Collected every two hours from specialised publications — each link leads to the original article.
Recent data breaches have highlighted the critical need to improve guest Wi-Fi infrastructure security in modern business environments. Organizations face incr…
High-profile entities in India have become the target of malicious campaigns orchestrated by the Pakistan-based Transparent Tribe threat actor and a previously…
Containers are among the many recent inventions of modern computing. They have emerged as the cornerstone of software development and deployment. They isolate …
״Defenders think in lists, attackers think in graphs,” said John Lambert from Microsoft, distilling the fundamental difference in mindset between those who def…
LUCR-3 overlaps with groups such as Scattered Spider, Oktapus, UNC3944, and STORM-0875 and is a financially motivated attacker that leverages the Identity Prov…
A new malware strain known as BundleBot has been stealthily operating under the radar by taking advantage of.NET single-file deployment techniques, enabling th…
A new information-stealing malware has set its sights on Apple's macOS operating system to siphon sensitive information from compromised devices.DubbedMacSteal…
As the new year begins, it's more important than ever to protect your business from the constantly evolving cyber threats that could compromise your valuable a…
Ransomware in particular poses a major threat, but security vendors say there has been an increase in Linux-targeted cryptojacking, malware, and vulnerability …
A sophisticated hacker group pwned Amazon Web Services (AWS) servers, set up a rootkit that let them remotely control servers, then merrily funnelled sensitive…
The City of Baltimore was under cyber-attack last year, with hackers demanding $76,000 in ransom. Though the city chose not to pay the ransom, the attack still…
Identity visibility is a starting point for modern identity security, because stolen and misused credentials are among the most frequently reported initial acc…
Cybersecurity researchers have flagged a new evolution of the GlassWorm campaign that delivers a multi-stage framework capable of comprehensive data theft and …
A threat actor known as UNC6426 leveraged keys stolen following the supply chain compromise of the nx npm package last year to completely breach a victim's clo…
Google Cloud's Mandiant Consulting has revealed that it has witnessed a drop in activity from the notorious Scattered Spider group, but emphasized the need for…
Google on Wednesday released updates to address four security issues in its Chrome web browser, including one for which it said there exists an exploit in the …
A newly discovered attack vector in GitHub Actions artifacts dubbed ArtiPACKED could be exploited to take over repositories and gain access to organizations' c…
American cybersecurity firm and Google Cloud subsidiary Mandiant had its X (formerly Twitter) account compromised for more than six hours by an unknown attacke…
As cloud technology evolves, so does the challenge of securing sensitive data. In a world where data duplication and sprawl are common, organizations face incr…
Multiple high-severity security vulnerabilities have been disclosed in ConnectedIO's ER2000 edge routers and the cloud-based management platform that could be …
A malicious Android SMS application discovered on the Google Play Store has been found to stealthily harvest text messages with the goal of creating accounts o…
A threat actor with a suspected China nexus has been linked to a set of espionage attacks in the Philippines that primarily relies on USB devices as an initial…
Linux operating systems power more than 90% of the world's public cloud workload , from government web servers to smart manufacturing technologies. But as orga…
Exclusive Interview with CrowdSec CEO Philippe HumeauWith the widespread adoption of cloud and container infrastructure, protecting servers, services, containe…