Attackers have compromised three country-code top-level domain (ccTLD) registries and obtained unauthorized HTTPS ...
Anastasia Tikhonova, global head of threat research at Group-IB, found that the Telegram channel included in the bizarre push notification sent to ASOS customers was brand new – created on October 6 – ...
MATCHBOIL was first documented by Ukraine's Computer Emergency Response Team (CERT-UA) in August 2025, but ESET found earlier samples suggesting development may have begun as early as April 2024. It ...
CrowdStrike revealed that a Chinese-speaking hacker deployed agentic pentesting tool ARTEX and Claude to help breach data ...
A critical vulnerability affecting eight Atlassian products, including Jira and Confluence, is being exploited in the wild, said VulnCheck ...
Europol urged organizations to mitigate the HNDL threat by upgrading to TLS 1.3 and SSH2, disabling legacy protocols and enforcing forward secrecy as soon as possible. They should also identify and ...
The campaign targets Fortinet FortiGate firewalls and secure socket layer (SSL) virtual private network (VPN) gateways. Ransomware affiliates from INC, Lynx and Payload groups are among those using ...
The Operational Technology Cybersecurity Coalition (OTCC) has urged the US Cybersecurity and Infrastructure Security Agency (CISA) to set mandatory security requirements for operational technology (OT ...
Phishing emails have been found carrying hidden instructions for AI assistants alongside conventional lures for the human recipient, meaning that a single message targets both the user and the system ...
A Group-IB researcher has found the Telegram account linked to the unauthorized ASOS customer notification previously engaged ...
This is also where sensitive prompts are processed, often in real time, raising the question of who can see them, where they ...
A Yubico survey identified a significant gap between awareness and adoption of secure methods of authentication in ...