Collected every two hours from specialised publications — each link leads to the original article.
Cybersecurity threats are becoming more imminent daily in today's fast-paced digital landscape. In 2023, there were 2365 cybersecurity attacks, an increase of …
Threat actors linked to the Black Basta ransomware may have exploited a recently disclosed privilege escalation flaw in the Microsoft Windows Error Reporting S…
A new sophisticated cyber attack has been observed targeting endpoints geolocated to Ukraine with an aim to deploy Cobalt Strike and seize control of the compr…
״Defenders think in lists, attackers think in graphs,” said John Lambert from Microsoft, distilling the fundamental difference in mindset between those who def…
The Russia-linked nation-state threat actor tracked as APT28 weaponized a security flaw in the Microsoft Windows Print Spooler component to deliver a previousl…
The malicious code inserted into the open-source library XZ Utils, a widely used package present in major Linux distributions, is also capable of facilitating …
The WINELOADER backdoor used in recent cyber attacks targeting diplomatic entities with wine-tasting phishing lures has been attributed as the handiwork of a h…
A now-patched security flaw in Microsoft Outlook could be exploited by threat actors to access NT LAN Manager (NTLM) v2 hashed passwords when opening a special…
Cybersecurity researchers have detected in the wild yet another variant of the Phobos ransomware family known as Faust.Fortinet FortiGuard Labs, which detailed…
A new phishing attack has been observed leveraging a Russian-language Microsoft Word document to deliver malware capable of harvesting sensitive information fr…
The threat actor known as Lace Tempest has been linked to the exploitation of a zero-day flaw in SysAid IT support software in limited attacks, according to ne…
Microsoft on Thursday disclosed that it found a new version of theBlackCatransomware (aka ALPHV and Noberus) that embeds tools like Impacket and RemCom to faci…
Users in Latin America (LATAM) are the target of a financial malware calledJanelaRATthat's capable of capturing sensitive information from compromised Microsof…
A new variant ofAsyncRATmalware dubbedHotRatis being distributed via free, pirated versions of popular software and utilities such as video games, image and so…
An unnamed Federal Civilian Executive Branch (FCEB) agency in the U.S. detected anomalous email activity in mid-June 2023, leading to Microsoft's discovery of …
A developing piece of ransomware calledBig Headis being distributed as part of a malvertising campaign that takes the form of bogus Microsoft Windows updates a…
Ransomware attacks are a major problem for organizations everywhere, and the severity of this problem continues to intensify.Recently, Microsoft's Incident Res…
Recently, Microsoft’s Defender Experts uncovered a sophisticated multi-stage adversary-in-the-middle (AiTM) phishing and business email compromise…Unmasking th…
An unnamed government entity associated with the United Arab Emirates (U.A.E.) was targeted by a likely Iranian threat actor to breach the victim's Microsoft E…
The Iranian threat actor known asAgriusis leveraging a new ransomware strain called Moneybird in its attacks targeting Israeli organizations.Agrius, also known…
The notorious cybercrime group known as FIN7 has been observed deployingCl0p(aka Clop) ransomware, marking the threat actor's first ransomware campaign since l…
The notorious cybercrime group known as FIN7 has been observed deployingCl0p(aka Clop) ransomware, marking the threat actor's first ransomware campaign since l…
Poorly managed Microsoft SQL (MS SQL) servers are the target of a new campaign that's designed to propagate a category of malware calledCLR SqlShellthat ultima…
Threat actors are employing a previously undocumented "defense evasion tool" dubbed AuKill that's designed to disable endpoint detection and response (EDR) sof…