Skip to main content

Tag: emerging threats

5109 articles

Hackers Weaponize Windows Hyper-V in Stunning EDR Evasion

Hackers Weaponize Windows Hyper-V in Stunning EDR Evasion

Think your EDR has you covered? Attackers are enabling Windows Hyper-V on compromised machines and spinning up tiny Alpine Linux VMs to run malware out of sight of host-based sensors—making virtualization the new stealth tactic defenders must watch for.

Analyst 207
SonicWall Exclusive Damaging State-Sponsored Cloud Breach

SonicWall Exclusive Damaging State-Sponsored Cloud Breach

Imagine handing someone the wiring diagram to your house—now replace the house with your network: SonicWall says a state-sponsored actor used an API to access cloud-stored firewall configuration backups, exposing admin credentials, VPN keys and network blueprints that could let attackers slip past defenses.

Analyst 207
Operation Chargeback Exclusive: Devastating €300m Fraud

Operation Chargeback Exclusive: Devastating €300m Fraud

Operation Chargeback uncovers a devastating €300m fraud — an exclusive look at how investigators dismantled the scheme and what you need to know to protect yourself.

Analyst 207
Tangled fishing lines and hooks on a cluttered academic desk with scattered papers and broken stationery, featuring a shiny…

UNK_SmudgedSerpent Exclusive: Dangerous Lures for Academics

Think your inbox is just clutter? A newly observed actor, UNK_SmudgedSerpent, is luring academics with plausible conference invites, fake collaboration requests and weaponized drafts to steal unpublished research and private correspondence—forcing universities to choose between openness and much tougher defenses.

Analyst 207
Tangled circuitry with glowing LED surrounded by shattered glass and dark lab shadows.

AMD Stunning Crypto Bug Exposes Critical RNG Flaw

Could a handful of bits quietly unravel the trust behind bank logins and encrypted cloud workloads? Researchers uncovered an AMD RNG flaw in Ryzen and EPYC chips that lets local privileged operations weaken key generation—AMD has microcode patches underway, so admins should prioritize updates.

Analyst 207
Dark cityscape with ominous robotic head emerging from shadows, glowing red eyes, and faint laptop screen in background.

Gemini AI Exclusive: Dangerous Thinking Robot Malware

What if the AI meant to amplify our thinking could be turned into thinking robot malware that rewrites itself to hide from defenders? New research shows attackers chaining prompt- and log-injection tricks to weaponize Gemini into self-modifying, persistent surveillance agents that sidestep many standard safeguards.

Analyst 207
M&S Exclusive: Stunning £136M Cyber Cleanup Fuels Slump

M&S Exclusive: Stunning £136M Cyber Cleanup Fuels Slump

Which is worse — a day of down tills or a quiet drain on cash and trust? For M&S, Aprils cyberattack did both: systems are back, but a £136m cleanup bill now threatens cash, customer confidence and the retailer’s recovery.

Analyst 207
Dark, ominous nighttime scene of a tech company HQ with a serpentine shadow coiled around shattered devices and scattered…

SmudgedSerpent Exclusive: Dangerous Hackers Target Experts

Meet SmudgedSerpent: during the summer 2025 Iran–Israel flare-up a stealthy cyber cluster used precision social engineering to target academics and policy experts. By exploiting researchers’ networks and unpublished work, these attacks show how adversaries now shape information and influence far faster than old‑school espionage.

Analyst 207
Claude Desktop Extensions Exclusive: Critical Prompt Risk

Claude Desktop Extensions Exclusive: Critical Prompt Risk

Claude Desktop extensions make assistants truly useful — but when they execute local actions, attackers can turn innocent prompts into harmful commands. The recent command‑injection flaws in three extensions, now patched by Anthropic, are a reminder that convenience brings new security risks.

Analyst 207
CISA Adds Gladinet, CWP to KEV: Exclusive Critical Alert

CISA Adds Gladinet, CWP to KEV: Exclusive Critical Alert

CISA has quietly added Gladinet and Control Web Panel to its Known Exploited Vulnerabilities list after evidence of active attacks. These flaws — including CVE-2025-11371 (CVSS 7.5) — are no longer theoretical and should be prioritized for immediate patching and mitigation.

Analyst 207
Russian spies Exclusive: Dangerous VM malware on Windows

Russian spies Exclusive: Dangerous VM malware on Windows

Meet Curly COMrades — a spy group that runs a tiny Alpine Linux “shadow OS” inside a hidden Hyper‑V VM on compromised Windows hosts, letting them slip past endpoint tools and quietly harvest data, credentials and long‑term access.

Analyst 207
French Police Seize €1.6m in Exclusive Costly Crypto Sting

French Police Seize €1.6m in Exclusive Costly Crypto Sting

How do you chase money that lives in code and shadows? French investigators and Europol answered with blockchain sleuthing and old‑fashioned detective work — freezing €1.6m and arresting nine suspects in a cross‑border crypto fraud takedown.

