Collected every two hours from specialised publications — each link leads to the original article.
A large-scale extortion campaign has compromised various organizations by taking advantage of publicly accessible environment variable files (.env) that contai…
A large-scale extortion campaign has compromised various organizations by taking advantage of publicly accessible environment variable files (.env) that contai…
Malicious Android apps masquerading as Google, Instagram, Snapchat, WhatsApp, and X (formerly Twitter) have been observed to steal users' credentials from comp…
Malicious Android apps masquerading as Google, Instagram, Snapchat, WhatsApp, and X (formerly Twitter) have been observed to steal users' credentials from comp…
Malicious Android apps masquerading as Google, Instagram, Snapchat, WhatsApp, and X (formerly Twitter) have been observed to steal users' credentials from comp…
The threat actor known as Muddled Libra has been observed actively targeting software-as-a-service (SaaS) applications and cloud service provider (CSP) environ…
As the shift of IT infrastructure to cloud-based solutions celebrates its 10-year anniversary, it becomes clear that traditional on-premises approaches to data…
The Midnight Blizzard and Cloudflare-Atlassian cybersecurity incidents raised alarms about the vulnerabilities inherent in major SaaS platforms. These incident…
The maintainers of the open-source file-sharing software ownCloud have warned of three critical security flaws that could be exploited to disclose sensitive in…
Threat actors are leveraging manipulated search results and bogus Google ads that trick users who are looking to download legitimate software such as WinSCP in…
Microsoft has detailed a new campaign in which attackers unsuccessfully attempted to move laterally to a cloud environmentthrough an SQL Server instance."The a…
An analysis of the indicators of compromise (IoCs) associated with the JumpCloud hack has uncovered evidence pointing to the involvement of North Korean state-…
Google has released its monthly security updates for the Android operating system, addressing 46 new software vulnerabilities. Among these, three vulnerabiliti…
Ransomware actors and cryptocurrency scammers have joined nation-state actors in abusing cloud mining services to launder digital assets, new findings reveal."…
A North Korean government-backed threat actor has been linked to attacks targeting government and military personnel, think tanks, policy makers, academics, an…
By: Grayson Milbourne, Security Intelligence Director Cyber threats are becoming increasingly difficult to detect. Cybercriminals…Soaring Ransomware payments, …
Google's Threat Analysis Group (TAG) took the wraps off a newinitial access brokerthat it said is closely affiliated to a Russian cyber crime gang notorious fo…
The threat actor behind a nascent Android banking trojan namedSharkBothas managed to evade Google Play Store security barriers by masquerading as an antivirus …
Threat actors are actively incorporating public cloud services from Amazon and Microsoft into their malicious campaigns to deliver commodity remote access troj…
Cybercriminals are constantly looking for new opportunities to exploit and even though the majority of…Is Cloud-Based Ransomware the Future of Cyber Crime? on …
Linux and FreeBSD variants of the Hive ransomware have recently been discovered, demonstrating how threat actors are increasingly targeting other OSes besides …
A newly discovered side-channel attack demonstrated on modern processors can be weaponized to successfully overcomeÂSite Isolation protectionsÂweaved into Goog…
Cybersecurity researchers have disclosed a new class of vulnerabilities impacting major DNS-as-a-Service (DNSaaS) providers that could allow attackers to exfil…
A malware known for targeting macOS operating system has been updated once again to add more features to its toolset that allows it to amass and exfiltrate sen…