Tag: emerging threats
5090 articles

Akira Ransomware Group Accelerates Attacks, Hits Encryption in Under an Hour
The Akira ransomware group has supercharged its attacks, able to go from gaining a foothold to locking files in under an hour - the time it takes to pour a cup of coffee. This lightning-fast approach drastically shrinks the window for defenders and ups the ante for victims to pay the ransom.

Iranian Drone Struck by Russian Tech Loophole
A shocking discovery has linked a Russian navigation module, first found in Ukrainian drones, to an Iranian drone that struck a British air base in Cyprus, revealing a surprising exchange of weapons technology between the two nations. This finding changes the game for battlefield testing and weapons development.

Congress Probes ICE's Use of Paragon Spyware
House Democrats are pushing back against Immigration and Customs Enforcement's use of Paragon spyware, demanding more answers after the agency's explanations fell short. The lawmakers' concerns highlight growing tensions over law enforcement's use of controversial hacking tools.

A single unpatched flaw in a Dell storage appliance became a playground for hackers, allowing months of undetected espionage and the deployment of sneaky new backdoors. A joint investigation by Mandiant and Google Threat Intelligence Group uncovered this alarming zero-day exploit, which has been wreaking havoc since mid-2024.

Tech Giants Unveil AI-Powered Project to Fortify Software Defenses
Major tech players have joined forces to launch Project Glasswing, an AI-powered initiative that uses machine learning to identify and patch critical software vulnerabilities before malicious actors can exploit them. This game-changing project aims to stay one step ahead of attackers by harnessing the same AI technology that can be used for defense - and turning it into a powerful force for good.

Kubernetes Environments Under Siege as Attacks Escalate
Kubernetes environments are under attack like never before, with threat actors exploiting identities and critical vulnerabilities to compromise cloud infrastructure - so what can organizations do to protect themselves? The warning signs are clear: it's time to take action against escalating Kubernetes attacks.

China Unveils Upgraded Type 056C Corvette with Advanced Radar
China just took a major leap in naval tech with the unveiling of its upgraded Type 056C Corvette, boasting advanced radar capabilities typically found on larger frigates. Two of these cutting-edge ships have already launched, with one set to be commissioned in Cambodia on April 8.

Simplifying Security: Firms Urged to Rethink DIY Approach
To simplify security posture, the game plan for 2026 is clear: start by streamlining your defenses, then integrate smarter. By putting simplification first, businesses can cut unnecessary complexity and set themselves up for a more secure future.

Ukraine Bolsters GCC Air Defense with Counter-Drone Pacts
When Iranian loitering munitions started striking Gulf Cooperation Council facilities in March 2026, the GCC states surprisingly turned to a war-tested newcomer for help - Ukraine, not the regional heavyweight they traditionally rely on. Ukraine has since signed landmark 10-year defence cooperation agreements with Saudi Arabia, Qatar, and the UAE to bolster GCC air defence with cutting-edge counter-drone pacts.

Army Task Force Tests Real-Time Battlefield Data Solutions
The Army has launched a 180-day task force to revolutionize battlefield decision-making by harnessing real-time data solutions, turning a flood of signals into timely, actionable insights. Can this rapid experiment unlock the key to faster, more informed decisions on the battlefield?

eSentire CEO Shifts Focus to AI-Driven Managed Security
As malicious actors turbocharge their attacks with artificial intelligence, eSentire CEO James Foster is revolutionizing the company's managed security approach with an AI-driven, agentic model that combines lightning-fast automation with human expertise. This game-changing strategy enables businesses to keep pace with the rapidly evolving threat landscape.

Iranian Actors Exploit OT Vulnerabilities in US Critical Infrastructure
US critical infrastructure is under threat as Iranian-linked actors exploit vulnerabilities in operational technology (OT) systems, allowing them to gain network access and potentially disrupt operations. The alarming warning from federal agencies highlights the urgent need to secure the nation's industrial backbone from these increasingly targeted attacks.

