Phantom Squatting Uses AI-Hallucinated Domains for Phishing and Malware
Palo Alto Networks’ Unit 42 calls the trick phantom squatting, and its new research shows it is already happening in the wild.
The reason it matters is
Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export Controls
Fable 5 returns to users on Wednesday, July 1, across Claude.ai, the Claude Platform, Claude Code, and Claude Cowork.
Export controls restrict who can
Google Patches 382 Chrome Vulnerabilities
Fifteen of the newly patched flaws have been rated ‘critical’ and 67 have been rated ‘high severity’.
The post Google Patches 382 Chrome Vulnerabilities appeared first on SecurityWeek.
Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ Attempts
The activity, per Huntress, originates from an IPv6 address range (2a0a:d683::/32) controlled by internet infrastructure provider LSHIY LLC (AS32167).
“Between June 12 and June 26, the threat
Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery
New research shows the malicious commands behind its fake “prove you’re human” pages are now handed out by API-driven servers that give each visitor the same malware in a different disguise. The same research also turned up a new delivery method built to slip past Windows’ script scanning.
Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service
The vulnerabilities are listed below –
CVE-2026-8451 (CVSS score: 8.8) – An insufficient input validation
