2025-12-03 06:59 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
A deep dive into GoldFactory’s evolving mobile fraud campaigns across APAC, including modified banking apps, new malware variants such as Gigaflower, shared criminal infrastructure, and insights from the Group-IB Fraud Matrix, with recommendations for organizations and end users.
P0
2025-12-03 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress reports an uptick in threat actors abusing the Velociraptor open-source DFIR tool, linked to incidents involving WSUS exploitation, VS Code tunnels, and more.
P0
2025-12-02 12:00 UTC
Government
NIST Cybersecurity Insights · Rodney Petersen · indexed 2026-08-15 20:45 UTC
Rodney Petersen has served as the Director of NICE at the National Institute for Standards and Technology (NIST) for the past eleven years where his focus has been on advancing cybersecurity education and workforce development. He will be retiring from federal government service at the end of the 2025 calendar year. Prior to his role at NIST, he has worked in various technology policy and leadership roles with EDUCAUSE and the University of Maryland. The NICE program, led by the National Instit…
P0
2025-12-02 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
MuddyWater targets critical infrastructure in Israel and Egypt, relying on custom malware, improved tactics, and a predictable playbook
P0
2025-12-02 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Do you know where identity attacks come from? It’s not just location or VPNs, but there’s a "secret third thing" in identity attacks. See how a new AS-based detection system closed this critical visibility gap.
P0
2025-12-02 03:40 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Discover how real-time fraud intelligence sharing prevents APP fraud before losses. Stop mule accounts already during warm-up with GDPR-compliant technology.
P0
2025-12-01 23:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
What is cyber threat hunting, and what do threat hunters do? In this blog, we define what threat hunting actually is and the strategy and skill behind it.
P0
2025-12-01 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
From LinkedIn to X, GitHub to Instagram, there are plenty of opportunities to share work-related information. But posting could also get your company into trouble.
P0
2025-11-28 13:46 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Data exposure by top AI companies, the Akira ransomware haul, Operation Endgame against major malware families, and more of this month's cybersecurity news
P15
2025-11-27 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Online disagreements among young people can easily spiral out of control. Parents need to understand what’s at stake.
P0
2025-11-26 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress CEO Kyle Hanslovan's live hack demo: modern hacker playbook, with stolen credentials, MFA bypass, and M365 token hijacking. Get defense tips, stay protected.
P0
2025-11-26 08:22 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Since late June 2025, Group-IB analysts observed a surge in spear-phishing emails across Central Asia. The attackers impersonate government agencies to gain the trust of their victims. This blog describes the techniques, tools and ongoing activity of the threat group known as Bloody Wolf.
P0
2025-11-25 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Social media influencers can provide reach and trust for scams and malware distribution. Robust account protection is key to stopping the fraudsters.
P0
2025-11-24 16:27 UTC
Other
Red Hunt Labs · redhuntAdmin · indexed 2026-09-07 17:30 UTC
On 24th Nov 2025, our Internet-scale monitoring systems detected a sharp and anomalous spike in newly indexed Git commits matching highly uniform characteristics. The volume of commits containing the message “Add file” surged from a baseline average of approximately 200/day to more than 13,000 within a single hour. This deviation breached automated anomaly-detection thresholds and initiated an urgent investigation. Subsequent analysis confirmed the emergence of a new variant of the Shai-Hulud N…
P0
2025-11-24 16:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Explore the top benefits of cybersecurity outsourcing and learn how it can bolster defenses while freeing up time, energy, and resources for your team.
P0
2025-11-24 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress uncovered an attack utilizing a ClickFix lure to initiate a multi-stage malware execution chain. This analysis reveals how threat actors use steganography to conceal infostealers like LummaC2 and Rhadamanthys within seemingly harmless PNGs.
P0
2025-11-20 17:00 UTC
Vendor Research
Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC
Posted by Dave Kleidermacher, VP, Platforms Security & Privacy, Google Technology should bring people closer together, not create walls. Being able to communicate and connect with friends and family should be easy regardless of the phone they use. That’s why Android has been building experiences that help you stay connected across platforms. As part of our efforts to continue to make cross-platform communication more seamless for users, we've made Quick Share interoperable with AirDrop, allowin…
P0
2025-11-20 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress has seen an uptick in threat actors abusing the Velociraptor open-source DFIR tool in a range of attacks, including a recent incident involving WSUS exploitation.
P0
2025-11-18 17:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress acquired Inside Agent to bolster identity security with a new ISPM solution. The move enhances proactive defense against cyberattacks.
P0
2025-11-17 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress is now on the Microsoft Marketplace. Combine our protection with Microsoft 365 and Defender, get 24/7 monitoring, and enjoy enterprise-grade security without the hefty price tag.
P0
2025-11-17 13:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
In this blog, we dive into the critical layers that make up a solid cybersecurity stack and provide tips for getting buy-in from decision makers.
P0
2025-11-13 16:59 UTC
Vendor Research
Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC
Posted by Jeff Vander Stoep, Android Last year, we wrote about why a memory safety strategy that focuses on vulnerability prevention in new code quickly yields durable and compounding gains. This year we look at how this approach isn’t just fixing things, but helping us move faster. The 2025 data continues to validate the approach, with memory safety vulnerabilities falling below 20% of total vulnerabilities for the first time. Updated data for 2025. This data covers first-party and third-party…
P25
2025-11-13 07:09 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB researchers uncovered a professional phishing framework that mimics trusted brands with remarkable precision. Using layered evasion, CAPTCHA filtering, and Telegram-based data exfiltration, attackers harvest credentials and bypass automated detection. The findings highlight how phishing-as-a-service operations are scaling through automation, lowering technical barriers for cybercriminals, and industrializing one of the oldest yet most effective forms of digital fraud.
P0
2025-11-13 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Threat actors are targeting the education sector with data breaches, phishing emails, ransomware hits, brute force RDP attacks, and more.
P15
2025-11-07 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
MFA for business isn’t a silver bullet. But it’s close! Learn the benefits, MFA methods, and how to make it work without the usual headaches.
P0
2025-11-06 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
11,000+ hackers—one epic challenge. See who the winners are and key insights from this year's massive Huntress Capture the Flag competition. Read the full breakdown!
P0
2025-11-05 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Gootloader returns with new obfuscation techniques, including custom WOFF2 fonts and updated persistence mechanisms, while continuing its partnership with Vanilla Tempest for ransomware deployment. Dive in and discover what Huntress is seeing.
P15
2025-11-05 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress and DEFCERT partnered to help with CMMC compliance. Use their Shared Responsibility Matrix and operation plans to streamline your Level 2 assessment
P0
2025-11-05 06:57 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Discover how attackers could manipulate the Linux /proc filesystem to hide malicious processes and distort forensic timelines. This technical deep dive highlights examples of command-line substitution and start time corruption, and offers detection and defense strategies for incident responders and security analysts.
P0
2025-11-04 16:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Learn how cybercriminals bypass Microsoft 365 MFA and steal credentials in a live hacking demo. Discover defense strategies to protect your systems.
P0