Skip to main content

Tag: emerging threats

4764 articles

Young man in courtroom with somber expression, laptop blurred in background.

DraftKings hacker sentenced to 18 months for $600,000 cyberattack

Meet Nathan Austad, a 21-year-old from Minnesota who pleaded guilty to masterminding a massive $600,000 cyberattack on DraftKings, compromising nearly 60,000 customer accounts with a clever alias and a crew of co-conspirators. He'll be serving 18 months for his role in the hack, which exploited weak passwords and left thousands of customers vulnerable.

Analyst 207
Network equipment and monitoring systems surround a central router in a typical operations room setting.

Mandiant Exposes Cisco SD-WAN Zero-Day Attacks' Root Access Methods

Cisco's SD-WAN system was exploited in active attacks using a high-severity flaw, allowing hackers to create a rogue root account and take full control of targeted devices. This vulnerability, tracked as CVE-2026-20245, was triggered through a simple tenant-upload feature in the command-line interface.

Analyst 207
Person looks concerned while interacting with fake Microsoft update on laptop at office desk.

Malicious Edge Extension Exploits Native Messaging for Malware Deployment

Beware of malicious Edge extensions that can deploy malware through native messaging, with attackers using social engineering tactics on Microsoft Teams to trick victims into installing fake updates. Once infected, victims are presented with a fake Outlook update page offering three options to deploy the Edgecution malware.

Analyst 207
Type 45 destroyer docked with compact laser system in foreground.

UK Industry Partners Miniaturize DragonFire Laser for Type 45 Destroyer Debut

The UK's naval industry is making strides in laser technology, with QinetiQ, MBDA, and Leonardo teaming up to miniaturize the powerful DragonFire laser system for its debut on a Type 45 destroyer by 2027. This innovative partnership is shrinking the hardware to make the high-energy laser more feasible for naval deployment.

Analyst 207
US defense industrial facility with machinery and equipment producing defense-related objects.

Threats Expose Gaps in US Air-and-Missile-Defense Industrial Base

The US air-and-missile-defense system is struggling to keep up with today's threats, revealing gaps in real time, because its industrial base was designed for a bygone era. It's clear that we need a new approach, with more innovators and fresh ways to design, build, and deploy critical technologies like munitions and hypersonics.

Analyst 207
MQ-28 Ghost Bat drone on a runway with personnel in the background.

MQ-28 Ghost Bat Drone Deploys in Major Pacific Combat Exercise

The MQ-28 Ghost Bat drone made its debut in a major Pacific combat exercise, demonstrating its cutting-edge capabilities as a force multiplier that can fly alongside crewed fighters and extend their reach. This milestone marks a significant step forward in human-machine teaming and showcases the US commitment to a free and open Indo-Pacific.

Analyst 207
Satellite dish on a secure US military base with clear blue sky and clouds.

US Space Superiority at Risk as Acquisition Pace Lags

The battle for space superiority is heating up, with experts warning that the US is falling behind - and it's not just about being first, it's about control of the ultimate high ground that dictates success in every other domain, from air and sea to cyberspace. As one general put it, space operations are now vital to every military move, and the question is - can the US keep up?

Analyst 207
MQ-1 Predator aircraft on a sunny tarmac with a few people in the background.

US Navy Still Flies MQ-1 Predators in Secret Test Role

The US Navy is secretly testing a fleet of 20 MQ-1 Predators, acquired from the Air Force in 2019 and rebranded as NMQ-1Bs, despite the aircraft's official retirement in 2018. These drones are being used for mysterious testing purposes at the Naval Air Warfare Center Weapons Division.

Analyst 207
Software development workspace with laptop, notes, and diagrams, set against a blurred office background.

Governments Struggle to Secure Open-Source Software

The alarming reality is that years of underinvestment in open-source software security are catching up with us, with a new supply chain compromise emerging almost every week. A recent scan by Project Glasswing found over 6,000 high-risk vulnerabilities in popular open-source projects, but only a tiny fraction have been patched.

Analyst 207
Rows of computer servers and networking equipment in a brightly-lit server room.

SharkLoader Targets Global Entities with Cobalt Strike Deployment

Kaspersky researchers have uncovered a sophisticated campaign, dubbed StrikeShark, where hackers exploited vulnerabilities like ProxyLogon to deploy SharkLoader malware and gain access to high-stakes targets worldwide. The attackers used multiple publicly disclosed flaws to compromise internet-facing services, hitting diplomatic entities, software vendors, and more.

Analyst 207
Microsoft Disrupts Dual Cybercrime Tools in Novel Court Takedown

Microsoft Disrupts Dual Cybercrime Tools in Novel Court Takedown

In a groundbreaking move, Microsoft led a global effort to dismantle two notorious cybercrime tools, Amadey and StealC, used by hackers to infect over 140,000 computers worldwide in just one week. This bold takedown marks a significant win in the fight against cybercrime.

Analyst 207
Senior executive seated at a table near a podium with a government seal in the background, in a well-lit room with daylight…

Sen. Warren Probes Raytheon Exec's Ethics on Space Acquisition Nomination

Sen. Elizabeth Warren is pressing a Raytheon executive to promise strict ethics if he's confirmed to the Air Force's top space procurement office, citing concerns about impartiality due to his past ties to the defense contractor. She wants him to commit to a four-year recusal from matters involving his former employer.