Anthropic Withholds AI Model Over Misuse Fears
Anthropic has taken a bold step by withholding its latest artificial intelligence model from public release, citing concerns that its immense power could be misused. The company's new model, Claude Mythos Preview, has pushed the boundaries of automated capability, but Anthropic is taking a cautious approach to protect against potential risks.

Hackers Exploit Flaw in Ninja Forms WordPress Plugin
A critical vulnerability in the Ninja Forms File Uploads premium WordPress plugin allows hackers to upload malicious files and execute code on your server - putting your entire site at risk. This flaw lets unauthenticated users wreak havoc, making it essential to take immediate action to protect your online presence.

Russian Hackers Exploit Router Flaws to Steal Microsoft Office Tokens
Russian hackers have been quietly stealing Microsoft Office tokens from users on over 18,000 networks by exploiting known flaws in older internet routers, and here's the kicker: they did it without installing any malicious software. This sneaky campaign, linked to Russia's military intelligence units, highlights the surprising vulnerability of legacy devices to secret siphoning.

AI-Powered Software Shifts Cybersecurity Landscape
Imagine a future where you can ask an AI to create a custom spreadsheet, use it once, and then have it disappear - no more clutter, no more hassle. This is the emerging world of "instant software," where artificial intelligence makes it possible to write, deploy, and delete custom apps on demand.

Cybercrime Inflicts Record $21 Billion Loss on US Citizens
Last year, US citizens suffered a staggering $21 billion loss to cybercrime, a record that raises a crucial question: is the convenience of digital life worth the growing risk of fraud and theft? The alarming figure is largely driven by investment scams, business email compromise, tech support fraud, and data breaches.

Microsoft Device-Code Phishing Attacks Compromise Hundreds Daily
A shocking reality check: a sophisticated Microsoft device-code phishing campaign, dubbed "EvilTokens," is breaching hundreds of organizations daily, using AI and automation to snoop through corporate email inboxes and steal financial data. This alarming threat is making short work of traditional security measures, leaving businesses vulnerable to devastating attacks.

Cyberattack Cripples Massachusetts Hospital Operations
A devastating cyberattack has forced Signature Healthcare in Massachusetts to divert ambulances, cancel critical cancer treatments, and revert to paper-based procedures, putting patients' lives on hold. Every second counts as the hospital scrambles to respond to the attack and restore vital electronic systems.

Snowflake Breach Compounds as Hackers Exploit Integrator Vulnerability
A recent breach of a SaaS integration provider has led to a Snowflake data breach, with stolen authentication tokens being used to compromise the sensitive data of over a dozen companies. This devastating chain of events highlights the urgent need for robust security measures to protect against increasingly sophisticated cyber threats.

Identity Verification Shifts Under Regulatory Steady State
When regulations remain steady, but your identity landscape evolves rapidly, what gives? The real question is, how will your organization adapt to the shifting identity verification landscape while staying compliant with unchanged regulations?

APT28 Hijacks SOHO Routers in Global DNS Espionage Push
Your home router, that innocent-looking box under your desk, can be turned against you: a Russia-linked cyber threat group, APT28, has been hijacking insecure SOHO routers worldwide to fuel a massive DNS espionage campaign. By exploiting vulnerabilities in popular router brands like MikroTik and TP-Link, they've been manipulating DNS settings to spy on unsuspecting users.

US Warns of Iranian Hackers Targeting Exposed Industrial Controls
When devices that connect our physical and digital worlds are left exposed to the public internet, they become an open invitation for hackers - and Iranian-linked cybercriminals are now actively targeting Internet-exposed industrial control systems, specifically Rockwell/Allen-Bradley programmable logic controllers, in US critical infrastructure organizations.

Flowise RCE vulnerability exploited in attacks
Hackers are actively exploiting a critical vulnerability in Flowise, a popular open-source AI tool, that allows them to take control of systems designed to run code - a fundamental flaw that raises serious questions about securing AI-powered applications. This maximum-severity flaw, tracked as CVE-2025-59528, has left developers, organizations, and regulators scrambling for answers.