Daily Cybersecurity Roundup

Phishing remains a top attack vector, enabling threat actors to breach networks through deceptive emails and messages. Russia-linked InedibleOchotense used phishing and Signal messages to deliver trojanized ESET installers deplo ... Read More
Russia’s notorious Sandworm group has slithered back into action, launching destructive cyberattacks on Ukraine’s grain and other industries using data-wiping malware like ZeroLot and Sting to cripple operations. In parallel, a ... Read More
Attackers are demonstrating incredible range, hitting novel AI infrastructure, decentralized finance, and personal mobile apps. Researchers revealed a sophisticated backdoor named SesameOp, which cleverly exploits OpenAI's API fo ... Read More
Cybercriminals are proving adept at turning trusted infrastructure against its users, from enterprise software to the phone in your pocket. A newly discovered Windows malware named Airstalk is now exploiting the AirWatch API for ... Read More
Today’s threats highlight the vast and varied attack surface, from open-source code repositories to the billions of devices connecting to the internet. A new campaign named PhantomRaven has emerged, with hundreds of malicious npm ... Read More
Attackers are showcasing alarming ingenuity this week, from hiding in code repositories to mimicking human behavior on infected devices. Researchers uncovered 10 malicious npm packages that used typosquatting to trick developers, ... Read More
From critical software flaws to trusted messaging apps, threat actors are leaving no stone unturned in their latest campaigns. The sophisticated Gamaredon group is targeting government entities by exploiting a critical WinRAR vul ... Read More
Cybercriminals are launching attacks from all angles this week, turning legitimate tools against users and deploying malicious infrastructure at an alarming rate. Hackers are now using RedTiger, a Python-based penetration testing ... Read More
Things are getting muddy in cyberspace, quite literally. Iran-linked MuddyWater has stirred up a large-scale espionage campaign, targeting over 100 government and international organizations through phishing emails. Riding the s ... Read More
Looks like NATO’s inbox just got a new uninvited guest. Russia-backed threat actor COLDRIVER has launched a fresh cyber espionage operation against NATO entities, leveraging a new downloader dubbed NOROBOT that uses fake CAPTCHA ... Read More

Get the Daily Cybersecurity Roundup delivered to your email!

Recent Blogs
Daily Threat Briefing