Sign in

psparrows.bsky.social

@psparrows.bsky.social
34 followers 6 following 105 posts
PostsRepliesMedia
psparrows.bsky.social @psparrows.bsky.social · 01/10/2026
💸 $100K in crypto drained. 350+ victims. The confirmation email was rewritten so nobody noticed. 🕵️ "Underground" hijacks signed-in Chrome/Edge and fakes Binance 2FA. www.netskope.com/blog/100k-in...
netskope.com
$100k in Crypto Drained by the Underground Operation
Netskope Threat Labs analyzed a crypto-stealing operation that drains victims’ cryptocurrency exchange accounts. An Aotera/Tedy loader injects a
010
psparrows.bsky.social @psparrows.bsky.social · 29/09/2026
An important milestone for my #cyberattacks timelines, moving to a real time dashboard model. The home page shows four live dashboards: - Latest cyber attacks timeline - Mega breaches - AI-assisted malicious campaigns - CVEs targeting security products hackmageddon.com
001
psparrows.bsky.social @psparrows.bsky.social · 25/09/2026
Netskope Threat Labs is tracking a tech-support-scam kit delivered through paid Google ad. Victims land on a fake storefront; a hidden script waits for one mouse move before locking the browser with a fake alert. 619 orgs hit in 2 weeks. www.netskope.com/blog/a-fake-... #Malvertising #InfoSec
netskope.com
A Fake Security Locker, Delivered by Google Ads
Netskope Threat Labs has been tracking a cloud-hosted tech-support-scam (TSS) kit that hijacks a victim’s browser with a fake security alert and pressures
010
psparrows.bsky.social @psparrows.bsky.social · 23/09/2026
I continue to track malicious campaigns where #threat actors leveraged #AI. Now the page is a live dashboard. So far, AI was used by attackers primarily for coding (31.9%), generating #phishing lures (30.8%), and reconnaissance activities (14.3%). www.hackmageddon.com/2026/02/12/m...
000
psparrows.bsky.social @psparrows.bsky.social · 23/09/2026
Netskope Threat Labs' Retail 2026 report: #AI use among #retail employees jumped from 39% to 65% in a year. Regulated data drives 56% of AI policy violations; MCP agent activity is up ~400%. Full report: 👉https://www.netskope.com/resources/threat-labs-reports/threat-labs-report-retail-2026
010
psparrows.bsky.social @psparrows.bsky.social · 22/09/2026
🚨 August 2026 Cyber Attacks Statistics are live! 218 incidents tracked · 💰 80.7% Cyber Crime · 🦠 Malware led attack vectors (27.9%) · 🚪 Public-facing app exploits topped initial access (31.7%) · 🌍 70 countries hit 👉 www.hackmageddon.com/2026/09/22/a...
000
psparrows.bsky.social @psparrows.bsky.social · 17/09/2026
🚨 16–31 August 2026 Cyber Attacks Timeline is live! 📊 110 incidents | 78% Cyber Crime | 🦠 Malware top vector | 🌍 64 countries hit Full report & charts 👇 www.hackmageddon.com/2026/09/17/1... #CyberSecurity #InfoSec
hackmageddon.com
000
psparrows.bsky.social @psparrows.bsky.social · 10/09/2026
New Netskope Threat Labs data: 🇦🇺🇳🇿 AI use across ANZ orgs grew from 53% to 75% in a year. Anthropic Claude now leads AI adoption in ANZ (81%, ahead of ChatGPT's 68%), regulated data tops AI policy violations (47%), and MCP-related activity is up 69-89%. Report: www.netskope.com/resources/th...
000
psparrows.bsky.social @psparrows.bsky.social · 02/09/2026
🚨 1–15 August 2026 in cyber attacks: 108 confirmed incidents. 83% Cybercrime | 24% Malware | 1 in 3 breaches via public-facing app exploits. Full timeline & charts: www.hackmageddon.com/2026/09/02/1... Infographic: www.hackmageddon.com/2026/09/02/1... #CyberSecurity #InfoSec
hackmageddon.com
010
psparrows.bsky.social @psparrows.bsky.social · 13/08/2026
Threat actors don't go on vacation — they just malware from the beach. July 2026: 188 confirmed cyber attacks, 69 countries, 76% financially motivated. Full stats here: www.hackmageddon.com/2026/08/13/j... Infographic here: www.hackmageddon.com/2026/08/13/j... #CyberSecurity #InfoSec
hackmageddon.com
July 2026 Cyber Attacks Statistics
July 2026 saw 188 confirmed cyber attacks across 69 countries, with financially motivated Cyber Crime driving three in four incidents. Malware remained attackers' weapon of choice, exposed public-faci...
