Tag: emerging threats
5054 articles

Fraud Prevention Evolves to Balance Security and User Experience
The age-old trade-off between security and user experience is no longer a given - in fact, it's possible to boost security without slowing down your customers. By combining identity, device, and network signals, businesses can effectively block fraud while providing a seamless experience for legitimate users.

Former Ransomware Negotiator Pleads Guilty in High-Profile Gang Case
In a shocking twist, a former ransomware negotiator has pleaded guilty to aiding the notorious ALPHV/BlackCat gang in extorting millions from US businesses, raising disturbing questions about the blurred lines between victim and perpetrator. This comes on the heels of a nonprofit organization paying a staggering $26.8 million ransom.

UK Regulator Probes Telegram Over CSAM Sharing Concerns
The UK's communications regulator, Ofcom, has launched a crucial investigation into Telegram over concerns that the platform is being used to share child sexual abuse material, sparking a delicate balance between regulation and user protection. This probe also extends to teen chat sites, raising important questions about moderation, oversight, and the safety of young users.

AI Agents Fuel Cybersecurity Breaches at Most Firms
As AI agents increasingly power business operations, they're also fueling cybersecurity breaches at most firms, leading to data exposure, operational disruption, and financial losses. The rapid rise of AI is sparking a pressing dilemma: how can organizations balance innovation with control?

AI Advances Vulnerability Discovery, Raises Bar for Defenders
The game-changing AI system, Mythos, has made significant strides in vulnerability discovery, revealing software flaws with unprecedented depth - but does this progress signal a sigh of relief or a surge of concern for defenders? As automated discovery advances, it's clear that Mythos is a crucial step forward, not a sudden collapse of security efforts.

US Bolsters Asian Allies with Record-Breaking Balikatan Military Drills
The US and Philippines have just wrapped up the largest-ever Balikatan military drills, a bold display of strength and cooperation that's sending a powerful message to Asian allies - and potential rivals. Held near regional hotspots, this massive exercise is a delicate balancing act between reassurance and provocation.

Mexican Surveillance Firm Expands into US Market
A Mexican surveillance company is setting its sights on the US market, raising important questions about the intersection of technology, law, commerce, and civic values. Grupo Seguritech's expansion into new territory sparks a complex conversation about the implications of increased surveillance.

Vercel Breach Exposes OAuth, AI-Driven Threats
A recent breach at Vercel exposed sensitive data after attackers exploited OAuth and hijacked an employee's account, showcasing a disturbingly swift and sophisticated assault that may have been fueled by artificial intelligence. The stolen data is now being sold to the highest bidder for a whopping $2 million.

CISA Warns of Active Exploitation of SD-WAN Flaw
The Cybersecurity and Infrastructure Security Agency (CISA) has sounded the alarm on a newly discovered SD-WAN flaw that's already being exploited by attackers, giving US government agencies just four days to secure vulnerable systems. Time is of the essence in this urgent directive, which CISA has framed as an operational emergency.

Google Fixes Antigravity Flaw That Enabled Code Execution
Google's Antigravity tool, designed to streamline coding, had a flaw that allowed hackers to run malicious code - but luckily, the tech giant has patched the vulnerability. This fix prevents cyber threats that could have exploited the tool's file-creation capabilities and lax input sanitization.

NGate Malware Targets Brazil, Trojanizes HandyPay for NFC Data Theft
Security researchers have uncovered a sneaky new Android malware, NGate, that has been hiding in plain sight by infecting a legitimate app called HandyPay, used for NFC data relay, and using AI-generated code to steal payment credentials. This cleverly crafted malware has set its sights on Brazil, putting unsuspecting users at risk of NFC data theft.

Hacker Leaks Surveillance Footage from Mexican IT Firm
A Mexican IT firm's security was left exposed when a hacker posted screenshots of its surveillance footage on a cybercrime forum, raising the unsettling question: who is watching the watchers? The breach was confirmed, but fortunately, client operations remained unaffected.

Stolen Credentials Empower Attackers in Identity-Based Breaches
While security teams obsess over complex threats, attackers often find it easier to simply walk in with stolen credentials - the quickest and most reliable way into networks. By focusing on sophisticated threats, we might be overlooking the front door, which is wide open with a copy of the keys in the wrong hands.

Apache ActiveMQ Vulnerability Exploited, Hits 6,400 Servers
More than 6,400 publicly accessible Apache ActiveMQ servers are under attack, thanks to a high-severity code injection vulnerability that's being actively exploited. Is your server among them?

Met Police Deploys Surveillance Tech to Tackle London Shoplifting
The Metropolitan Police are testing a cutting-edge retail technology to combat London's shoplifting epidemic, and it doesn't rely on live facial recognition - but what does that mean for citizen privacy?

Former Ransomware Negotiator Pleads Guilty to BlackCat Attacks
A former expert who was paid to negotiate with cybercriminals has taken a shocking turn, pleading guilty to participating in high-profile BlackCat ransomware attacks on US companies. Angelo Martino, a 41-year-old ex-incident responder, admitted to his role in the 2023 attacks.

Vercel Breach Exposes Cloud App Security Risks
When a leading cloud app developer like Vercel reports a breach with scarce details, customers and security teams are left scrambling with uncomfortable uncertainty, wondering if their systems and data are at risk. The lack of transparency only tests trust and fuels concerns about cloud app security.

NGate Malware Exploits HandyPay App to Steal Android NFC Payment Data
Malicious NGate malware has been discovered hiding inside a fake version of the HandyPay app, putting Android users' NFC payment data at risk. This sneaky malware exploits a trusted payments tool to steal sensitive information, leaving users vulnerable to financial theft.

Adaptavist Group Breach Sparks Imposter Email Scams
When security breaches strike, even the most trusted names can be compromised - and The Adaptavist Group is the latest example, with hackers using stolen credentials to gain access and now sending fake emails that could put your data at risk.

Lazarus Group Targets KelpDAO in $290m Crypto Heist
In a shocking crypto heist, North Korea's notorious Lazarus Group is accused of swiping $290 million from KelpDAO, raising questions about accountability in the digital age. This brazen theft is a stark reminder of the threats lurking in the shadows of the cryptocurrency world.

CISA Catalog Adds 8 Exploited Flaws
The US Cybersecurity and Infrastructure Security Agency (CISA) just beefed up its catalog of actively exploited software flaws by adding eight new entries, including three Cisco vulnerabilities and a high-severity PaperCut flaw. Federal agencies now have until April and May 2026 to mitigate these risks.

Iran Accuses US of Using Backdoors to Disrupt Networking Gear
Iranian media is accusing the US of sneaking backdoors into networking gear to disrupt operations amid the ongoing war, with Chinese state media echoing the claims globally. But what's really at stake when these explosive cyber-accusations make international headlines?

Space Force Launches Cislunar Acquisition Task Force
The US Space Force has just launched a cislunar acquisition task force, a strategic move that signals a major focus on the space between Earth and the Moon, particularly as plans for a future NASA moon base gain momentum. This bold step comes as an experimental satellite, Oracle Prime, is set to launch next year to monitor this largely unexplored region.

Ukraine Unveils M113-Inspired Armored Personnel Carrier in Trials
Ukraine is taking a bold step towards rebuilding its armored forces with a new, M113-inspired armored personnel carrier that's currently undergoing trials, offering a homegrown solution to replace worn-down vehicles lost in years of conflict. This innovative APC is a crucial move towards bolstering the nation's defenses and reducing reliance on external supplies.