The Old Problem Was Hard Enough For the better part of a decade, “software supply chain security” meant one thing: tracking what’s inside your code. Which...
The Week in Security: When the Ordinary Becomes the Threat A streaming box should not need a threat model. Neither should a username field, a demo...
FBI Takes Down NetNut Proxy Network The FBI has seized hundreds of domains linked to NetNut, a residential proxy service operated by the publicly-traded Israeli company...
Trusted Google Infrastructure Abused in Multi-Stage Campaign Security researchers have uncovered a sophisticated malware delivery operation that weaponizes Blogspot, Google’s long-standing blogging platform, to distribute information-stealing...
New Malware Campaign Targets Power Grids and Government Networks A previously undocumented infostealer malware, tracked as BusySnake, has been found infiltrating government agencies and electrical power...
A Bug That Almost Drove a Generation A 16-year-old vulnerability in Linux’s KVM hypervisor can be triggered from inside a guest virtual machine to corrupt the...
Attackers Waste No Time With Critical Gitea Bug It took just 13 days. That’s how long threat actors needed to start probing a critical vulnerability in...
Iran’s MOIS-Linked Group Deploys Cavern in Targeted Campaign An Iranian hacking group tied to the country’s Ministry of Intelligence and Security (MOIS) has been using a...
From teen hacker to Iron Dome researcher, Ocean raises $28M to fight AI phishing with agentic email security Shay Shwartz knows the dark side of email...
Chinese National Extradited to US Over Silk Typhoon Cyber Campaign Targeting COVID-19 Research A suspected state-linked hacker accused of targeting US organizations and stealing sensitive COVID-19...