The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
"Dozens" of organizations across the world have been targeted as part of a broad business email compromise (BEC) campaign that involved the use of adversary-in…
The U.S. Department of Justice (DoJ) has charged two Russian nationals in connection with masterminding the 2014 digital heist of the now-defunct cryptocurrenc…
Recently, Microsoft’s Defender Experts uncovered a sophisticated multi-stage adversary-in-the-middle (AiTM) phishing and business email compromise…Unmasking th…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) have published a joint advisory regarding the active…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) have published a joint advisory regarding the active…
Get exclusive insights from a real ransomware negotiator who shares authentic stories from network hostage situations and how he managed them.The Ransomware In…
Threat actors associated with theCyclops ransomwarehave been observed offering an information stealer malware that's designed to capture sensitive data from in…
Over 55% of security executives report that they have experienced a SaaS security incident in the past two years — ranging from data leaks and data breaches to…
An analysis of the Linux variant of a new ransomware strain called BlackSuit has covered significant similarities with another ransomware family calledRoyal.Tr…
Spanish-speaking users in Latin America have been at the receiving end of a new botnet malware dubbedHorabotsince at least November 2020."Horabot enables the t…
The threat actors behind BlackCat ransomware have come up with an improved variant that prioritizes speed and stealth in an attempt to bypass security guardrai…
Researchers have found a malicious campaign exploiting seemingly legit YouTube accounts. The campaign involves uploading…This Campaign Delivers Three Malware V…
In this day and age, vulnerabilities in software and systems pose a considerable danger to businesses, which is why it is essential to have an efficient vulner…
A new ransomware operation has been targeting Windows and Linux systems with a combination of payloads relying on leaked LockBit and Babuk code and custom-deve…
A critical security vulnerability has been disclosed in the Open Authorization (OAuth) implementation of the application development framework Expo.io.The shor…
Email protection and network security services provider Barracuda is warning users about a zero-day flaw that it said has been exploited to breach the company'…
An unnamed government entity associated with the United Arab Emirates (U.A.E.) was targeted by a likely Iranian threat actor to breach the victim's Microsoft E…
The threat actors behind the nascentBuhtiransomware have eschewed their custom payload in favor of leaked LockBit and Babuk ransomware families to strike Windo…
The Iranian threat actor known asAgriusis leveraging a new ransomware strain called Moneybird in its attacks targeting Israeli organizations.Agrius, also known…
An updated version of the commodity malware called Legion comes with expanded features to compromise SSH servers and Amazon Web Services (AWS) credentials asso…
The infamous Lazarus Group actor has been targeting vulnerable versions of Microsoft Internet Information Services (IIS) servers as an initial breach route to …
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of cyber attacks targeting state bodies in the country as part of an espionage campaign.Th…
The North Korean advanced persistent threat (APT) group known as Kimsuky has been observed using a piece of custom malware called RandomQuery as part of a reco…
The notorious cybercrime group known as FIN7 has been observed deployingCl0p(aka Clop) ransomware, marking the threat actor's first ransomware campaign since l…