020
psparrows.bsky.social @psparrows.bsky.social · 07/08/2026
Tracking AI-driven cyberattacks since Jan 2026 🤖 → 59 confirmed campaigns. 📊 76% Cyber Crime 🦠 47% AI-assisted malware 💻 36% AI used for coding 🎣 30% AI used for phishing lures Full report: www.hackmageddon.com/2026/02/12/m...
hackmageddon.com
Malicious Campaigns Using AI-generated Malware in 2026
In this blog post I am collecting the campaigns that show evidence of being AI-generated, or make use of AI tools to increase their impact. As always I will continue to update the list as soon as new ...
000
psparrows.bsky.social @psparrows.bsky.social · 06/08/2026
🚨 16–31 July 2026 Cyber Attacks Timeline 📊 103 incidents 🎯 79.6% cybercrime 🦠 39.8% malware 🔓 1 in 3 breaches via public app exploits Free, open-source threat intel 🔍 Timeline: 👉 www.hackmageddon.com/2026/08/06/1... Infographic: 👉 www.hackmageddon.com/2026/08/06/1... #CyberSecurity #InfoSec
hackmageddon.com
010
psparrows.bsky.social @psparrows.bsky.social · 05/08/2026
Here we are again! The Shai-Hulud supply chain attack resurfaces with 28 malicious npm packages across 4 unrelated namespaces, same credential-stealing playbook, one new trick: it reads its C2 address from an Ethereum smart contract instead of hardcoding it. www.netskope.com/blog/npm-ste...
netskope.com
npm Stealer Reads Its C2 From an Ethereum Contract
Netskope Threat Labs identified and analyzed 28 malicious npm package versions published across four unrelated enterprise namespaces (@servicetitan,
011
psparrows.bsky.social @psparrows.bsky.social · 04/08/2026
From Netskope Threat Labs: a fake-CAPTCHA PDF is just the front door behind a custom TDS gate that fingerprints visitors and sells qualifying traffic to #malware distributors, #scam ops, or #adfraud. #AI assistants are feeding it traffic too. 🔎 www.netskope.com/blog/fake-ca...
netskope.com
Fake CAPTCHA, Real Business: Traffic Distribution for Hire
A single PDF factory has stamped out more than 12,700 structurally similar FakeCaptcha documents and parked them on Webflow's content delivery network,
000
psparrows.bsky.social @psparrows.bsky.social · 04/08/2026
Fake AI tool repos on GitHub are delivering infostealers to developers. @Netskope Threat Labs found a multi-stage SmartLoader that hides its C2 server on the Polygon blockchain, letting attackers rotate infra with zero code changes. Details + IOCs: www.netskope.com/blog/develop...
netskope.com
Developers in the Crosshairs: Fake AI Tools Deliver Infostealer
In April 2026, Netskope Threat Labs exposed a Malware-as-a-Service (MaaS) NodeJS infostealer delivered through the ClickFix social engineering technique.
010
psparrows.bsky.social @psparrows.bsky.social · 29/07/2026
📊 A year of cloud & AI risk, by the numbers (Netskope Cloud and Threat Report 2026): 🚀 6x genAI prompt volume growth 📉 Shadow AI down: 78% → 47% ⚠️ Data policy violations up 2x (223/mo) 🕵️ 60% of insider threats involve personal cloud apps 🎣 Phishing clicks down 27% www.netskope.com/resources/cl...
