Skip to main content

Tag: emerging threats

4865 articles

Workers assemble and test unmanned ground vehicles in a brightly-lit Ukrainian factory.

Ukraine Ramps Up Ground Robot Arsenal Amid Drone Warfare

Ukraine is gearing up its robotic arsenal with a bold goal to produce 50,000 unmanned ground vehicles this year, and defense-tech incubator Brave1 is on a mission to make it happen. With a thriving industrial base of 280 companies and 550 UGV models, Ukraine is poised to revolutionize its ground robot capabilities amid the ongoing drone warfare.

Analyst 207
Concerned individuals walk down a modern office corridor lined with server racks and filing cabinets, with a focused laptop…

Cyber Extortion Economy Shifts Away From Ransomware Encryption

The cyber extortion landscape is undergoing a seismic shift, with threat actors ditching ransomware encryption in favor of data-only extortion - and they're moving at lightning speed, with one case seeing data exfiltration in just 39 seconds. This trend is driven by improved backup and recovery methods, leaving attackers to focus on stealing sensitive data.

Analyst 207
Australia's Defence Spending Trails Strategic Ambition

Australia's Defence Spending Trails Strategic Ambition

Australia's defence landscape is undergoing a significant transformation, driven by the 2024 and 2026 National Defence Strategies, AUKUS, and a massive overhaul of its defence posture. The changes include a historic submarine deal and a bold new vision for the country's military future.

Analyst 207
Venture Capital Targets Cybersecurity's Elusive Prime

Venture Capital Targets Cybersecurity's Elusive Prime

Venture capital is swooping in to shake up the cybersecurity scene, now that barriers to entry have crumbled, but the million-dollar question remains: will this influx of cash spawn a new generation of market leaders? The industry is holding its breath, waiting to see which defensive cyber startups will rise to the top and dominate the landscape.

Analyst 207
OpenAI Bolsters Cybersecurity, Election Integrity with 2026 Midterm Safeguards

OpenAI Bolsters Cybersecurity, Election Integrity with 2026 Midterm Safeguards

OpenAI is stepping up its game to safeguard the 2026 midterm elections with a robust five-part plan to combat AI-driven interference and bolster cybersecurity. The company is committed to protecting digital infrastructure and promoting election integrity by spreading reliable information, watermarking deepfakes, and more.

Analyst 207
Paramilitary police officers in riot gear stand in formation with automatic grenade launchers.

China's Paramilitary Forces Upgrade Riot Control Arsenal

China's paramilitary police are taking riot control to a whole new level with an arsenal of heavy-hitting gear, including 35 mm automatic grenade launchers typically used on the front lines. The PAP First Mobile Corps recently showcased their fire-support platoon equipped with this powerful tech, blurring the lines between crowd management and combat.

Analyst 207
Person working at desk with laptop and phone, surrounded by papers, in a home office with a city view through the window.

GPU mining malware spreads via SEO poisoning and AI chatbot manipulation

Beware of a sneaky malware that's spreading through manipulated AI chatbot responses and search engine poisoning, tricking users into downloading GPU mining malware. Victims unknowingly stumble upon malicious links while searching for popular software or getting recommendations from AI assistants.

Analyst 207
Employees work at desks with laptops and smartphones, surrounded by papers and office supplies, with blurred software…

Managing Shadow AI Tools Requires a Proactive Security Approach

Employees are now using three to five AI tools daily, outpacing the controls in place to manage them, and creating a growing security gap that's hard to ignore. This surge in shadow AI tools is fueled by three key areas: OAuth connections, browser extensions, and bundled AI.

Analyst 207
Receptionist sitting at desk with phone and laptop, screens glowing blue.

Cybercriminals Impersonate IT Personnel in Targeted Attacks

Cybercriminals are now masquerading as IT personnel to launch targeted attacks, with the FBI warning that law firms and professional sectors are prime targets. This new tactic allows groups like the Silent Ransom Group to swiftly access and exfiltrate sensitive data, often without encrypting systems.

Analyst 207
Executives in a conference room show concern, with a subtle network diagram in the background.

Executives' Blind Spot: Shadow AI Use Exposes Security Risks

Most organizations have a blind spot when it comes to AI usage, leaving them vulnerable to security risks - and the truth is, you can't protect what you can't see. A recent study by Okta and Apprize360 found that shadow AI use is rampant, exposing companies to potential breaches, data exposures, and system disruptions.

Analyst 207
Network operations center with globe, screens, and abstracted server racks.

CrowdStrike disrupts Glassworm botnet with global takedown

In a major win for cybersecurity, CrowdStrike has successfully dismantled the notorious Glassworm botnet in a global takedown, cutting off its operators from infected machines worldwide. The infected machines now harmlessly connect to a CrowdStrike-controlled IP address, rendering the botnet useless.

Analyst 207
GitHub repository on laptop in home office with papers and smartphone nearby.

Malicious npm Package Targets Claude AI User Files via GitHub

Disguising itself as a harmless archive deployment sync tool, the malicious npm package mouse5212-super-formatter secretly synced local workspace files to a remote tracking tree, allowing attackers to target user files on GitHub.

