Skip to main content

Tag: emerging threats

4731 articles

B-21 Raider stealth bomber on tarmac at Edwards Air Force Base in California.

Air Force Confirms B-21 Raider to Miss America 250 Flyovers

The Air Force has confirmed that the B-21 Raider won't be joining in on the America 250 flyovers this week, dashing hopes of a high-profile display by the stealth bomber. The two flight-test aircraft will remain at Edwards Air Force Base in California for now.

Analyst 207
Military base in northern Australia with infrastructure elements.

Australia's Northern Defence Posture Lags in Resilience Testing

Australia's northern defence strategy is at risk due to a lack of practical assessment, with investment outpacing real-world testing of its resilience. Despite visible progress on infrastructure and projects, the system's ability to withstand stress remains unproven.

Analyst 207
Sukhoi Su-57 fighter jet with missiles and mysterious pod in dimly lit shelter.

Russia's Su-57 Targets Ukrainian Drones with Unusual Weapons Load

New photos reveal Russia's advanced Su-57 fighter jet packing a surprising punch against Ukrainian drones, with a mysterious pod and air-to-air missiles in tow. The unusual weapons load comes as the small fleet of just nine Su-57s is thrust into a new kind of battle.

Analyst 207
Military briefing room with podium and display screen showing missile trajectory.

Pakistan Develops Fatah-2 Missile, Hints at Longer-Range Fatah-5

Pakistan takes a significant leap in its defense capabilities with the development of the Fatah-2 missile, boasting a 400 km range and a 365 kg warhead, signaling a strategic boost to its conventional ballistic-missile posture.

Analyst 207
Pakistani military base with a ballistic missile on a launcher.

Pakistan Develops Fatah-5 Conventional Ballistic Missile

Pakistan is reportedly developing the Fatah-5, a conventional ballistic missile that could be an extended-range iteration of the Fatah-2 family, designed for scale and modularity. This new missile is likely to be an evolutionary upgrade rather than a revolutionary one, similar to Turkey's Tayfun program.

Analyst 207
Professionals collaborate in a brightly-lit tech lab with AI equipment and cybersecurity tools.

DeepSeek Targets Cybersecurity with Advanced AI Agent Development

DeepSeek is turbocharging its growth with a bold plan to double its team size, signaling a major shift from research to commercial AI development with a focus on cybersecurity. The company's ambitious hiring spree, with over 30 new roles, follows a whopping $7.4 billion funding round.

Analyst 207
Rows of equipment racks and servers in a brightly-lit, neutral-colored server room.

Oracle Exploit Spotted in Wild Ahead of Proof-of-Concepts

A critical Oracle vulnerability, CVE-2026-46817, with a 9.8 severity rating is being exploited in the wild, just days before a proof-of-concept was expected to be released. The attacks, detected by threat intelligence firm Defused, appear to be more like reconnaissance tests than targeted campaigns, with six attempts logged from a single IP address within a two-hour window.

Analyst 207
US Navy base in Japan with barracks in background and blurred package in foreground.

US Navy Probes Alleged Off-Base Drug Network in Japan

A shocking alleged drug network has been uncovered in Japan, involving mailed shipments of LSD to sailors stationed on the USS Ronald Reagan, with investigators tracing the packages from the US to an off-base residence and ultimately to sailors on board. The probe began after a young sailor's tragic death from a fall, with an autopsy revealing LSD in his system.

Analyst 207
Modern office with large window and polished conference table symbolizes consolidated oversight and strategic priority.

Pentagon Consolidates Autonomous Systems Under New Oversight Authority

The Pentagon is shaking up its approach to autonomous systems with a new oversight authority, DRPM-UxS, that will unify drone and counter-drone efforts across air, land, and sea domains. This move aims to bolster the military's competitive edge, with Defense Secretary Pete Hegseth emphasizing that unmanned systems are a strategic priority.

Analyst 207
Hospital corridor with medical devices and blurred computer equipment.

Medtronic Data Breach Exposes 9 Million Records to Hackers

Medtronic recently discovered a data breach that put 9 million records at risk of being accessed by hackers, sparking a thorough investigation and prompt notification of affected customers. The breach, which occurred between April 13 and April 19, 2026, exposed sensitive personal data to an unauthorized third party.

Analyst 207
Cluttered office desk with open laptop, invoices, and scattered papers showing signs of disruption.

EvilTokens Phishing Kit Exposes Sophisticated Evasion Tactics

Microsoft VP of security research Tanmay Ganacharya revealed that 10-15 distinct EvilTokens phishing campaigns have been launching daily since March 15, 2026, showcasing the alarming speed at which device-code phishing operations have scaled. This comes as Cisco Talos incident responders uncovered a targeted phishing chain that abused a real vendor relationship using an outstanding-invoice lure.

Analyst 207
Rows of rack-mounted servers and equipment in a brightly-lit server room or data center interior.

FortiBleed Campaign Tied to Lynx Ransomware Operators

Researchers uncovered a massive credential-theft operation, dubbed FortiBleed, which exposed over 73,000 Fortinet device credentials and was surprisingly linked to active ransomware negotiation panels. This shocking discovery offers a rare glimpse into the tactics of threat actors.