020
psparrows.bsky.social @psparrows.bsky.social · 27/07/2026
⚽ Turns out the World Cup had extra time... for cybercriminals: Netskope saw malicious traffic hit ~6x normal levels at peak, blocking 28k+ threats (fake job interviews, bogus streaming sites, ticket-themed #malware 🦠) across 1,000+ orgs worldwide. www.netskope.com/blog/world-c...
netskope.com
World Cup Retrospective: Analyzing the Surge in Cyber Threats
High-profile events consistently attract opportunistic attackers, and the 2026 FIFA World Cup was a prime example of this trend. Because the tournament
010
psparrows.bsky.social @psparrows.bsky.social · 23/07/2026
🚨 1–15 July 2026 Cyber Attacks Timeline is live! 📊 85 incidents 🎯 76.5% Cyber Crime 🦠 43.5% Malware 📡 Info & Comms hardest hit 🔗 Timeline: www.hackmageddon.com/2026/07/23/1... 🔗 Infographic: www.hackmageddon.com/2026/07/23/1... #CyberSecurity #InfoSec
hackmageddon.com
000
psparrows.bsky.social @psparrows.bsky.social · 16/07/2026
🛡️ H1 2026 statistics are out! 💰 68.7% financially motivated 🦠 Malware top attack vector (40.5%) 🌐 Public-facing apps top entry point (23.7%) 🕵️ Espionage ~1 in 5 attacks Full report 👉 www.hackmageddon.com/2026/07/16/h... Statistics 👉 www.hackmageddon.com/2026/07/16/h... #CyberSecurity #InfoSec
hackmageddon.com
H1 2026 Cyber Attacks Statistics Infographic
Bundled Page This page requires JavaScript to display. H1 Unpacking...
000
psparrows.bsky.social @psparrows.bsky.social · 15/07/2026
The Netskope Threat Labs Report India 🇮🇳 2026 is out! 📉 #ShadowAI is losing ground 🤖 Managed #AI tool use jumped 30%→77% in a year 💻 Source code drives 49% of AI #DLP violations ☁️ #OneDrive is the #1 #cloud app exploited for #malware delivery www.netskope.com/resources/th...
010
psparrows.bsky.social @psparrows.bsky.social · 14/07/2026
578 cyber incidents in Q2 2026. Cyber crime drove 71.1% of attacks, malware was the top vector, and Information & Communication was the hardest-hit sector (34%). Full breakdown 👇 Statistics: hackmageddon.com/2026/07/14/q... Infographic: hackmageddon.com/2026/07/14/q... #CyberSecurity #InfoSec
hackmageddon.com
Q2 2026 Cyber Attacks Statistics
Q2 2026 brought 578 recorded cyber incidents worldwide, with financially-motivated cyber crime accounting for over 71% of the total. Malware remained the attacker's weapon of choice, exploiting public...
000
psparrows.bsky.social @psparrows.bsky.social · 09/07/2026
176 cyber attacks in June 2026. Cyber Crime drove 3 in 4 of them, Malware was the top vector, and public-facing apps were the #1 way in. 👉 Statistics: www.hackmageddon.com/2026/07/09/j... 👉 Infographic: www.hackmageddon.com/2026/07/09/june-2026-cyber-attacks-statistics-infographic #cybersecurity
hackmageddon.com
June 2026 Cyber Attacks Statistics
June 2026 saw 176 confirmed cyber attacks. Cyber Crime drove three in four incidents, Malware remained attackers' weapon of choice, and Information & Communication infrastructure took the heaviest hit...
000
psparrows.bsky.social @psparrows.bsky.social · 07/07/2026
96 confirmed cyber incidents, 16–30 June 2026 — one data-driven timeline. Ransomware, an Oracle zero-day, 430K+ FortiGate firewalls targeted, and nation-state espionage from China, Russia & North Korea. Full breakdown below 👇 www.hackmageddon.com/2026/07/07/1...
000
psparrows.bsky.social @psparrows.bsky.social · 02/07/2026
During H1 2026 #GenAI was used by #threat actors primarily to code malware and generate #phishing lures. In particular it was used to build #malware payload, phishing kits, and C2 frameworks. www.hackmageddon.com/2026/07/02/h...