Analyst 207
Polish drone on display in a well-lit conference room or defense exhibition hall in Ottawa, Canada.

Canada Taps Polish Drones to Bolster Defense Ties with EU Backing

Canada is set to boost its defense capabilities with cutting-edge Polish drones, including the advanced Warmate, FlyeEye, and Gladius models, as part of a new agreement with Poland backed by the EU. This deal marks a significant step forward in Canada's defense ties with Poland and the European Union.

Analyst 207
Modern bank lobby with customer service desk and banking terminals.

Malware Campaigns Target Windows, Android Users in Global Finance Sector

Global finance sector faces a double threat as malware campaigns target Windows and Android users, with attackers using clever tactics like hiding in trusted traffic and selling mobile RATs as turnkey services. Two recent campaigns, one using Grandoreiro malware in Portugal, Spain, and Mexico, and another using a new BTMOB trojan in Brazil, highlight the evolving threat landscape.

Analyst 207
Rows of computer servers and networking equipment in a brightly-lit server room.

CrowdStrike dismantles Glassworm botnet targeting open-source supply chain

In a major win for cybersecurity, CrowdStrike has successfully dismantled the notorious Glassworm botnet, crippling its ability to target the open-source supply chain. By taking down four key servers, CrowdStrike has forced the attackers to regroup and rebuild, buying time for the industry to stay one step ahead.

Analyst 207
Ruggedized laptop on a ship's command center console, surrounded by navigation and communication equipment.

US Navy Rethinks Risk in Software Development for Edge Operations

The Department of the Navy is shaking up its approach to software development, redefining risk to deliver mission-critical data at breakneck speeds. By recalibrating its tolerance for risk, the Navy aims to accelerate the flow of vital information to where it's needed most, when it's needed most.

Analyst 207
Nondisclosure agreement form on a desk with a pen, in a federal office setting.

OPM Proposes Sweeping NDA Rule for Federal Employees

The Office of Personnel Management wants to shake up the way federal employees handle confidential information, proposing a new nondisclosure agreement rule that would require all employees to sign a pledge protecting internal agency details. If implemented, the rule could have far-reaching implications for whistleblowing and employee accountability.

Analyst 207
Office worker sits at desk with laptop and printer in background.

FortiGuard Labs Exposes Sophisticated Phishing Campaign Targeting Windows Users

Beware of a sneaky phishing campaign that's targeting Windows users with a multi-stage attack chain, starting with a seemingly harmless email attachment that unleashes a powerful malware. This stealthy threat uses clever tactics like process hollowing to inject malicious code into trusted Windows processes.

Analyst 207
Concerned office worker sits at desk, staring at paper or laptop screen with blurred cityscape in background.

FBI Warns Law Firms of In-Person Extortion Tactics by Silent Ransom Group

The FBI is sounding the alarm for US law firms, warning them of a growing threat from the Silent Ransom Group, which targets the legal industry for its highly sensitive data and uses in-person extortion tactics. This group has been linked to a string of incidents, and the FBI is urging law firms to be vigilant.

Analyst 207
Exhausted cyber professional sits at cluttered desk surrounded by empty coffee cups.

Cybersecurity Burnout Spurs Call for Risk-Based Response

Half of all cyber professionals are burning out weekly or daily - it's time for organizations to shift their approach and view burnout as a critical operational risk, rather than just a wellness issue. By reframing burnout in this way, businesses can prioritize effective solutions and safeguard their cyber resilience.

Analyst 207
Security professionals monitor threat detection interface in a brightly-lit operations center.

SOCs Shut Down Incident Risks with Proactive Threat Detection

Stay ahead of incident risks with proactive threat detection from ANY.RUN's Threat Intelligence Feeds, which deliver a continuous stream of high-confidence threat data from a vast network of organizations and SOC professionals. By shrinking the time between detection and understanding, modern Security Operations Centers (SOCs) can effectively shut down threats before they cause harm.

Analyst 207
Network operations center with large map display and staff working at computer terminals.

CrowdStrike and Google Disrupt Glassworm Botnet Infrastructure

In a major win for cybersecurity, a powerful collaboration between CrowdStrike, Google, and the Shadowserver Foundation successfully dismantled the Glassworm botnet by simultaneously taking down all four of its command-and-control channels. This bold move cut off the botnet's operators from infected devices, preventing further malicious activity.

Analyst 207
IT professional urgently working on laptop amidst computer equipment.

India's CERT-In Urges 12-Hour Patch Deadline for Exploited Vulnerabilities

CERT-In is urging organizations to act fast - patch, mitigate, or remove exposure to exploited vulnerabilities within 12 hours for internet-facing and high-priority systems. This strict deadline aims to minimize risk and protect critical assets from potential attacks.

Analyst 207
Tangled fiber optic cables in a data center, disrupted and severed.

Glassworm botnet disrupted by takedown of resilient C2 infrastructure

In a major win for cybersecurity, researchers from CrowdStrike, Google, and The Shadowserver Foundation have successfully disrupted the Glassworm botnet by dismantling its complex command-and-control infrastructure. This takedown cuts off the lifelines of the threat actors, halting their campaigns that had been ongoing since October 2025.

Analyst 207