Archiv für März 2026

📄

‘Starkiller’ Phishing Service Proxies Real Login Pages, MFA

Most phishing websites are little more than static copies of login pages for popular online destinations, and they are often quickly taken down by anti-abuse activists and security firms. But a stealthy new phishing-as-a-service offering lets customers sidestep both of these pitfalls: It uses cleverly disguised links to load the target brand’s real website, and then acts as a relay between the target and the legitimate site — forwarding the victim’s username, password and multi-factor authentication (MFA) code to the legitimate site and returning its responses.

Mehr lesen →
📄

Who is the Kimwolf Botmaster “Dort”?

In early January 2026, KrebsOnSecurity revealed how a security researcher disclosed a vulnerability that was used to assemble Kimwolf, the world’s largest and most disruptive botnet. Since then, the person in control of Kimwolf — who goes by the handle „Dort“ — has coordinated a barrage of distributed denial-of-service (DDoS), doxing and email flooding attacks against the researcher and this author, and more recently caused a SWAT team to be sent to the researcher’s home. This post examines what is knowable about Dort based on public information.

Mehr lesen →
📄

How AI Assistants are Moving the Security Goalposts

AI-based assistants or „agents“ — autonomous programs that have access to the user’s computer, files, online services and can automate virtually any task — are growing in popularity with developers and IT workers. But as so many eyebrow-raising headlines over the past few weeks have shown, these powerful and assertive new tools are rapidly shifting the security priorities for organizations, while blurring the lines between data and code, trusted co-worker and insider threat, ninja hacker and novice code jockey.

Mehr lesen →
📄

Microsoft Patch Tuesday, March 2026 Edition

Microsoft Corp. today pushed security updates to fix at least 77 vulnerabilities in its Windows operating systems and other software. There are no pressing „zero-day“ flaws this month (compared to February’s five zero-day treat), but as usual some patches may deserve more rapid attention from organizations using Windows. Here are a few highlights from this month’s Patch Tuesday.

Mehr lesen →
📄

Iran-Backed Hackers Claim Wiper Attack on Medtech Firm Stryker

A hacktivist group with links to Iran’s intelligence agencies is claiming responsibility for a data-wiping attack against Stryker, a global medical technology company based in Michigan. News reports out of Ireland, Stryker’s largest hub outside of the United States, said the company sent home more than 5,000 workers there today. Meanwhile, a voicemail message at Stryker’s main U.S. headquarters says the company is currently experiencing a building emergency.

Mehr lesen →
📄

FLIPPER FRIENDS™: ALL-LEGENDS TOURNAMENT SERIES | SEASON 2: WEEK 7

sponsored blog post Legends players, Week 7 is here – time to keep the competition rolling! Season 2 continues with a fresh mix of exciting gameplay, challenging tables, and leaderboard action. Compete from your Legends 4K™, HDP™, or HD Pinball device and climb the ranks for your chance to win AtGames Gift Card rewards. This […]

Mehr lesen →
📄

FLIPPER FRIENDS™ JUNIOR LEAGUE IS COMING – GET READY!

sponsored blog post Legends Families, Big News! In partnership with the IFPA, AtGames is excited to launch an all-new tournament series designed for young pinball players aged 15 and under! Players under 15 can compete on fun, young player- and family-friendly tables, including TMNT, Police Patrol, Firefighter: Wildlands, Dinosaur Dynasty, The Last Ice Age, and […]

Mehr lesen →
📄

Tool updates: lots of security and logic fixes, (Mon, Mar 23rd)

So, I've been slow to get on the Claude Code/OpenCode/Codex/OpenClaw bandwagon, but I had some time last week so I asked Claude to review (/security-review) some of my python scripts. He found more than I'd like to admit, so I checked in a bunch of updates. In reviewing his suggestions, he was right, I made some stupid mistakes, some of which have been sitting in there for a long time. It was nothing earth-shattering and it took almost no time for Claude, it took longer for me to read through the updates he wanted to make, figure out what he was seeing, and decide whether to accept them or tweak them. Here are a few of them.

Mehr lesen →