Skip to main content
← All Tags

Cybersecurity

624 articles in this category (Page 6 of 26)

AI NewsCybersecurityRansomware

Warlock Ransomware Breaches SmarterTools Through Unpatched SmarterMail Server

Warlock ransomware breached SmarterTools via unpatched SmarterMail, exploiting critical flaws to access Windows systems and deploy encryption payloads, affecting 12 Windows servers and hosted customers using SmarterTrack

Read more
AI NewsCybersecurityVulnerability Management

BeyondTrust Fixes Critical Pre-Auth RCE Vulnerability

BeyondTrust fixes CVSS 9.9 pre-auth RCE flaw in Remote Support and PRA, with 11,000 instances exposed.

Read more
AI NewsCybersecuritySOC Optimization

Solving SOC Burnout and Speeding Up MTTR with Sandbox-First Investigations

Top CISOs reduce MTTR by up to 50% and increase SOC output by up to 3× using sandbox-first investigations and automated triage.

Read more
AI NewsCybersecurityRansomware

Warlock Gang Breaches SmarterTools Via SmarterMail Bugs

The Warlock ransomware group breached SmarterTools through a vulnerability in SmarterMail, affecting 30 servers and virtual machines.

Read more
AI NewsCybersecurityIT Management

What Organizations Need to Change When Managing Printers

Organizations need to close the ownership vacuum and establish durable security controls to ensure printers are protected, as they make up 20% to 30% of an organization's endpoints.

Read more
AI NewsCybersecurityArtificial Intelligence

OpenClaw Integrates VirusTotal Scanning to Enhance Security

OpenClaw partners with VirusTotal to scan ClawHub skills for malware, following reports of malicious plugins and exposed instances affecting over 30,000 users.

Read more
AI NewsCybersecurityGovernment

Asian State-Backed Group TGR-STA-1030 Breaches 70 Government Entities

Asian state-linked hackers breached 70 government and infrastructure entities, using phishing and N-day exploits for global espionage, with 155 countries targeted for reconnaissance.

Read more
AI NewsCybersecurityMalware

China-Linked DKnife AitM Framework Targets Routers for Traffic Hijacking, Malware Delivery

China-linked DKnife framework compromises routers for traffic hijacking, credential theft, and malware delivery, targeting edge devices with a modular architecture of seven Linux-based implants.

Read more
AI NewsCybersecurityNetwork Security

CISA Orders Removal of Unsupported Edge Devices

CISA orders federal agencies to remove unsupported edge devices within 12–18 months to reduce cyber-espionage risk, affecting over 100,000 devices.

Read more
AI NewsCybersecuritySoftware Supply Chain

Compromised dYdX npm and PyPI Packages Deliver Malware

Compromised dYdX npm and PyPI packages delivered wallet-stealing malware and a RAT via poisoned updates in a software supply chain attack, affecting over $1.5 trillion in cumulative trading volume.

Read more
AI NewsCybersecurityPrivacy

Encrypt It Already Campaign Pushes for End-to-End Encryption

The Electronic Frontier Foundation's Encrypt It Already campaign urges big tech companies to implement end-to-end encryption by default, citing growing security and privacy concerns.

Read more
AI NewsCybersecurityArtificial Intelligence

OpenClaw's Security Risks Exposed

OpenClaw AI assistant's insecure design and extensible architecture pose significant risks to users, with 15% of skills containing malicious instructions.

Read more
AI NewsCybersecurityArtificial Intelligence

Agentic AI Security Risks Exposed in Moltbook

Moltbook, an AI-powered social media platform, exposed its entire database through a publicly accessible API, highlighting significant security risks in agentic AI systems.

Read more
AI NewsSoftware DevelopmentCybersecurity

Creating Digital Trust Through Secure Product Design

Digital products have become essential tools in nearly every aspect of modern life, with secure design playing a central role in establishing trust, as highlighted by Suzanne Alipourian-Frascogna.

Read more
AI NewsCybersecurityWorkflow Automation

Critical n8n Flaw CVE-2026-25049 Enables System Command Execution

A critical n8n vulnerability, CVE-2026-25049, allows authenticated workflow abuse to execute system commands with a CVSS score of 9.4.

Read more
AI NewsCybersecurityVulnerability Management

New Data Tool Helps Orgs Prioritize Exploited Flaws Smarter

KEV Collider combines data from multiple open source vulnerability frameworks to help cybersecurity teams assess which issues need their attention first, with over 48,100 vulnerabilities reported in 2025.

Read more
AI NewsCybersecurityThreat Intelligence

Infy Hackers Revive Operations with New C2 Servers and Tornado Malware

Infy hackers resume operations post-Iran internet blackout, deploying Tornado malware and Telegram C2, with over 118 exfiltrated files since February 2025.

Read more
AI NewsCybersecurityNGINX

Malicious NGINX Configurations Enable Large-Scale Web Traffic Hijacking Campaign

React2Shell exploitation uses malicious NGINX configurations to hijack web traffic, targeting 1,083 unique source IP addresses and affecting Asian TLDs, government domains, and Baota panels.

Read more
AI NewsCybersecurityMiddle East Affairs

Iranian Threat Actors Steal Credentials Using Spear-Phishing

Iranian threat actors have stolen credentials from over 850 individuals across the Middle East, using spear-phishing and social engineering tactics.

Read more
AI NewsCybersecurityThreat Intelligence

Cyber Threats Evolve with Increased Operational Efficiency

Threat actors are leveraging automation, prebuilt frameworks, and reusable infrastructure to cut time between access and impact, with over 10,000 infected IP addresses globally tied to the SystemBC malware operation.

Read more
AI NewsCybersecurityMalware

Attackers Exploit Windows Screensavers to Drop Malware

Threat actors leverage .scr file type to bypass defender lines and compromise organizations, with over 70% of Windows users vulnerable to screensaver-based attacks.

Read more
AI NewsCybersecurityThreat Intelligence

China-Linked Amaranth-Dragon and Mustang Panda Exploit WinRAR Flaw in Espionage Campaigns

China-linked threat actors Amaranth-Dragon and Mustang Panda target Southeast Asian governments using WinRAR exploit and PlugX phishing lures, affecting at least 6 countries.

Read more
AI NewsCybersecurityVulnerability Management

CISA Flags Actively Exploited SolarWinds Web Help Desk RCE

CISA adds SolarWinds Web Help Desk RCE flaw to KEV catalog with a CVSS score of 9.8, ordering federal agencies to patch by February 2026.

Read more
AI NewsCybersecurityRansomware

CISA's Hidden Ransomware Updates to KEV Catalog

A third of the 'flipped' CVEs affect edge devices, leading to increased ransomware risk with 59 vulnerabilities updated in 2025.

Read more