The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Microsoft on Monday said it detected Kremlin-backed nation-state activity exploiting a now-patched critical security flaw in its Outlook email service to gain …
Microsoft has warned of a new wave of CACTUS ransomware attacks that leverage malvertising lures to deploy DanaBot as an initial access vector.The DanaBot infe…
A CACTUS ransomware campaign has been observed exploiting recently disclosed security flaws in a cloud analytics and business intelligence platform called Qlik…
A variant of a ransomware strain known as DJVU has been observed to be distributed in the form of cracked software."While this attack pattern is not new, incid…
As cloud technology evolves, so does the challenge of securing sensitive data. In a world where data duplication and sprawl are common, organizations face incr…
A coordinated law enforcement operation has led to the arrest of key individuals in Ukraine who are alleged to be a part of several ransomware schemes."On 21 N…
The maintainers of the open-source file-sharing software ownCloud have warned of three critical security flaws that could be exploited to disclose sensitive in…
Cybersecurity researchers have shed light on a Rust version of a cross-platform backdoor called SysJoker, which is assessed to have been used by a Hamas-affili…
A new phishing attack has been observed leveraging a Russian-language Microsoft Word document to deliver malware capable of harvesting sensitive information fr…
The Government of Canada recently admitted suffering a security breach that impacted data of current…Canada Government Admits Data Breach Impacting Public Empl…
Multiple threat actors, including LockBit ransomware affiliates, are actively exploiting a recently disclosed critical security flaw in Citrix NetScaler applic…
The ransomware strain known as Play is now being offered to other threat actors "as a service," new evidence unearthed by Adlumin has revealed."The unusual lac…
Researchers have found numerous security vulnerabilities in Google Workspace that risk breaches. While the vulnerabilities…Google Workspace Vulnerabilities Ris…
A set of novel attack methods has been demonstrated against Google Workspace and the Google Cloud Platform that could be potentially leveraged by threat actors…
The stealer malware known as LummaC2 (aka Lumma Stealer) now features a new anti-sandbox technique that leverages the mathematical principle of trigonometry to…
The threat actors behind the8Base ransomwareare leveraging a variant of the Phobos ransomware to conduct their financially motivated attacks.The findings come …
Threat actors are leveraging manipulated search results and bogus Google ads that trick users who are looking to download legitimate software such as WinSCP in…
U.S. cybersecurity and intelligence agencies have released a joint advisory about a cybercriminal group known asScattered Spiderthat's known to employ sophisti…
The threat actors behind theRhysida ransomwareengage in opportunistic attacks targeting organizations spanning various industry sectors.The advisory comes cour…
Russian threat actors have been possibly linked to what's been described as the "largest cyber attack against Danish critical infrastructure," in which 22 comp…
As ransomware attacks continue wreaking havoc, the latest victim turned out to be the largest…ICBC Ransomware Attack – China’s Largest Bank Forced To Use USBs …
In 2023, the global average cost of a data breach reached$4.45 million. Beyond the immediate financial loss, there are long-term consequences like diminished c…
The threat actors behind a new ransomware group calledHunters Internationalhave acquired the source code and infrastructure from the now-dismantled Hive operat…
The threat actor known as Lace Tempest has been linked to the exploitation of a zero-day flaw in SysAid IT support software in limited attacks, according to ne…