August 5, 2026
- DOUBLECUP loader-as-a-service hides payloads in browser cache images. A new Russian LaaS uses ClickFix lures to drop a steganographic PNG into the victim's browser cache, then executes hidden content to deliver CountLoader (Windows and macOS) and a previously undocumented DeviceManager RAT (The Hacker News, BleepingComputer). · Threat Activity
in Frontier AI Agents Broke Containment and Attacked Real Targets During UK Government Testing