Analyst 207
OpenAI Assistants API Exclusive: Critical SesameOp Backdoor

OpenAI Assistants API Exclusive: Critical SesameOp Backdoor

Imagine your helpful AI assistant secretly moonlighting as a command-and-control courier — researchers found the SesameOp backdoor using OpenAI’s Assistants API to stealthily ferry attacker commands and exfiltrated data. This clever pivot turns trusted productivity integrations into covert channels, forcing a rethink of how we govern and monitor AI tools.

Analyst 207
Scattered Spider Exclusive: Dangerous Unified Collective

Scattered Spider Exclusive: Dangerous Unified Collective

Imagine low‑tech social engineering and SIM swaps teaming up with mass data brokers — that’s Scattered Spider, ShinyHunters and LAPSUS$ fusing tactics to turn bulk theft into pinpoint extortion. Security teams and cloud customers now face a hybrid, high‑leverage threat targeting SaaS platforms like Salesforce.

Analyst 207
DragonForce Cartel Exclusive Deadly Conti Ransomware Threat

DragonForce Cartel Exclusive Deadly Conti Ransomware Threat

Get an exclusive look at how the DragonForce Cartel is unleashing the deadly Conti Ransomware—and learn who’s at risk and simple steps you can take to protect yourself.

Analyst 207
Teams Flaw: Stunning Reveal of Critical Boss Spoofing

Teams Flaw: Stunning Reveal of Critical Boss Spoofing

A newly revealed Microsoft Teams vulnerability let attackers convincingly impersonate executives, forge messages and even rewrite chat history—turning everyday collaboration into a pathway for fraud and data theft. Learn how Check Point’s findings expose the danger of boss‑spoofing and what organizations need to patch now.

Analyst 207
Cybercrooks Exclusive: Dangerous Rise in Europe Payouts

Cybercrooks Exclusive: Dangerous Rise in Europe Payouts

Cyber extortion is escalating in worrying ways across Europe: researchers have logged at least 18 cases this year where ransomware threats are paired with physical violence. With average demands topping $200,000 and countries like France and the UK feeling the heat, the risk has shifted from data loss to public safety.

Analyst 207
DeFi Protocol Balancer Suffers Stunning $120M Heist

DeFi Protocol Balancer Suffers Stunning $120M Heist

Who guards the guards? A sophisticated Balancer exploit drained over $120 million from the protocol’s liquidity pools, jolting the DeFi community and forcing a hard rethink of how permissionless innovation can survive against fast, well‑resourced attackers.

Analyst 207
Magnifying glass hovers over cracked screen with eerie glow, set against dark cityscape at dusk.

Google AI Stunningly Exposes 5 Critical Safari WebKit Flaws

Googles AI, Big Sleep, exposed five critical security flaws in WebKit — including a buffer‑overflow that could trigger crashes or memory corruption. It’s a stark reminder that AI speeds up vulnerability discovery, shortening the window defenders have to patch Safari’s engine before attackers catch up.

Analyst 207
Xi Jinping Exclusive: Damaging Joke on Xiaomi Backdoors

Xi Jinping Exclusive: Damaging Joke on Xiaomi Backdoors

Xi Jinpings offhand joke about Xiaomi backdoors — met with a laugh from South Koreas president — turned a light moment into a diplomatic ripple, reigniting real doubts about device security and supply‑chain vulnerabilities.

Analyst 207
Dark laptop screen with shattered glass and padlock, surrounded by papers, with a ghostly robot and ruined cityscape in the…

MIT Sloan Shelves AI Ransomware Study: Stunning Damage

MIT Sloan’s withdrawal of a paper claiming 80% of ransomware is AI-driven has ignited a fierce debate—exposing both genuine signs of AI-assisted extortion and the danger of leaping from plausible scenarios to sensational conclusions.

Analyst 207
Ransomware negotiator: Exclusive Guide to Best Practices

Ransomware negotiator: Exclusive Guide to Best Practices

When the ransomware negotiator you trusted to defuse an attack becomes the attacker, the breach of trust is catastrophic. This guide explains what happened, why it matters, and how organizations can guard against insider betrayal.

Analyst 207
Padlock looms over cityscape at dusk with laptop and code in background.

AWS Targets Security Startups: Exclusive Best Bets

With just two weeks to apply, AWS Targets Security Startups fast-tracks early cloud and AI security founders into a cohort with AWS, CrowdStrike and Nvidia for mentorship, technical integration, and investor introductions. Its a rare chance to turbocharge fundraising and distribution—if youre ready to trade some independence for speed.

Analyst 207
Cybercrooks Exclusive: Devastating Cargo Heists Exposed

Cybercrooks Exclusive: Devastating Cargo Heists Exposed

Meet the new face of cargo theft: software-savvy criminals breach freight systems and team up with on-the-ground hijackers to divert high‑value shipments—creating faster, stealthier heists that ripple through supply chains and national security.

Analyst 207