View Ridge Security
Back to Cyber HoseActive Exploits & Incidents

EU official's phone infected with Pegasus spyware

🚨 ACTIVE EXPLOITS & INCIDENTS

  • Risky Bulletin: EU official’s phone infected with Pegasus — Risky Business News A European MP’s phone was compromised with Pegasus spyware, highlighting ongoing targeted surveillance risks to high-profile individuals. Additionally, Android has drastically reduced PIN guessing attempts from 1,800 to 20, tightening brute force protections. Alibaba banned employee use of Claude AI at work amid security concerns, and a new Linux kernel vulnerability was disclosed, requiring immediate review.

🔓 VULNERABILITIES & CVEs

  • Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data — The Hacker News A critical flaw in the gaming-focused Opera GX browser allowed malicious websites to silently install extensions that exfiltrate data from visited pages. Researchers demonstrated reconstructing a signed-in Gmail address without user interaction. Opera has patched the issue; users should update immediately to prevent data leakage.

🕵️ THREAT RESEARCH & DEEP DIVES

  • New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions — The Hacker News Shandong University researchers unveiled TrojPix, a novel exfiltration technique that encodes data into imperceptible pixel changes on-screen, causing video cables to emit faint radio signals decoded by nearby receivers. This method requires prior malware presence but expands air-gap bypass tactics, demanding enhanced physical and signal monitoring controls.
  • New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS — The Hacker News LevelBlue researchers flagged QuimaRAT, a cross-platform Java RAT offered as malware-as-a-service with tiered subscriptions ($150/month to $1,200 lifetime). It targets Windows, Linux, and macOS, increasing threat actor flexibility and complicating detection across heterogeneous environments.
  • SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting Packing — The Hacker News Hong Kong University of Science and Technology researchers demonstrated SkillCloak, a packing technique that evades static scanners for malicious AI coding agent add-ons with over 90% success. They also developed a runtime checker that detects most evasions, underscoring the evolving AI supply chain attack surface.

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check