Tag: emerging threats
4731 articles

Sweden Bolsters Ukraine's Air Defense with $2.5 Billion Gripen Jet Deal
Sweden is ramping up its support for Ukraine's defense with a game-changing $2.5 billion deal to deliver 16 Gripen E fighter jets, boosting the country's air defense capabilities. The first 16 Gripen C/D jets will arrive in early 2027, with Saab, the manufacturer, set to provide spare parts and pilot training as part of the agreement.

Australia Urges Self-Reliance in AI to Counter Foreign Control
Imagine having your access to a critical AI tool suddenly cut off without warning, simply because a foreign government pulled the plug - that's what happened to Australians when US authorities shut down Anthropic's Claude Fable 5, highlighting the risks of relying on foreign AI models. This abrupt shutdown serves as a stark reminder of the importance of self-reliance in AI to safeguard national sovereignty.

Phishing Kit Unveils Sophisticated BEC-as-a-Service Capabilities
Meet ARToken, a sophisticated phishing kit that's redefining the threat landscape with its Business Email Compromise (BEC)-as-a-Service capabilities, allowing attackers to launch highly targeted and convincing scams. This advanced platform is a game-changer, offering a complete BEC operations environment that's far more complex than your average phishing kit.

OpenClaw Ecosystem Exposes Users to Growing Security Risks
With around 530 vulnerabilities discovered in under two years, the OpenClaw ecosystem poses a growing security threat to its users, putting their sensitive data at risk. Its design, while user-friendly, may be inadvertently leaving users exposed.

US Weighs Overhaul of Military Aid to Lebanon's Army
The US is rethinking its $3 billion military aid package to Lebanon's army, with Republican Sen. Jim Risch warning that an era of unconditional support must end, as critics argue the aid hasn't adapted to growing challenges on the ground in two decades.

Ursa Major Accelerates 3D-Printed Hypersonic Engine Production
Ursa Major is revolutionizing hypersonic engine production with its cutting-edge 3D printing technology, enabling the rapid creation of high-performance engines like the Havoc hypersonic missile. This game-changing approach allows for low-cost, high-effect solutions that are nearly impossible for adversaries to track.

Marines Forge Alliances in Pacific Exercise
In a live-fire exercise at Marine Corps Base Hawaii, Maj. Gen. Valerie Jackson emphasized that forging strong alliances and partnerships is crucial, so that when crisis strikes, partners can seamlessly work together. Interoperability isn't just a goal - it's a practical necessity that could mean the difference in the face of a determined adversary.

ScreenConnect Exploited in Large-Scale Campaign Disguised as Freeware
Cybercriminals have launched a massive campaign disguising a malicious ScreenConnect installer as freeware, tricking users into downloading it from over 90 fake websites in 10 languages. The scam starts with a bogus OBS Studio download that secretly installs the ScreenConnect utility, ultimately delivering a nasty AsyncRAT payload.

F-35 Radar Unveils Directed-Energy Attack Capability
The advanced APG-85 radar system for the F-35 requires a significant boost in cooling power, more than doubling the aircraft's current needs. This crucial upgrade will rely on planned engine enhancements and a sophisticated cooling system, set to arrive in the mid-2030s.

Pentagon Consolidates Drone Efforts Under New Autonomy Czar
The Pentagon is taking a major step to supercharge its drone program by creating a new role, the autonomy czar, to oversee and centralize its unmanned systems efforts. This move comes as adversaries are producing millions of unmanned systems every year, prompting the need for a more coordinated approach.

Post-Quantum Cryptography Gains Urgent Momentum
In a major milestone, over 70% of human-generated HTTPS requests are now secured with post-quantum key exchange, according to Cloudflare's latest telemetry data, marking a significant leap towards a more secure digital future. This rapid adoption signals that post-quantum cryptography is no longer just an experiment, but a vital protection for billions of online requests every day.

BrahMos Missile Eyes West Asia Expansion
The UAE's impressive air defense network has a glaring gap - a lack of long-range precision strike capabilities, leaving it to rely on subsonic missiles and short-range ballistic options. The BrahMos missile, with its supersonic speed and versatility, could be the game-changer Abu Dhabi needs to bolster its military might.

