The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
The recently patched TeamCity RCE flaw is now under active attack by numerous ransomware gangs.…TeamCity RCE Flaw Actively Exploited To Deploy Ransomware on La…
Microsoft has detailed a new campaign in which attackers unsuccessfully attempted to move laterally to a cloud environmentthrough an SQL Server instance."The a…
Nearly three dozen counterfeit packages have been discovered in the npm package repository that are designed to exfiltrate sensitive data from developer system…
LUCR-3 overlaps with groups such as Scattered Spider, Oktapus, UNC3944, and STORM-0875 and is a financially motivated attacker that leverages the Identity Prov…
The U.S. Federal Bureau of Investigation (FBI) is warning of a new trend of dual ransomware attacks targeting the same victims, at least since July 2023."Durin…
A novel side-channel attack calledGPU.ziprenders virtually all modern graphics processing units (GPU) vulnerable to information leakage."This channel exploits …
Data security is in the headlines often, and it’s almost never for a positive reason. Major breaches, new ways to hack into an organization’s supposedly secure…
Cybersecurity experts have shed light on a new cybercrime group known asShadowSyndicate(formerly Infra Storm) that may have leveraged as many as seven differen…
China's Ministry of State Security (MSS) has accused the U.S. of breaking into Huawei's servers, stealing critical data, and implanting backdoors since 2009, a…
A financially motivated threat actor has been outed as an initial access broker (IAB) that sells access to compromised organizations for other adversaries to c…
The maintainers of Free Download Manager (FDM) have acknowledged a security incident dating back to 2020 that led to its website being used to distribute malic…
Cybersecurity researchers have discovered a fresh batch of malicious packages in the npm package registry that are designed to exfiltrate Kubernetes configurat…
Targets located in Azerbaijan have been singled out as part of a new campaign that's designed to deploy Rust-based malware on compromised systems.Cybersecurity…
Software development company Retool has disclosed that the accounts of 27 of its cloud customers were compromised following a targeted and SMS-based social eng…
The financially motivated threat actor known asUNC3944is pivoting to ransomware deployment as part of an expansion to its monetization strategies, Mandiant has…
The threat actors behind RedLine and Vidar information stealers have been observed pivoting to ransomware through phishing campaigns that spread initial payloa…
A download manager site served Linux users malware that stealthily stole passwords and other sensitive information for more than three years as part of a suppl…
There is a new battlefield. It is global and challenging to defend. What began with a high-profile incident back in 2007, when Estonia was hit by hackers targe…
A new ransomware family called3AMhas emerged in the wild after it was detected in a single incident in which an unidentified affiliate deployed the strain foll…
With the growing reliance on web applications and digital platforms, the use of application programming interfaces (APIs) has become increasingly popular. If y…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday warned that multiple nation-state actors are exploiting security flaws in Fortinet…
AMirai botnetvariant calledPandorahas been observed infiltrating inexpensive Android-based TV sets and TV boxes and using them as part of a botnet to perform d…
Microsoft on Wednesday revealed that a China-based threat actor known asStorm-0558acquired the inactive consumer signing key to forge tokens and access Outlook…
Microsoft on Wednesday revealed that a China-based threat actor known asStorm-0558acquired the inactive consumer signing key to forge tokens and access Outlook…