2026-01-21 06:56 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
A deep dive into loan phishing scams in Peru and Latin America. Discover how scammers lure victims with fake loan offers, harvest sensitive banking credentials, and leverage advanced scripts to maximize fraud at scale.
P0
2026-01-21 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Vertical-specific construction applications face unique risks. Hacked apps stem from flaws in the software or its components, expanding the jobsite attack surface.
P0
2026-01-20 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Once again, data shows an uncomfortable truth: the habit of choosing eminently hackable passwords is alive and well
P0
2026-01-20 06:27 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
P0
2026-01-20 06:12 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
P0
2026-01-20 05:59 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
P0
2026-01-16 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The business social networking site is a vast, publicly accessible database of corporate information. Don’t believe everyone on the site is who they say they are.
P0
2026-01-16 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Fake ad blocker crashes your browser, then offers a "fix." Go inside KongTuke's CrashFix campaign, from malicious extension to ModeloRAT for VIP targets.
P0
2026-01-15 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
While investigating LDAP filters and attributes, I completely missed "SDFlags" in my Event 1644 logs. When I finally noticed it, the investigation led to nTSecurityDescriptor, attack path discovery, and a high-confidence detection signature.
P0
2026-01-15 06:07 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
This blog uncovers DeadLock’s stealthy usage of Polygon smart contracts for proxy address storage, a poorly-documented and under-reported technique that Group-IB analysts have observed increased usage in the wild. Variants of this technique are very wide and offer great alternatives to threat actors for bypassing traditional defenses by abusing decentralized blockchains available worldwide.
P35
2026-01-14 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Should verified identities become the standard online? Australia’s social media ban for under-16s shows why the question matters.
P0
2026-01-13 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
If your data is on the dark web, it’s probably only a matter of time before it’s abused for fraud or account hijacking. Here’s what to do.
P0
2026-01-13 06:39 UTC
Other
Red Hunt Labs · Lohit · indexed 2026-09-07 17:30 UTC
Modern payment integrations are fast, flexible, and increasingly complex. APIs talk to gateways, webhooks trigger state changes, third parties handle fraud, retries, refunds, and orchestration layers quietly sit in between. In most teams, the signal that things are “working” is simple: transactions go through. That signal is misleading. At RedHunt Labs, we found that the real-world payment pentests reveal the common mistake of treating PCI DSS as a finish line instead of a baseline. This blog r…
P0
2026-01-13 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress researchers weigh in on the challenge of getting feature parity across Windows, macOS, and Linux. And learn how unique security models and platform maturity shape the way products are built.
P0
2026-01-12 08:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress outlines 2025 AI attack speed with automated scripts, but adversaries use familiar tradecraft. Detection and hygiene remain decisive.
P0
2026-01-08 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Reusing passwords may feel like a harmless shortcut – until a single breach opens the door to multiple accounts
P0
2026-01-07 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress outlines a complex, multi-step attack designed to break out of guest VMs and target the ESXi hypervisor, using potential zero-day vulnerabilities and sneaky VSOCK communication.
P45
2026-01-07 12:00 UTC
Government
NIST Cybersecurity Insights · Bill Fisher, Ryan Galluzzo, Heather Flanagan · indexed 2026-08-15 20:45 UTC
Understanding mDL credential formats Standards in the VDC Ecosystem In our first blog post in this series, we highlighted that VDCs can represent a wide range of credentials, from a driver’s license to a diploma to proof of age. The ability to use VDCs in a wide variety of use cases is a major reason why many are looking at the VDC ecosystem as technology that can change how we present identity and attributes (both in person and online). While credential variety is a good thing, interoperabilit…
P0
2026-01-07 07:00 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB researchers detail the inner workings of Chinese tap-to-pay schemes on Telegram and examine the NFC-enabled Android apps fraudsters are using to steal money from victim’s bank cards and mobile wallets remotely.
P0
2026-01-05 15:00 UTC
Government
CERT-EU Threat Intelligence · indexed 2026-08-15 18:50 UTC
Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.
P0
2026-01-05 08:15 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Learn how Group-IB’s Business Email Protection stops the growing wave of DocuSign impersonation before users are exposed, and protects them from credential-capturing websites built with real-time customizable LogoKit.
P0
2025-12-31 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
From lures involving Social Security statements to top domains and hashes used in attacks, here's an in-depth look at incidents involving ScreenConnect in 2025.
P0
2025-12-30 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Your LDAP detection rules work in the lab but fail in production. Here's why Event 1644 whitespace variations break your Sigma rules and how to fix them.
P0
2025-12-29 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
As 2025 draws to a close, Tony looks back at the cybersecurity stories that stood out both in December and across the whole of this year
P0
2025-12-24 07:04 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Fake online job ads continue to circulate across social media, especially in Arab countries, offering easy remote work and quick income. The sinister goal: to harvest sensitive information, from ID documents to banking details. This blog explains how the scheme operates, who the scammers target, and how to prevent falling victim to it.
P0
2025-12-23 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Have you ever received a package you never ordered? It could be a warning sign that your data has been compromised, with more fraud to follow.
P0
2025-12-23 08:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
From "React2Shell" exploitation to sophisticated "Living off Trusted Sites" phishing, Huntress experts break down the threats targeting both enterprises and families today.
P0
2025-12-23 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Learn how supply chain attacks and shifting trust are reshaping the software supply chain, and what enterprises must do to strengthen resilience.
P0
2025-12-22 11:40 UTC
Other
Red Hunt Labs · Lohit · indexed 2026-09-07 17:30 UTC
Payment gateways are built to move money reliably. Attackers view them as systems built on trust, timing, and assumptions. A gateway that works consistently is not a sign of safety. It is a stable environment to study, probe, and eventually abuse. This blog examines payment gateways from an attacker’s perspective, grounded in real exploitation patterns and reinforced with direct insights from industry experts. These patterns are documented extensively in the RedHunt Labs Payment Gateway Integra…
P0
2025-12-22 09:55 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
A comprehensive analysis and assessment of a critical severity vulnerability with low likelihood of mass exploitation
P35