Analyst 207
Cybersecurity researcher sits at cluttered desk with laptop and papers, looking concerned.

Malware Exploits GitHub PoCs to Target Cybersecurity Researchers

Cybersecurity researchers are being targeted by a sneaky new campaign that uses malicious GitHub proof-of-concept exploits to deliver a remote access trojan, with over 2,400 downloads of a trojanized Python package already recorded. The attack unfolds through a multi-stage supply-chain trick involving compromised PyPI packages.

Analyst 207
Office setting with computer workstation and network server equipment in foreground.

Kubota Discloses Month-Long Network Breach Exposing Sensitive Employee Data

Kubota North America Corporation revealed a concerning network breach that lasted a month, exposing sensitive personal data of employees and their dependents to unauthorized access. The incident, which occurred between March 16 and April 20, has prompted the company to implement enhanced security measures to prevent future breaches.

Analyst 207
Handcuffed young man escorted by law enforcement officers through a courthouse hallway.

US Extradites 19-Year-Old Hacker to Face Charges

Meet Peter Stokes, a 19-year-old hacker who's in hot water after allegedly orchestrating over 100 network intrusions that raked in a staggering $100 million in ransom payments, leaving a trail of chaos for businesses and investigators to clean up. Stokes, a dual US and Estonian citizen, has been extradited from Finland to face federal charges of conspiracy, computer intrusion, and fraud.

Analyst 207
Exposed server in a data center with rows of computer racks.

Unpatched Argo CD Flaw Exposes Kubernetes Clusters to Takeover

A critical flaw in Argo CD's repo-server component has been left unpatched for 18 months, leaving Kubernetes clusters vulnerable to takeover by allowing unauthenticated access to sensitive functions. This gaping security hole enables attackers to execute malicious scripts and gain control of your cluster.

Analyst 207
Laptop on cluttered desk shows ransomware warning on browser window.

AI Model DeepSeek Enables Browser-Only Ransomware With Simple Prompts

Researchers have uncovered a concerning trend: nearly half of the files generated by the DeepSeek AI model - over 1,300 out of 3,000 - have been flagged as malicious or dangerous, including some that can launch browser-only ransomware with just a few simple prompts.

Analyst 207
Cybersecurity researcher working at cluttered desk with laptop and Linux devices nearby.

Malware Delivered via Trojanized GitHub Exploits Targets Security Researchers

Security researchers have been targeted by a sneaky malware campaign that uses trojanized GitHub exploits to deliver a Python-based remote access trojan, hiding in plain sight within popular proof-of-concept code repositories. The malware, downloaded over 2,400 times mostly on Linux-based systems, was spread through malicious packages cleverly concealed in dependency lists on GitHub.

Analyst 207
Laptop on a simple desk in a home office setting with a notepad and pen nearby.

Blogger Platform Exploited in VEIL#DROP Malware Attack Chain

The VEIL#DROP malware attack chain starts with a sneaky JavaScript file, cleverly disguised as a harmless document, which executes through Windows Script Host and launches PowerShell with execution policy bypasses enabled. This multi-stage threat can be triggered by spear-phishing or a simple visit to a compromised website.

Analyst 207
Cluttered office desk with laptop, papers, and storage devices.

Kaspersky Exposes AsyncRAT Campaign Using ScreenConnect

Malicious actors have launched a massive campaign using fake software downloads to spread the AsyncRAT malware, disguising it as popular utilities like OBS Studio and DNS Jumper. Kaspersky uncovered over 90 spoofed domains in 10 languages, hinting at a sophisticated and widespread threat.

Analyst 207
Congress members sit at desks, some in disagreement, others frustrated, in a divided House of Representatives chamber.

GOP Infighting Derails Defense Bill's Path to Floor Vote

House Republicans faced a major setback as infighting over the defense bill blocked its path to a floor vote, with 14 GOP members defying their party to side with Democrats against a procedural rule. The failed vote now stalls consideration of the fiscal 2027 National Defense Authorization Act.

Analyst 207
Secure facility with people working, hint of cloud infrastructure in background.

AWS Launches Secret Cloud for Classified Workloads

AWS has launched a game-changing cloud solution, AWS Secret Cloud, designed to empower America's defense industrial base with top-secret capabilities, enabling them to accelerate mission-critical work like never before. This innovative platform allows contractors to run classified workloads securely in the cloud, slashing provisioning time from months to just days.

Analyst 207
Professionals in formal attire seated around a conference table in a government office setting.

Vought Weighs Rebuilding CISA Amid Budget Cuts

The Trump administration's budget office is leaving the door open to bolstering the Cybersecurity and Infrastructure Security Agency, but only if Department of Homeland Security Secretary Markwayne Mullin makes a strong case for more staff. OMB Director Russell Vought signaled a willingness to revisit staffing levels, but at a pace and process determined internally.

Analyst 207
Brightly lit industrial facility server room with computer workstations and equipment.

Schneider Electric Software Vulnerability Exposes Industrial Facilities to Risk

A newly discovered vulnerability in Schneider Electric's Floating License Manager could put industrial facilities at risk, allowing attackers to exploit a weakness in the FlexNet Publisher component. This security gap stems from a hardcoded OpenSSL configuration path that can be manipulated to load malicious DLLs.

Analyst 207