2026-04-01 10:32 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB researchers uncover an ongoing phishing campaign targeting major banks in the Philippines. This blog details how threat actors abuse trusted and legitimate platforms to deceive users and evade detection. It highlights a significant threat escalation with the successful hijacking of a legitimate domain to host malicious infrastructure, enabling threat actors to operate with even greater credibility and reduced detection.
P0
2026-04-01 09:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
See why the viral "three-finger test" is almost outdated, and how to build resilient security processes that protect your organization from identity-based attacks and social engineering, no matter how advanced the AI gets.
P0
2026-04-01 09:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Fraudsters often target the accounts of the deceased or their grieving relatives. Here’s how to keep the scammers at bay.
P0
2026-03-31 23:30 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
An NPM supply chain attack struck the ubiquitous open-source axios library and Huntress has observed over a hundred affected devices.
P0
2026-03-31 18:58 UTC
Vendor Research
Google Security Blog · Dirk Göhmann · indexed 2026-08-15 18:55 UTC
2025 marked a special year in the history of vulnerability rewards and bug bounty programs at Google: our 15th anniversary 🎉🎉🎉! Originally started in 2010, our vulnerabi…
P0
2026-03-31 16:55 UTC
Vendor Research
Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC
Posted by Dirk Göhmann, Tony Mendez, and the Vulnerability Rewards Program Team2025 marked a special year in the history of vulnerability rewards and bug bounty programs at Google: our 15th anniversary 🎉🎉🎉! Originally started in 2010, our vulnerability reward program (VRP) has seen constant additions and expansions over the past decade and a half, clearly indicating the value the programs under this umbrella contribute to the safety and security of Google and its users, but also highlighting…
P0
2026-03-31 08:27 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The past four weeks have seen a slew of new cybersecurity wake-up calls that showed why every organization needs a well-thought-out cyber-resilience plan
P0
2026-03-31 06:56 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB shows how Business Email Protection blocked Phantom Stealer phishing emails across different campaign waves.
P0
2026-03-31 00:00 UTC
Government
CERT-FR Alerts · indexed 2026-09-07 17:35 UTC
Le 15 octobre 2025, F5 a publié un avis de sécurité concernant entre autres la vulnérabilité CVE-2025-53521. Celle-ci affecte BIG-IP APM et permet à un attaquant non authentifié d'exécuter du code à distance. Le 29 mars 2026, l'éditeur indique que cette vulnérabilité est exploitée activement. Le...
P5
2026-03-30 16:51 UTC
Other
Black Lantern Security · Kevin O'Riley · indexed 2026-09-07 17:30 UTC
A Claude Code Agent Dashboard
P0
2026-03-30 15:25 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Global regulators are mandating fraud intelligence sharing. Learn how financial institutions can collaborate in real-time while maintaining privacy compliance through Distributed Tokenization.
P0
2026-03-30 08:20 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Is your cybersecurity truly built to withstand today’s nuanced threats or is it just living on paper? Find out more.
P0
2026-03-30 06:00 UTC
Vendor Research
Cloudflare Security · Zhiyuan Zheng · indexed 2026-08-15 18:58 UTC
We are opening our advanced Client-Side Security tools to all users, featuring a new cascading AI detection system. By combining graph neural networks and LLMs, we've reduced false positives by up to 200x while catching sophisticated zero-day exploits.
P25
2026-03-27 10:38 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
This year, AI agents took the center stage – as a defensive capability, but more pressingly as a risk many organizations haven't caught up with
P0
2026-03-27 07:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Silver Fox is back in Japan, spoofing tax and HR emails timed to the one season when no one thinks twice about opening them
P0
2026-03-26 20:46 UTC
Other
Black Lantern Security · Hunter Jensen · indexed 2026-09-07 17:30 UTC
CVE-2026-2931
P5
2026-03-25 18:43 UTC
Vendor Research
Google Security Blog · Eric Lynch · indexed 2026-08-15 18:55 UTC
Modern digital security is at a turning point. We are on the threshold of using quantum computers to solve "impossible" problems in drug discovery, materials science, an…
P0
2026-03-25 17:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
That "friendly" prompt is a ClickFix scam. Learn about this advanced social engineering tactic that tricks users into running malicious code on their own systems, and why security resilience is your winning bet.
