F6 Threat Intelligence has disclosed that it tracked the activities of the Hive0117 group, which conducted a large-scale... The post DarkWatchman-linked group Hive0117 targets Russian critical...
Cybersecurity vendor BeyondTrust launched this week the new Identity Security Risk Assessment, a free service designed to illuminate... The post BeyondTrust launches free Identity Security Risk...
SSH Communications Security (SSH) and Cinia have signed a reseller agreement that will enable both parties to deliver... The post SSH and Cinia sign reseller agreement to deliver comprehensive...
The Irish Data Protection Commission (DPC) has fined TikTok €530 million (over $601 million) for illegally transferring the personal data of users in the European Economic Area (EEA) to China,...
Adversaries frequently repurpose trusted tools like curl.exe to tunnel traffic through SOCKS proxies and even reach .onion domains. Whether it’s for data exfiltration or command-and-control...
2025-04-22 • SentinelOne • SentinelOne • win.fog Open article on Malpedia
2025-04-29 • France Diplomatie • France Diplomatie Open article on Malpedia
2025-04-29 • CERT-FR • CERT-FR • ps1.steelhook, py.masepie, win.mocky_lnk, win.oceanmap Open article on Malpedia
When attackers repurpose legitimate binaries like curl.exe to tunnel through SOCKS proxies and access .onion domains, it poses a major visibility gap for defenders. These behaviors can signal C2...
2025-05-01 • Github (VenzoV) • VenzoV Open article on Malpedia
2025-04-29 • Trustwave • Trustwave SpiderLabs • js.kongtuke Open article on Malpedia
2025-05-01 • Zscaler • ThreatLabZ research team • win.stealc Open article on Malpedia
Microsoft has resolved an issue with a machine learning model that mistakenly flagged emails from Gmail accounts as spam in Exchange Online. [...]
Microsoft has announced that all new Microsoft accounts will be "passwordless by default" to secure them against password attacks such as phishing, brute force, and credential stuffing. [...]
The term proof is used for loosely in the blockchain industry. Originally with Bitcoin, proof of work was used as an anti-spam technique. It relies on the probabilistic assumption takes a certain...
In Scroll zkEVM rollups, transactions occur in two main steps: EVM executes all transactions, performs state transitions and then sends the transaction to the provers. zkEVM prover proves the...
A employee at Elon Musk's artificial intelligence company xAI leaked a private key on GitHub that for the past two months could have allowed anyone to query private xAI large language models...
Federal law enforcement officials accuse Artem Stryzhak, who was arrested in Spain last year, of attacking and extorting multiple companies between 2018 and 2021. The post Ukrainian extradited to...
Federal law enforcement officials accuse Artem Stryzhak, who was arrested in Spain last year, of attacking and extorting multiple companies between 2018 and 2021. The post Ukrainian extradited to...
SAN FRANCISCO — The senior director for cyber at the White House’s National Security Council told an audience Thursday that he wants to “destigmatize” offensive cyber operations, seeing them as a...
Sonatype discovered ‘crypto-encrypt-ts’, a malicious npm package impersonating the popular CryptoJS library to steal crypto and personal data.…
Programs leveraging AI agents are increasingly popular. Nine attack scenarios using open-source agent frameworks show how bad actors target these applications. The post AI Agents Are Here. So Are...
Security audits are a crucial component of an organization’s cybersecurity strategy. However, despite their importance, they are not as commonly conducted as you might think.
Cybersecurity researchers have shed light on a new campaign targeting WordPress sites that disguises the malware as a security plugin. The plugin, which goes by the name "WP-antymalwary-bot.php,"...
Cryptography experts said a “Cambrian explosion” of standards is on its way as a response to worries over quantum computers breaking current algorithms. The post Quantum computer threat spurring...
SEO: Cybercriminals are using the recent power outages in Spain and Portugal to launch phishing attacks disguised as…
A California man who used the alias "NullBulge" has pleaded guilty to illegally accessing Disney's internal Slack channels and stealing over 1.1 terabytes of internal company data. [...]
U.S. legislation to criminalize non-consensual intimate images, videos and deepfakes has passed Congress with the overwhelming support of both parties, and even social media companies have voiced...
The Justice Department accuses two men of running a “network of nihilistic violent extremists” who engaged in and facilitated the grooming, manipulation and extortion of minors. The post Leaders...
The Justice Department accuses two men of running a “network of nihilistic violent extremists” who engaged in and facilitated the grooming, manipulation and extortion of minors. The post Leaders...