• New Brazilian-Linked SambaSpy Malware Targets Italian Users via Phishing Emails

    New Brazilian-Linked SambaSpy Malware Targets Italian Users via Phishing Emails

    A previously undocumented malware called SambaSpy is exclusively targeting users in Italy via a phishing campaign orchestrated by a suspected Brazilian Portuguese-speaking threat actor. “Threat actors usually try to cast a wide net to maximize their profits, but these attackers are focused on just one country,” Kaspersky said in a new analysis. “It’s likely that…

    Read More

  • New TeamTNT Cryptojacking Campaign Targets CentOS Servers with Rootkit

    New TeamTNT Cryptojacking Campaign Targets CentOS Servers with Rootkit

    The cryptojacking operation known as TeamTNT has likely resurfaced as part of a new campaign targeting Virtual Private Server (VPS) infrastructures based on the CentOS operating system. “The initial access was accomplished via a Secure Shell (SSH) brute force attack on the victim’s assets, during which the threat actor uploaded a malicious script,” Group-IB researchers…

    Read More

  • Healthcare’s Diagnosis is Critical: The Cure is Cybersecurity Hygiene

    Healthcare’s Diagnosis is Critical: The Cure is Cybersecurity Hygiene

    Cybersecurity in healthcare has never been more urgent. As the most vulnerable industry and largest target for cybercriminals, healthcare is facing an increasing wave of cyberattacks. When a hospital’s systems are held hostage by ransomware, it’s not just data at risk — it’s the care of patients who depend on life-saving treatments. Imagine an attack…

    Read More

  • New “Raptor Train” IoT Botnet Compromises Over 200,000 Devices Worldwide

    New “Raptor Train” IoT Botnet Compromises Over 200,000 Devices Worldwide

    Cybersecurity researchers have uncovered a never-before-seen botnet comprising an army of small office/home office (SOHO) and IoT devices that are likely operated by a Chinese nation-state threat actor called Flax Typhoon (aka Ethereal Panda or RedJuliett). The sophisticated botnet, dubbed Raptor Train by Lumen’s Black Lotus Labs, is believed to have been operational since at…

    Read More

  • Chinese Engineer Charged in U.S. for Years-Long Cyber Espionage Targeting NASA and Military

    Chinese Engineer Charged in U.S. for Years-Long Cyber Espionage Targeting NASA and Military

    A Chinese national has been indicted in the U.S. on charges of conducting a “multi-year” spear-phishing campaign to obtain unauthorized access to computer software and source code created by the National Aeronautics and Space Administration (NASA), research universities, and private companies. Song Wu, 39, has been charged with 14 counts of wire fraud and 14…

    Read More

  • Why Pay A Pentester?

    Why Pay A Pentester?

    The evolution of software always catches us by surprise. I remember betting against the IBM computer Deep Blue during its chess match against the grandmaster Garry Kasparov in 1997, only to be stunned when the machine claimed victory. Fast forward to today, would we have imagined just three years ago that a chatbot could write…

    Read More

  • North Korean Hackers Target Energy and Aerospace Industries with New MISTPEN Malware

    North Korean Hackers Target Energy and Aerospace Industries with New MISTPEN Malware

    A North Korea-linked cyber-espionage group has been observed leveraging job-themed phishing lures to target prospective victims in energy and aerospace verticals and infect them with a previously undocumented backdoor dubbed MISTPEN. The activity cluster is being tracked by Google-owned Mandiant under the moniker UNC2970, which it said overlaps with a threat group known as TEMP.Hermit,…

    Read More

  • Chrome Introduces One-Time Permissions and Enhanced Safety Check for Safer Browsing

    Chrome Introduces One-Time Permissions and Enhanced Safety Check for Safer Browsing

    Google has announced that it’s rolling out a new set of features to its Chrome browser that gives users more control over their data when surfing the internet and protects them against online threats. “With the newest version of Chrome, you can take advantage of our upgraded Safety Check, opt out of unwanted website notifications…

    Read More

  • Google Chrome Switches to ML-KEM for Post-Quantum Cryptography Defense

    Google Chrome Switches to ML-KEM for Post-Quantum Cryptography Defense

    Google has announced that it will be switching from KYBER to ML-KEM in its Chrome web browser as part of its ongoing efforts to defend against the risk posed by cryptographically relevant quantum computers (CRQCs). “Chrome will offer a key share prediction for hybrid ML-KEM (codepoint 0x11EC),” David Adrian, David Benjamin, Bob Beck, and Devon…

    Read More

  • U.S. Treasury Sanctions Executives Linked to Intellexa Predator Spyware Operation

    U.S. Treasury Sanctions Executives Linked to Intellexa Predator Spyware Operation

    The U.S. Department of Treasury has imposed fresh sanctions against five executives and one entity with ties to the Intellexa Consortium for their role in the development, operation, and distribution of a commercial spyware called Predator. “The United States will not tolerate the reckless propagation of disruptive technologies that threatens our national security and undermines…

    Read More