P0
2026-03-25 13:00 UTC
Vendor Research
Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC
Posted by Eric Lynch, Product Manager, Android and Dom Elliott, Group Product Manager, Google Play Modern digital security is at a turning point. We are on the threshold of using quantum computers to solve "impossible" problems in drug discovery, materials science, and energy—tasks that even the most powerful classical supercomputers cannot handle. However, the same unique ability to consider different options simultaneously also allows these machines to bypass our current digital locks. This p…
P0
2026-03-25 12:13 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Cómo GTFire abusa de Google Firebase y Google Translate para escalar campañas globales de phishing
P0
2026-03-25 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Cloud VMs offer unmatched speed, scale and flexibility – all of which could eventually count for little if they’re left to fend for themselves
P0
2026-03-25 07:51 UTC
Government
CERT-EU Security Advisories · indexed 2026-08-15 18:50 UTC
On 17 March 2026, Microsoft updated one of its January 2026 security advisories related to a remote code execution vulnerability in Microsoft SharePoint. Specifically, Microsoft raised the CVSS score and changed the FAQ section to indicate that the vulnerability could be exploited by an unauthenticated attacker. This vulnerability was added in the CISA's Known Exploited Vulnerabilities (KEV) catalogue on 18 March 2026. Additionally, three further RCE flaws affecting Microsoft SharePoint were ad…
P55
2026-03-25 07:09 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Tracing the evolution of cloud phone technology from harmless social media engagement automation to industrial-scale financial fraud that’s invisible to modern detection systems.
P0
2026-03-24 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress now delivers ITDR for Google Workspace to protect identities against BEC, inbox rule manipulation, and account takeover, all with a 24/7 SOC-led response.
P0
2026-03-24 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
As IT infrastructure expands, visibility and control often lag behind – until an incident forces a reckoning
P0
2026-03-23 21:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Railway PaaS is being weaponized as a clean token replay engine in an active AiTM and device code phishing campaign impacting 268+ M365 organizations and 100+ MSPs.
P0
2026-03-23 18:03 UTC
Government
CERT-EU Security Advisories · indexed 2026-08-15 18:50 UTC
On 23 March 2026, Citrix published a security advisory addressing multiple vulnerabilities affecting NetScaler ADC and NetScaler Gateway. These vulnerabilities may lead to sensitive information disclosure and user session mix-up under specific configurations. At the time of writing, there is no public evidence of active exploitation. It is strongly recommended updating affected gateways, prioritising internet-facing assets. It is also recommended to preserve evidence for further investigation.
P0
2026-03-23 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Uncover the dark economy of cybercrime, from organized scam centers and the criminal customer journey to the use of generative AI in scaling attacks.
P0
2026-03-23 13:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Explore the latest manufacturing cybersecurity trends, from ransomware to OT takeovers, and real-world risks to production. Learn how to secure your plant.
P15
2026-03-23 12:00 UTC
Government
NIST Cybersecurity Insights · Katerina Megas, Barbara Cuthill, Julie Nethery Snyder , Christina Sames, Ishika Khemani · indexed 2026-08-15 20:45 UTC
Thank you to everyone who participated in the Cybersecurity Framework Profile for Artificial Intelligence (Cyber AI Profile) Workshop in January! The input we received on the Preliminary Draft during this workshop has been invaluable and is informing the development of the next draft of the NIST Cyber AI Profile. We are working toward publishing a full workshop summary soon that captures themes and highlights from the event. In the interim, we would like to share a preview of what we heard… Bac…
P0