📰 DAILY THREAT BRIEFING
Wednesday, June 17, 2026
12 News Items
THN · BleepingComputer · Krebs · Dark Reading · SANS

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of June 17, 2026.

  1. Fileless Phantom Stealer Targets Browser Credentials
    — Dark Reading

    In addition to executing entirely in memory, the malware's infection chain incorporates other anti-analysis techniques designed to frustrate…
  2. Security Community Slams US Ban on Exporting Mythos, Fable
    — Dark Reading

    An open letter signed by dozens of security experts asked the government to reverse export restrictions on Anthropic's Claude Fable 5 and My…
  3. Malicious JetBrains Marketplace plugins steal AI API keys from developers
    — Bleeping Computer

    At least 15 malicious plugins found on the JetBrains Marketplace were designed to steal AI API keys from developers. […]
  4. SprySOCKS Windows Variant Abuses Kernel Drivers to Evade Detection
    — Dark Reading

    FishMonger, a China-nexus threat group, has deployed an undocumented version of the Linux backdoor against government targets in Honduras, T…
  5. New Rokarolla Android malware targets 217 banking, crypto apps
    — Bleeping Computer

    A new Android banking trojan named Rokarolla is targeting 217 banking and cryptocurrency applications using an extensive set of 137 commands…
  6. Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting
    — The Hacker News

    A flaw in the Google Cloud Vertex AI SDK for Python let an attacker with no access to a victim's project hijack the victim's machine learnin…
  7. Steam Workshop abused to spread malware via Wallpaper Engine app
    — Bleeping Computer

    Threat actors are abusing Steam Workshop, Valve's community hub for downloading game-related content, to push various malware hidden in wall…
  8. ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures
    — The Hacker News

    Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Lo…
  9. Rokarolla Android Trojan Levels Up to Full Device Control, Persistence
    — Dark Reading

    The emerging malware, spread via fake TikTok and Chrome downloads, demonstrates an evolution by combining banking fraud with extensive devic…
  10. UK to require ID or face scan before you can make social media accounts
    — Bleeping Computer

    Opening a new social media account in the UK will soon mean proving you're over 16 with an ID upload or a facial age scan, under a governmen…
  11. New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds
    — The Hacker News

    Security researchers at Zimperium's zLabs have documented a new Android banking trojan, Rokarolla, that targets 217 banking and cryptocurr…
  12. Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive
    — The Hacker News

    Security teams have never had more IP data at their disposal. Every day, analysts ingest enrichment feeds, geolocation data, reputation scor…

Generated by HiveNet.ai Threat Intelligence Platform · June 17, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC