North korean apts weaponize AI to supercharge IT worker infiltration scams
North Korean APTs are using AI tools like deepfakes and automated communications to enhance IT worker infiltration scams, making them harder to detect.
Tycoon 2FA phishing empire crumbles: Europol takes down MFA-Bypassing criminal platform
International law enforcement dismantles Tycoon 2FA, a sophisticated phishing platform that helped cybercriminals bypass multi-factor authentication protections.
Trump administration's commercial spyware policy reversal sparks security and privacy concerns
Trump administration reverses commercial spyware restrictions, rescinding sanctions on vendors like NSO Group and creating uncertainty about surveilla
Six new android malware families launch sophisticated assault on mobile banking and crypto security
Six sophisticated Android malware families target PIX payments, banking apps, and crypto wallets with advanced capabilities including real-time fraud and data theft.
Chinese nexus actors pivot to Qatar targeting amid middle east tensions
Chinese state-sponsored hackers pivot to target Qatar amid Middle East tensions, demonstrating rapid operational agility in response to geopolitical events.
AI assistants create new security blind spots as autonomous agents gain system access
Autonomous AI agents with system access create new security challenges, blurring lines between data and code while introducing novel attack vectors or
Cisco patches 48 firewall vulnerabilities including two critical 10/10 CVSS flaws
Cisco patches 48 firewall vulnerabilities including two critical 10.0 CVSS flaws affecting edge security appliances, urging immediate updates.
Iran's Cyber-Kinetic war doctrine takes shape: Hacking cameras to plan missile strikes
Iran integrates cyber operations with kinetic warfare by hacking IP cameras for missile strike reconnaissance, blurring traditional warfare boundaries.
Interlock ransomware exploits critical Cisco FMC Zero-Day CVE-2026-20131 for root access
Amazon warns of active Interlock ransomware exploiting critical Cisco FMC zero-day CVE-2026-20131 (CVSS 10.0) for unauthenticated root access via insecure deserialization.
Marquis ransomware attack exposes 672,000 records, disrupts 74 US banks
Texas financial services provider Marquis reveals ransomware attack exposed 672,000 records and disrupted operations at 74 US banks, highlighting supply chain risks.
Kimwolf botnet infiltrates 2 million IoT devices in critical infrastructure networks
Kimwolf botnet compromises 2M+ IoT devices in govt/corporate networks, enabling DDoS attacks & malicious traffic relay through sophisticated lateral movement.
GlassWorm malware campaign hijacks GitHub tokens to poison python repositories
GlassWorm malware campaign exploits stolen GitHub tokens to inject malicious code into Python repositories, targeting Django, ML projects, and PyPI packages.