Analyst 207
CISA Warns of Active Exploitation of Lantronix EDS5000 Flaw

CISA Warns of Active Exploitation of Lantronix EDS5000 Flaw

A critical code-injection flaw, CVE-2025-67038, has been discovered in Lantronix EDS5000 Series devices, allowing attackers to inject arbitrary OS commands with root privileges due to a lack of input sanitization in the HTTP RPC module. This vulnerability has a CVSS score of 9.8, indicating a high severity level.

Analyst 207
Ship navigating through calm Strait of Hormuz waters with buoys in distance.

Oman, IMO Unveil Evacuation Plan for Stranded Strait of Hormuz Ships

Oman and the International Maritime Organization (IMO) have teamed up to launch a safe evacuation plan for ships stranded in the Strait of Hormuz, a vital waterway for global trade. A temporary maritime corridor has been established, allowing vessels to transit safely with IMO coordination.

Analyst 207
Malware Developers Embed Deceptive Text to Evade AI Analysis

Malware Developers Embed Deceptive Text to Evade AI Analysis

Malware developers are getting sneaky, hiding their spyware behind a façade of disturbing text about nuclear and biological weapons to throw AI analysis off their trail. By embedding this decoy content, they're making it harder for automated systems to detect their malicious code.

Analyst 207
Courtroom setting with documents and subtle malware concept representation.

Microsoft AI Disrupts Malware Operations in Novel Racketeering Suit

Microsoft is shaking up the fight against malware by harnessing the power of AI to disrupt cybercrime operations, as seen in a groundbreaking racketeering case that treats two separate malware operations as a single, unified threat. By combining AI analysis with a novel application of the Racketeer Influenced and Corrupt Organizations Act (RICO), Microsoft's Digital Crimes Unit is pioneering a new approach to tackling malicious software.

Analyst 207
Law enforcement officials from various countries gather around a console in a brightly-lit room.

Law Enforcement Disrupts Amadey Malware Network, Recovers 27M Stolen Credentials

In a major cybercrime crackdown, international law enforcement agencies and private sector partners joined forces to dismantle the Amadey malware network, recovering a staggering 27 million stolen login credentials. This huge blow to cybercriminals was delivered between June 15-19, 2026, as part of Operation Endgame.

Analyst 207
Law enforcement officers in a cybersecurity operation room surrounded by computer screens and network equipment.

Europol Operation Disrupts StealC and Amadey Infostealers

In a major win for cybersecurity, a coordinated international effort has dismantled the operations of two notorious malware families, StealC and Amadey, freezing a whopping €41m in crypto assets of criminal origin. This significant disruption was made possible through the collaboration of Europol, Germany's Federal Criminal Police Office, J-CAT, and Eurojust.

Analyst 207
Person sitting at desk with laptop and puzzle piece, testing vulnerability in office setting.

Researchers Expose AI Browser Vulnerability to Credential Theft

Imagine a simple game trick that could convince AI-powered browsers to hand over your login credentials - a vulnerability researchers have now exposed, leaving users at risk. By creating a malicious web page that changes an AI agent's sense of reality, hackers can bypass safety guardrails and gain access to sensitive information.

Analyst 207
Law enforcement officials from various agencies gather in a briefing room for a collaborative operation.

Microsoft-Led Operation Disrupts Amadey, StealC Malware Networks

In a major win for cybersecurity, a Microsoft-led operation has successfully disrupted the networks behind Amadey and StealC malware, significantly increasing friction for cybercriminals and making it harder for attacks to succeed. This collaborative effort between law enforcement and private sector partners marks a crucial step forward in the fight against cybercrime.

Analyst 207
Ubiquiti UniFi OS device in a small business office setting with ambient daylight.

CISA Warns of Actively Exploited Ubiquiti Flaws

The US Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning that hackers are actively exploiting security flaws in Ubiquiti UniFi OS devices, posing a significant threat to system security. Federal agencies have just three days to apply crucial updates or recommended fixes to avoid potential breaches.

Analyst 207
Dimly lit workspace with scattered notes and empty coffee cups, hinting at unease.

Cordyceps Flaws Compromise 300+ GitHub Repositories

A newly discovered flaw, dubbed Cordyceps, has left over 300 GitHub repositories vulnerable to exploitation by unauthenticated users, allowing for code execution, credential theft, and supply-chain compromise. This critical weakness can be easily exploited, putting countless open-source projects at risk.

Analyst 207
A dimly lit laboratory setting with a macOS laptop displaying a terminal window amidst technical equipment and papers.

North Korea-linked Backdoor Exploits AI Triage Tools

When building AI triage tools, it's crucial to treat sample contents as potentially hostile input, not instructions, to prevent malicious manipulation. Experts warn that failing to do so can allow attackers to sneak hostile content into your model.

Analyst 207
Customer service representative on phone call at retail service desk.

Social Engineering Attacks Target Service Desks

Service desks have become a prime target for cyber attackers, who often find it easier to manipulate staff into divulging sensitive information than to crack the technology itself. In a string of recent incidents, hackers have successfully impersonated employees to gain access to internal systems, as seen in the 2025 UK attacks on major retailers like Marks & Spencer, Co-op, and Harrods.

Analyst 207