000
psparrows.bsky.social @psparrows.bsky.social · 01/07/2026
During H1 2026 I tracked 44 mega-breaches with 679M records stolen 🔴 H1 2026, visualized: 🔴 One single breach accounted for 40% of all records (275M) 🔴Education sector: 43% of the total 🔴ShinyHunters was behind 39% of incidents 🔴61% hit US orgs www.hackmageddon.com/2026/01/29/m...
000
psparrows.bsky.social @psparrows.bsky.social · 25/06/2026
During H1 2026 I recorded 55 incidents exploiting 66 #vulnerabilities targeting security vendors 🔴 50% #Cybercrime 🔴 22% #Cyberespionage 🔴 #Malware & #RCE dominate attack techniques Full interactive report 👇 hackmageddon.com/2026/06/25/e... #CyberSecurity #CVE #ThreatIntel
000
psparrows.bsky.social @psparrows.bsky.social · 24/06/2026
During June 1-15 2026 I collected 80 incidents: #cybercrime 68.8%, #malware 40%, #cyberespionage 25%. #Supplychain worms hit npm/PyPI/GitHub. ShinyHunters, Qilin & Volt Typhoon most active. #Infographic below, full data 👉 hackmageddon.com/2026/06/23/1... #CyberSecurity #ThreatIntel
000
psparrows.bsky.social @psparrows.bsky.social · 19/06/2026
@Netskope Threat Labs is tracking an upgraded #ClickFix campaign targeting macOS, which includes a full-featured remote access #trojan instead of a simple stealer. The entire infection chain is completely fileless to avoid detection. #Cybersecurity www.netskope.com/blog/macos-c...
netskope.com
macOS ClickFix Lures Deploy AppleScript Stealer & Persistent RAT
In April 2026, Netskope Threat Labs reported a ClickFix campaign delivering an AppleScript-based infostealer to macOS users, pilfering sensitive data
000
psparrows.bsky.social @psparrows.bsky.social · 16/06/2026
I continue to track malicious campaign assisted by #AI. 🤖 38 Incidents collected 🤖 #Cybercrime dominates with 67.5% of incidents 🤖 #Malware is the top attack vector with 51.3% 🤖 AI is used for coding in 32.7% of cases www.hackmageddon.com/2026/02/12/m...
010
psparrows.bsky.social @psparrows.bsky.social · 11/06/2026
The May 2026 #cyberattacks statistics are out! 📢 ⛈️ #Cybercrime was behind 73.8% of events ⛈️ #Malware remained dominant (48.8%) ⛈️ Information & Communication was hit the most (37.6%) ⛈️ Exploitation of public-facing apps led initial access (22.2%) www.hackmageddon.com/2026/06/11/m...
hackmageddon.com
May 2026 Cyber Attacks Statistics
During May 2026 I collected 165 events: Cyber Crime accounted for 73.8% of events, Malware remained the dominant weapon (48.8%) and Information & Communication was hit the most (37.6%)
010
psparrows.bsky.social @psparrows.bsky.social · 09/06/2026
The 16-31 May #cyberattacks timeline is out with a big change! 🔊 A different layout, and a timeline completely interactive The charts are now better integrated into the page! Check it out at: www.hackmageddon.com/2026/06/09/1... I hope you will enjoy the new format! #cybersecurity
000
psparrows.bsky.social @psparrows.bsky.social · 28/05/2026
The Netskope Threat Labs for Europe 🇪🇺 is out! 📢 🇪🇺 99% of orgs use #GenAI apps 🇪🇺 #ChatGPT top GenAI app 🇪🇺 Particular Audience top blocked GenAI app 🇪🇺 #GitHub top exploited #cloud app for #malware 🇪🇺 Regulated data generate most #DLP violations www.netskope.com/resources/th...
030
psparrows.bsky.social @psparrows.bsky.social · 21/05/2026
The 1-15 May #cyberattacks timeline is out! 🔊 The #threat landscape during May H1 was dominated by #cybercrime and characterized by #malware and multiple #supplychain attacks, while the #exploitation of public-facing applications led the initial access. www.hackmageddon.com/2026/05/21/1...
