The new OverlayPhantom trojan is silently hijacking Android financial applications across ten countries, including India. By abusing Accessibility Services to generate convincing overlay interfaces and stream device screens in real time, the malware allows attackers to capture UPI and banking credentials without victims ever realizing they have been compromised.
Category: Threats
Home
Threats
Post
May 28, 2026June 4, 2026News, Supply Chain Attacks, Threats
Megalodon: The GitHub Supply Chain Attack That Compromised 5,500 Repositories in Six Hours Flat
Six hours. 5,500 compromised repositories. The Megalodon campaign represents a massive escalation in supply chain attack velocity, targeting GitHub Actions workflows to silently exfiltrate production cloud secrets. Here is why your current security review process might be missing this critical automation blind spot.