DHS Probes Breach of Homeland Security Information Network
The Department of Homeland Security is investigating a recent cyber breach targeting a legacy information sharing environment used by its Homeland Security Information Network. This platform is a critical tool for sharing sensitive information among partners to protect communities and respond to incidents.

US Navy Helicopter Crashes in Arabian Sea, Search Underway
A US Navy MH-60S Seahawk helicopter made an emergency landing in the Arabian Sea, and a search is underway for the one missing crew member after three were safely recovered and are receiving medical care. The incident is being investigated, but there is no indication of hostile action being involved.

Pentera Labs Red Team Exposes AI Double Agent Vulnerability in Claude Desktop
Pentera Labs' red team has uncovered a shocking vulnerability in Claude Desktop, allowing them to turn the AI's voice into a double agent that does an attacker's bidding on a developer's workstation. By exploiting a compromised inbox, they were able to gain full machine control, revealing a chilling new threat in the world of AI.

Hackers Exploit Microsoft 365 Flaws with 81 Million Login Attempts
In just two weeks, a massive password-spraying campaign racked up over 81 million login attempts, compromising 78 Microsoft 365 accounts across 64 organizations and highlighting a dramatic surge in cyber threats. This alarming trend saw a 155-fold increase in attacks, with organizations now facing an average of 1,964 failed login attempts per month.

Cursor Flaws Expose Developers to Zero-Click Attacks
Beware of DuneSlide, a pair of high-severity flaws that could let a single, innocent-looking prompt hijack your Cursor environment and unleash a zero-click attack on your computer - update to Cursor 3.0 now to stay safe!

Adobe Fixes CVSS 10.0 Flaws in ColdFusion and Campaign Classic
Adobe is racing against the clock to keep you safe, with emergency updates for ColdFusion and Campaign Classic that squash critical flaws allowing hackers to wreak havoc. The timely patches fix vulnerabilities that could lead to devastating attacks, from code execution to security breaches.

Ousaban Trojan Targets Iberian Bank Users with Sophisticated PDF Lures
Meet the Ousaban Trojan, a sneaky malware targeting banking customers in Spain and Portugal with clever PDF tricks. This sophisticated threat steals logins, hijacks sessions, and even takes remote control of infected computers.

AI-Generated Ransomware Exploits Chromium API in Browser Attacks
A groundbreaking AI-generated ransomware attack has been detected, cleverly exploiting the Chromium API to launch a devastating browser-based assault, stealing credentials, exfiltrating data, and holding files hostage. This alarming first-of-its-kind threat, dubbed InfernoGrabber v9.0, marks a chilling new frontier in cybercrime.

Ousaban Trojan Expands to Spain, Portugal with Advanced Evasion Tactics
Meet Ousaban, a sneaky banking Trojan that's evolved from decade-old tactics to target unsuspecting customers in Spain and Portugal, starting with a clever phishing PDF disguised as a broken file. This highly optimized threat profiles its victims before striking, making it a force to be reckoned with.

Progress LoadMaster Flaw Sees Active Exploitation Attempts
A critical vulnerability in Progress Kemp LoadMaster, tracked as CVE-2026-8037, is under active exploitation attempts, with Canadian cybersecurity firm eSentire's Threat Response Unit detecting and thwarting attacks starting June 29, 2026. The attacks, though unsuccessful, raise concerns about potential future breaches given the vulnerability's high CVSS score of 9.6.

Google Blogspot Abused to Deploy Fileless Infostealer
Cybercriminals are selling stolen credentials on underground marketplaces, giving other threat actors easy access to compromised accounts and environments. This latest threat, known as Veil#Drop, uses a sneaky fileless chain to infect victims who unknowingly download a malicious script disguised as a harmless document.

Criminal IP Enhances OpenCTI with Contextual Threat Intelligence Integration
Unlock the full potential of your threat intelligence with Criminal IP's integration with OpenCTI, providing rich contextual insights to supercharge investigation, correlation, and decision-making. By adding dual-perspective risk scoring, analysts gain a more nuanced view of IP risks, with separate signals for inbound and outbound threats.