010
psparrows.bsky.social @psparrows.bsky.social · 14/05/2026
The #cyberattacks Statistics for April 2026 are out! 📢 ⛈️ #Malware was the main attack vector ⛈️ #Cybercrime continued dominate the #threat landscape ⛈️ #Exploitation of Public-facing Applications (T1190) was the main initial access vector www.hackmageddon.com/2026/05/14/a...
hackmageddon.com
April 2026 Cyber Attacks Statistics
In April 2026, Cyber Crime continued to lead the Motivations, once again ahead of Cyber Espionage. Cyber Warfare took the third place, ahead of Hacktivism.
020
psparrows.bsky.social @psparrows.bsky.social · 12/05/2026
The Netskope Threat Labs report for #Brazil 🇧🇷 is out! 🔊 🌩️#GenAI adoption reached 100% of orgs and 71% of users 🌩️>60% of #DLP violations for both GenAI and personal apps driven by regulated data 🌩️#GitHub and #OneDrive top exploited apps for #malware download www.netskope.com/resources/th...
010
psparrows.bsky.social @psparrows.bsky.social · 08/05/2026
The 16-30 April 2026 #cyberattacks timeline is out! 🔊 #Supplychain attacks are characterizing this timeline, which sees #malware on top of the attack techniques and the exploitation of #vulnerabilities as the main initial access vector. www.hackmageddon.com/2026/05/08/1... #cybersec
hackmageddon.com
000
psparrows.bsky.social @psparrows.bsky.social · 30/04/2026
I continue to track the main #megabreaches (>1M records compromised) occurred so far in 2026. To date I tracked 32 events with ~350M records impacted. With this update, I added an interactive timeline with details of the #cyber events. Details at: 👉 www.hackmageddon.com/2026/01/29/m... 👈
000
psparrows.bsky.social @psparrows.bsky.social · 28/04/2026
Here are the statistics from the #cyberattacks timelines in Q1 2026 ⛈️ #Cybercrime led the #threat landscape ⛈️ #Malware led the attack techniques ⛈️ Information/Communication targets were hit the most ⛈️ #SocialEngineering & #Phishing led initial access www.hackmageddon.com/2026/04/28/q...
hackmageddon.com
Q1 2026 Cyber Attack Statistics
I aggregated the statistics created from the cyber attacks timelines published in the first quarter of 2026. In this period, I collected a total of 528 events (5.87 events/day) dominated by Cyber Crim...
000
psparrows.bsky.social @psparrows.bsky.social · 22/04/2026
#ClickFix lands on macOS! Netskope Threat Labs detail an infection chain delivering an AppleScript-based infostealer to #macOS users, with OS-specific lures and persistent AppleScript dialogs to successfully harvest critical credentials and session cookies www.netskope.com/blog/macos-c...
netskope.com
macOS ClickFix Campaign: AppleScript Stealers & New Terminal Protections
Summary Netskope Threat Labs is continuing its coverage of a ClickFix campaign targeting both Windows and macOS users. While our previous post focused on
000
psparrows.bsky.social @psparrows.bsky.social · 20/04/2026
The Netskope Threat Labs Report for Financial Services 2026 is out! 🏦 🔊 ⛈️ #ChatGPT most used #GenAI app ⛈️ #ZeroGPT most blocked GenAI app ⛈️ #GitHub top exploited app for #malware download ⛈️ Regulated data lead the #DLP policy violations for GenAI and #cloud apps! www.netskope.com/resources/th...
000
psparrows.bsky.social @psparrows.bsky.social · 16/04/2026
The #Cyberattacks statistics for March 2026 are out! 🔊 The threat landscape was dominated by #malware and fueled by #cybercrime 🔊 #SocialEngineering was the top initial access technique 🔊 Governments were the most hit targets www.hackmageddon.com/2026/04/16/m... #cybersecurity
hackmageddon.com
March 2026 Cyber Attacks Statistics
After the cyber attacks timelines, it’s time to publish the statistics for March 2026 where I collected and analyzed 282 events: a sharp increase compared to the 176 events of the previous month. In M...
