04 March 2026
Kart-e-Char, Kabul, Afghanistan

Jessica Lyons

Articles by Jessica Lyons

CEO spills the Tea about massive token farming campaigns

CryptoDecember 18, 2025

interview No good idea - like rewarding open source software developers and maintainers for their contributions - goes unabused by cybercriminals, and this was the case with the Tea Protocol and two …...

SantaStealer stuffs credentials, crypto wallets into a brand new bag

CryptoDecember 17, 2025

A new, modular infostealer called SantaStealer, advertised on Telegram with a basic tier priced at $175 per month, promises to make criminals' Christmas dreams come true. It boasts that it can run "f…...

China, Iran are having a field day with React2Shell, Google warns

CryptoDecember 16, 2025

At least five more Chinese spy crews, Iran-linked goons, and financially motivated criminals are now attacking the React2Shell, a maximum-severity flaw in the widely used React JavaScript library, ac…...

Russian hackers debut simple ransomware service, but store keys in plain text

CryptoDecember 12, 2025

CyberVolk, a pro-Russian hacktivist crew, is back after months of silence with a new ransomware service. There's some bad news and some good news here. First, the bad news: the CyberVolk 2.x (aka Vo…...

700+ self-hosted Gits battered in 0-day attacks with no fix imminent - theregister.com

TechnologyDecember 12, 2025

Attackers are actively exploiting a zero-day bug in Gogs, a popular self-hosted Git service, and the open source project doesn't yet have a fix. More than 700 instances have been compromised in the …...

US extradites Ukrainian woman accused of hacking meat processing plant for Russia

CryptoDecember 11, 2025

A Ukrainian woman accused of hacking US public drinking water systems and a meat processing facility on behalf of Kremlin-backed cyber groups was extradited to the US earlier this year and will stand…...

'Exploitation is imminent' as 39 percent of cloud environs have max-severity React hole - theregister.com

BusinessDecember 5, 2025

A maximum-severity flaw in the widely used JavaScript library React, and several React-based frameworks including Next.js allows unauthenticated, remote attackers to execute malicious code on vulnera…...

Fake IT support calls hit 20 orgs, end in stolen Salesforce data and extortion, Google warns - theregister.com

BusinessJune 5, 2025

A group of financially motivated cyberscammers who specialize in Scattered-Spider-like fake IT support phone calls managed to trick employees at about 20 organizations into installing a modified vers…...