Welcome to LoopSec

We are a group that is focused on teaching others how to program and exposing any corruption we might run into. If you would like any assistence or would like to join us then please apply. Please sign in/sign up to view the full site.

 




The Hacker News
  • AI Phishing Is Crushing SOCs with Alert Volume: How to Reduce Tier 1 Overload
    Monday, 8. June 2026 15:00 o'clock
    Phishing has always been a numbers game. AI has turned it into a volume machine. Attackers can now create convincing emails, fake login pages, and tailored lures in minutes. Every polished message adds another case for Tier 1 to review, another link to inspect, and another alert that cannot be dismissed at a glance. As the queue grows, a credential theft attempt or malware delivery can easily
  • The Hardest Fork
    Monday, 8. June 2026 13:53 o'clock
    Mythos is real. I know a big chunk of the industry thinks it's a marketing stunt, and I get why. I get it. But I've seen the findings, and they're bad. These aren't "whoops, this line right here is wrong, and that's RCE." They're novel combinations of a few dozen issues out of thousands of things every SAST scanner already finds, chained together into something much worse. It's real creativity,
  • VerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux Appliances
    Monday, 8. June 2026 12:27 o'clock
    A China-nexus cyber espionage group has been observed deploying a BSD variant of a known backdoor called BRICKSTORM, as well as two other malware families codenamed PLENET (aka GRIMBOLT) and AGENTPSD to target Linux systems. The activity has been attributed by Volexity to a threat cluster it tracks as VerdantBamboo, which it said overlaps with hacking groups known as Clay Typhoon (Microsoft),
  • UNC3753 Used Vishing and Physical Intrusions in U.S. Data Theft Extortion Campaign
    Monday, 8. June 2026 09:39 o'clock
    Cybersecurity researchers have disclosed details of a financially motivated data theft extortion campaign that has targeted dozens of organizations across professional, legal, and financial services in the U.S. between January and May 2026. The activity has been attributed by Google Mandiant and Google Threat Intelligence Group (GTIG) to a threat actor dubbed UNC3753, which is also known as
  • VS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain Attacks
    Monday, 8. June 2026 08:08 o'clock
    Microsoft has announced that Visual Studio Code (VS Code) will apply a two-hour delay before extensions for the integrated development environment (IDE) are updated automatically to a newer version in an attempt to tackle software supply chain threats. "When automatic updates are enabled, new versions are auto-updated two hours after they are published, adding an extra layer of protection
  • New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration
    Saturday, 6. June 2026 15:36 o'clock
    OpenAI has begun rolling out a new Lockdown Mode to ChatGPT for eligible personal accounts to reduce the risk of data exfiltration arising from prompt injection attacks. The feature is primarily designed for people and organizations that handle sensitive data and require stricter protection guarantees. Lockdown Mode is available to logged-in users across Free, Go, Plus, and Pro, and
My Account



Not a member yet? Sign up now!