000
psparrows.bsky.social @psparrows.bsky.social · 14/04/2026
The 16-31 March #Cyberattacks timeline is out, with 124 events and a #threat landscape dominated by #malware, but also characterized by an unusually high number of #supplychain attacks. #Cybersecurity #Infosecurity #Cloudsecurity www.hackmageddon.com/2026/04/14/1...
hackmageddon.com
16-31 March 2025 Cyber Attacks Timeline
The second half of March 2026 has been very active from an infosec standpoint, with 124 events and a threat landscape dominated by malware. As always, cyber crime led the motivations chart with 65%, s...
000
psparrows.bsky.social @psparrows.bsky.social · 30/03/2026
Netskope Threat Labs recently discovered TroyDen’s Lure Factory, an #AI assisted #malware campaign operating across multiple #GitHub repositories, spanning over 300 delivery packages, including an #OpenClaw deployment. www.netskope.com/blog/opencla...
netskope.com
OpenClaw Trap: AI-Assisted Lure Factory Targets Developers & Gamers
Netskope Threat Labs identified a link to a malware campaign operating across at multiple GitHub repositories, spanning over 300 delivery packages,
010
psparrows.bsky.social @psparrows.bsky.social · 26/03/2026
The 1-15 March 2026 #cyberattacks timeline is out! 🔊 The #threat landscape was dominated by #malware and driven by #cybercrime. #phishing was the main initial access vectors and targets in the #information & #communication sector were hit the most. www.hackmageddon.com/2026/03/26/1...
hackmageddon.com
1-15 March 2026 Cyber Attacks Timeline
In the first half of March 2026 I collected 95 events (6.34 events/day) with a threat landscape dominated by malware once ahead of account takeovers and ransomware.
000
psparrows.bsky.social @psparrows.bsky.social · 17/03/2026
Do you want to know which are the main #threats related to #AI apps, or do you need a view on enterprise AI adoption worldwide? Point your browser to ai-index.netskope.com and enjoy a real-time view on: 🤖 Global AI usage 🤖 Leaderboard and Trends 🤖 Analytics 🤖 Insights
010
psparrows.bsky.social @psparrows.bsky.social · 12/03/2026
The #cyberattacks statistics for February 2026 are out... 🔊 With 176 events and a #threat landscape dominated by #malware, #cybercrime as the main motivation, and #socialengineering as the main attack vector. #cybersecurity #cloudsecurity www.hackmageddon.com/2026/03/12/f...
hackmageddon.com
February 2026 Cyber Attacks Statistics
After the cyber attacks timelines, it’s time to publish the statistics for February 2026 where I collected and analyzed 176 events. In February 2026, Cyber Crime continued to lead the Motivations char...
000
psparrows.bsky.social @psparrows.bsky.social · 06/03/2026
The 16-28 February #cyberattacks timeline is out! 🔊 with 80 events and a #threat landscape driven by #cybercrime and dominated by #malware, but also with an important impact from #supplychain compromise in terms of initial access vectors. www.hackmageddon.com/2026/03/06/1...
000
psparrows.bsky.social @psparrows.bsky.social · 25/02/2026
The Netskope Threat Labs for Japan 🇯🇵 is out! 📢 ⛈️ 79% of users use managed #AI apps ⛈️ Gemini most popular #genAI app ⛈️ Regulated data accounts for 48% of DLP violations in genAI apps ⛈️ Box most abused #cloud platform for #malware distribution. www.netskope.com/resources/th...
010
psparrows.bsky.social @psparrows.bsky.social · 18/02/2026
The 1-15 February #cyberattacks timeline is out! 📢 With 96 events and a threat landscape dominated by #malware as the main attack, and #socialengineering as the top initial access vector. #cybersecurity #infosecurity #cloudsecurity www.hackmageddon.com/2026/02/18/1...
000
psparrows.bsky.social @psparrows.bsky.social · 16/02/2026
Netskope Threat Labs is tracking several #phishing campaigns that weaponize fake meeting invites for video conference applications, including #Zoom, #Teams, and #Meet. Attackers trick users to execute the payload, redirecting them to typo-squatted domains. www.netskope.com/blog/attacke...
netskope.com
Attackers Weaponize Signed RMM Tools via Zoom, Meet, & Teams Lures
Summary Netskope Threat Labs is tracking several phishing campaigns that weaponize fake meeting invites for various video conference applications,
010