and private keys for Clop’s onion service. ShinyHunters demanded an eight-figure payment and a public apology, citing a long-standing feud with Clop.
Researchers have also identified ‘BragJack,’ a set of flaws allowing malicious extensions to hijack built-in AI assistants in browsers such as Chrome, Edge, and Opera. These vulnerabilities enable attackers to send unauthorized prompts, potentially allowing them to read emails, access local files, or activate cameras and microphones.
Additionally, malicious versions of MemTensor’s MemOS packages were discovered on npm and PyPI. These packages contain a previously unseen Go implant named ‘sc’ designed to target AI agent memory tooling.