In February 2025, Sophos completed the Secureworks deal and SolarWinds went private
Incorrect Privilege Assignment vulnerability (CVE-2025-1413) has been found in DaVinci Resolve application.
Louis Donald Mendonsa, 62, was sentenced following a guilty plea for distributing child sexual abuse materials (CSAM) via…
Serbian authorities have reportedly used an Android zero-day exploit chain developed by Cellebrite to unlock the device of a student activist in the country and attempt to install spyware. [...]
Welcome to the Threat Context Monthly blog series where we provide a comprehensive roundup of the most relevant cybersecurity news and threat information from KrakenLabs, Outpost24’s cyber threat...
2025-02-20 • Cisco Talos • Cisco Talos Open article on Malpedia
Unit 42 reports on phishing activity linked to the threat group JavaGhost. These attacks target organizations’ AWS environments. The post JavaGhost’s Persistent Phishing Attacks From the Cloud...
2025-02-24 • Intel 471 • Intel 471 • apk.tgtoxic Open article on Malpedia
Four in ten flaws exploited by threat actors in 2024 were from 2020 or earlier, with some dating back to the 1990s, according to a GreyNoise report
2025-02-24 • cocomelonc • cocomelonc • osx.oceanlotus, win.duqu, win.stegoloader Open article on Malpedia
2025-02-21 • SonicWall • SonicWall • win.remcos Open article on Malpedia
2025-02-27 • Securite360.net • Muffin • elf.redtail Open article on Malpedia
2025-02-27 • Medium b.magnezi • 0xMrMagnezi • win.nanocore Open article on Malpedia
Microsoft has confirmed that the Skype video call and messaging service will be shut down in May, 14 years after replacing the Windows Live Messenger. [...]
Big shifts in the infostealer scene, novel attack vector against iOS and Android, and a massive surge in investment scams on social media
A joint operation between the Thai and Singapore police has resulted in the arrest of a man allegedly responsible for over 90 data extortion attacks worldwide
Check out a new framework for better securing open source projects. Plus, learn how AI is making ransomware harder to detect and mitigate. In addition, find out the responsible AI challenges orgs...
CVE-2025-27364, a critical Remote Code Execution (RCE) flaw has been discovered in MITRE Caldera, an open-source adversary emulation platform used by security professionals. This flaw could allow...
The dawn of AI and advanced technological tools has rendered previous security measures vulnerable to high-level cyberattacks. However, cybersecurity specialists have successfully provided...
Cleveland Municipal Court has been closed for three consecutive days following a cybersecurity incident that has disrupted its internal systems. The court announced the closure on Monday and has...
A new cybersecurity breach has put over 3.2 million Google Chrome users at risk after hackers hijacked popular browser extensions, injecting malicious scripts and redirecting web traffic for...
On this week's episode, -We explore the world of AI hallucinations. What causes them? Do they make AI useless, or could they potentially lead to scientific breakthroughs -We dive into emerging AI...
Kaspersky SOC analysts discuss a recent incident where the well-known Behinder web shell was used as a post-exploitation backdoor, showing how web shells have evolved.
The threat group JavaGhost has evolved from website defacement to persistent phishing operations targeting cloud environments, particularly AWS. Between 2022 and 2024, JavaGhost leveraged exposed...
A hacker using the alias GHOSTR, linked to 90+ data breaches, was arrested in a joint effort by law enforcement in Thailand, Singapore, and cybersecurity firm Group-IB.
Federal prosecutors accuse Cameron Wagenius of searching how to defect to Russia days after he tried to sell stolen data to a foreign intelligence service. The post Army soldier linked to...
Federal prosecutors accuse Cameron Wagenius of searching how to defect to Russia before he tried to sell stolen data to a foreign intelligence service. The post Army soldier linked to Snowflake...
Strong eCommerce customer service builds trust, boosts loyalty, and drives sales. Learn key strategies, best practices, and tools to enhance online support.
The company wants its users to move away from using SMS in two-step verification. The post Here’s what Google is (and isn’t) planning with SMS account verification appeared first on CyberScoop.
Jonathan McKernan spoke positively about Rohit Chopra’s rule-making targeting data brokers during a Senate Banking Committee nomination hearing. The post CFPB nominee signals openness to...