
Rapid7 deployed right the first time.
Full-platform Rapid7 rollouts - InsightVM, InsightIDR, event sources, agents, tuning - by a Registered Partner who has done it at state-agency scale, including OT/SCADA.
Talk deploymentCybersecurity intelligence, threat analysis, and national security reporting.

A massive ransomware attack has hit Japan's IDCF Cloud, crippling services for 495 companies and local governments, with hackers claiming to have encrypted a staggering 3.6 PB of data. The breach, which began on October 7, forced IDCF Cloud to immediately shut down its East Japan Region 1 cluster to prevent further damage.

A shocking 94% of Internet of Medical Things devices are vulnerable to future "harvest-now, decrypt-later" attacks due to their inability to be upgraded to post-quantum cryptography, leaving sensitive health data at risk. This stark gap in security exposes a critical weakness in healthcare systems.

Meet Integrity Technology Group, a China-based company with ties to the government that's been caught red-handed running a web portal that lets others snoop on stolen emails. The US and UK have already slapped sanctions on the company, but the details of its shady operation are only now coming to light.

Thousands of low-cost Android phones from reputable manufacturers have been secretly harboring malware for two years, with affected devices found in over 150 countries worldwide. This sneaky malware, dubbed "Midnight Mimosa," has been embedded in the firmware of devices from brands like Doogee and Cubot, allowing it to rack up fraudulent impressions and clicks without detection.

A newly discovered vulnerability in Nvidia's DCGM Exporter, tracked as CVE-2026-47483, has left around 2,100 GPU servers exposed to potential disruption, with a staggering 12,000 GPU UUIDs and $100M in hardware at risk. Researchers warn that unauthenticated actors could exploit this flaw to crash the GPU monitoring service, making a swift patch to version 4.8.2 or later a top priority.

A malicious version of the Tensorlake SDK, downloaded around 12,000 times per week, was briefly infected with the Shai-Hulud worm, which could have allowed attackers to hijack credentials and sensitive data. Fortunately, the issue was quickly detected and resolved, with the package being pulled and updated to a safe version.

In a shocking resurgence, the FakeGit campaign sprang back to life on October 4, hijacking 17,610 dormant GitHub repositories to deliver malware at an alarming rate of nearly 3,000 per hour. The attackers cleverly exploited existing repositories, needing to create zero new ones to unleash this massive threat.

Japan is facing a surge in web data leaks, with 81 incidents reported from July onwards, and experts point to a wave of API abuse and targeted exploitation of a Metabase flaw as the main culprits. In just a few months, personal data from millions of accounts has been stolen, including sensitive info like driver's license images.

Full-platform Rapid7 rollouts - InsightVM, InsightIDR, event sources, agents, tuning - by a Registered Partner who has done it at state-agency scale, including OT/SCADA.
Talk deployment
Meet ARTEX, an AI-powered pentesting tool that was originally designed for learning and research, but was repurposed by hackers to steal sensitive data from South Korean financial organizations. In a shocking campaign, attackers used ARTEX to breach security and get away with valuable information.

Massive data breaches are making headlines, with over 150 million driver's licenses compromised and around 5,000 Dropbox accounts exposed through a third-party vulnerability. These staggering incidents highlight the vulnerability of our sensitive information in today's digital landscape.

Meet ASHVEIN, a sneaky new malware that's helping Russia-aligned hackers steal sensitive info from Ukrainian government targets - and hiding their tracks in clever, invisible ways. This .NET infostealer and remote access trojan is a master of disguise, blending credential theft, surveillance, and remote control features to fly under the radar.

Cisco has uncovered five critical vulnerabilities in its Nexus switches that could let hackers run malicious code with root access or bring down entire networks, causing major disruptions. This security threat affects Nexus 3000 and 9000 Series switches, putting your network at risk of remote code execution and denial-of-service attacks.

Federal agencies are racing against the clock to outpace threats, but their systems are holding them back - at the recent Intelligence and National Security Summit, experts gathered to tackle this pressing challenge. With AI turbocharging operations and data volumes exploding, the stakes have never been higher.

Thanks to AI, phishing emails have become a whole lot harder to spot - gone are the telltale signs of poor grammar and misspelt words, replaced with slick, error-free language that's almost indistinguishable from the real thing. Phishing has evolved into a massive threat, with the FBI reporting a 274% surge in losses over just two years.
The clock is ticking: with Google aiming to adopt post-quantum cryptography by 2029, it's time for Congress and federal agencies to take the quantum computing threat to encryption seriously. A powerful quantum computer could rapidly crack the cryptographic codes that safeguard our emails, finances, and sensitive communications.
Mid-market IT leaders are under siege, facing the same daunting cybersecurity threats as large enterprises but with limited resources to defend themselves. As a result, understaffed IT teams are forced to juggle fragmented tools, leaving them vulnerable to attacks and stuck in reactive mode.

No IT department, no security budget, real exposure. Nubivance builds right-sized security foundations for small companies. Send them this.
Send it alongBritish commandos pulled off an impressive feat, inserting from a German Navy submarine off the coast of Scotland on September 29 as part of Exercise Strike Warrior, a daring maneuver that showcased their skill and coordination. The elite operators from 148 Commando Forward Observation Battery used inflatable raiding craft to slip ashore undetected and set up a makeshift observation post.
Pakistan just took a major leap in its missile capabilities with the successful test of the Fatah-4-ER cruise missile, a move that signals its commitment to advancing its defense technology. This latest development hints at a future of upgraded missile variants, putting Pakistan at the forefront of modern military innovation.

ASOS recently suffered a data breach when an attacker impersonated a trusted contact to steal employee login credentials, which were then used to access sensitive customer information on third-party platforms. The breach highlights the importance of protecting sensitive data and preventing unauthorized access.

A recent healthcare breach has put 20 million patient records at risk, highlighting the vulnerabilities that can arise during cloud migrations - especially when sensitive data is left exposed on servers. Even with the best intentions, a single misstep can leave patients' personal and medical information in the wrong hands.

The average employee has 88 OAuth grants, with 31 carrying data-level permissions, creating a governance nightmare that's a daily arms race. Unlike other access controls, OAuth grants operate on a separate trust relationship between apps, outliving employee credentials and evading traditional security measures.

Google thwarted a sneaky attack where hackers hijacked three country-code domains to obtain fake HTTPS certificates for several Google sites and other organizations, quickly blocking the unauthorized certificates through Chrome's emergency response system. The compromised domains included .gh, .sl, and .as, which were manipulated by attackers to gain DNS control.

The operators of UAC-0099, a group likely aligned with Russian interests, have been steadily refining their MATCHBOIL malware, making it a more potent tool for future attacks. This deliberate evolution shows a clear intent to evade detection and enhance the malware's flexibility.

Meet Jonathan Spalletta, a 36-year-old hacker who callously swiped $53 million from a decentralized crypto exchange, Uranium Finance, and now faces charges for computer fraud and money laundering. His alleged crimes not only shut down the platform but also showcased his apparent disdain for cryptocurrency, referring to it as "fake internet money".