Tag: finance
30 articles

Agent Tesla Malware Evolves with Advanced Evasion Tactics
Researchers have uncovered a sneaky new tactic used by Agent Tesla Malware, where attackers use emoji obfuscation and spoofed emails to infect finance departments with a simple, yet cleverly designed, malicious attachment. This devious approach tricks victims into launching the infection chain with just a single reply.

Ransomware Attacks Surge 20% as New Gangs Target Finance, Healthcare
Ransomware attacks are on the rise, surging 20% in July with a staggering 799 incidents reported, with finance, healthcare, and tech industries becoming prime targets for new gangs. The alarming increase marks the second-busiest month of the year so far, with the US leading the list of targeted countries.

Ransomware Attacks Spike 19% in July, Targeting Finance, Tech, and Healthcare
Ransomware attacks surged 19% in July, with 799 claimed incidents targeting key sectors like finance, tech, and healthcare. To stay safe, experts stress the importance of regular backups - and backups of those backups - to quickly restore systems and data in case of an attack.

UK Defense Industry Wrestles with Cultural Barriers to Private Investment
The UK's defense industry is poised for growth, with government and business leaders uniting to tackle cultural barriers and unlock private investment, sparking optimism for a collaborative solution. By drawing inspiration from the US experience, the UK can learn to move quickly and persist through challenges, while staying true to its unique strengths.

Ransomware gangs exploit victims' payments, extort again
Paying ransomware attackers doesn't always guarantee relief, with many victims being extorted again. A recent survey found 54% of organizations globally paid a ransom, yet it often doesn't end the attack.

Ex-Con Ransomware Negotiator Sentenced for BlackCat Attacks
A former ransomware negotiator, Angelo Martino, has been sentenced to 70 months in prison for his role in a string of BlackCat ransomware attacks that targeted multiple victims between 2023 and 2025. Martino's guilty plea brings to justice a key player in the notorious ALPHV ransomware gang.

Pakistan Bolsters Defence Spending Amid Currency Woes
Pakistan is ramping up its defence spending with a record PKR 3.0 trillion budget for 2026-27, a 17.65% increase from the previous year, which translates to around $10.76 billion USD. This significant boost comes as the country navigates economic challenges, including currency fluctuations.

Silent Ransom Group Escalates Tactics with In-Person IT Impersonation
The FBI warns that the notorious Silent Ransom Group is taking a more aggressive approach, impersonating IT staff in person to infiltrate corporate systems, targeting US law firms, insurance, finance, and healthcare companies since 2023. This new tactic marks a significant escalation from their previous remote trickery methods.

OpenAI Accelerates IPO Plans After Musk Lawsuit Dismissal
OpenAI is reportedly gearing up for a blockbuster IPO, with plans to confidentially file a draft prospectus as early as this week, amid rumors of a potential $1 trillion valuation. The move comes on the heels of a Musk lawsuit dismissal, clearing the way for the AI giant to accelerate its public debut plans.

Autonomous AI Agents Expose Hidden Vulnerabilities in Real-World Deployments
Researchers uncovered a shocking 91% of autonomous AI agent deployments are vulnerable to tool-chaining attacks, revealing a critical weakness in current governance approaches. This startling finding highlights the urgent need for updated security measures to protect AI systems in healthcare, finance, customer service, and software development.

Obsidian Plugin Abuse Enables PHANTOMPULSE RAT in Finance, Crypto Attacks
Beware of the notebook that's supposed to keep your secrets safe - researchers have discovered a sneaky new attack that uses Obsidian plugin abuse to slip a powerful Trojan into your system. This novel social engineering campaign targets finance and crypto sectors with a previously unknown RAT called PHANTOMPULSE.

Oracle EBS Must-Have Urgent Patch: Critical Risk
Britain’s NCSC is urging organisations to patch Oracle E-Business Suite immediately after the Clop ransomware gang was seen actively exploiting a critical flaw that could expose payroll, procurement and finance systems. If you run EBS, inventory your instances and apply the patch—or fast compensating controls—now to avoid disruption, data theft and costly ransom demands.

North Korean IT personas: Exclusive Risky Threat Revealed
You won’t believe it until you see it: Okta uncovered convincing fake North Korean IT personas applying, interviewing, and even landing roles across tech, healthcare, finance and AI—using hiring pipelines as a stealthy route for espionage and exploitation. The takeaway: identity is the new perimeter, and companies must tighten onboarding, vetting and access controls before attackers turn routine hiring into a backdoor.

SAP S/4HANA vulnerability: Critical Risky Threat
A critical SAP S/4HANA vulnerability (CVE-2025-42957) is already being exploited in the wild, turning routine patching into an urgent race. Inventory exposed systems, apply mitigations or patches now, and hunt for signs of compromise before attackers reach your finance and HR systems.

AI Cyber Challenge Winners Announced at DEFCON’s $4M Showdown
Exciting news from DEFCON! Team Atlanta has triumphed in the AI Cybersecurity Challenge, winning a whopping $4 million and showcasing groundbreaking AI solutions that promise to revolutionize our defenses against cyber threats. What does this victory mean for the future of cybersecurity?

Ransomware Statistics 2023: Trends in Attacks and Ransoms
As we dive into 2023, the surge in ransomware attacks is sending shockwaves through the digital landscape, with incidents skyrocketing over 50% compared to last year. This alarming trend not only threatens our personal data but poses a significant risk to businesses, as ransom demands now average a staggering $200,000—are we prepared to face this escalating crisis?

Hard-Coded Credentials: Stunning, Critical Threat
HPE Instant On access points were found to contain unchangeable, hard‑coded admin credentials (CVE‑2025‑37103, CVSS 9.8), a flaw that could let attackers bypass authentication and seize control. If you use these devices, inventory them, apply HPE’s patches, and tighten admin access immediately.

KEV Catalog: Exclusive Must-Have Warning on Risky Flaws
Heads-up: CISA just added four actively exploited vulnerabilities to the KEV Catalog — meaning attackers are using them in the wild. Prioritize patching, tighten controls, and monitor closely to close the window of opportunity before it’s too late.

Over 500 Spider Phishing Domains Ready to Target Various Industries
Discover over 500 spider phishing domains poised to target diverse industries, highlighting the urgent need for enhanced cybersecurity measures.

New CitrixBleed 2 Vulnerability Exploited, Echoes of Previous CitrixBleed Issues
New CitrixBleed 2 vulnerability exploited, reminiscent of earlier CitrixBleed issues, raising concerns over data security and system integrity.

Where AI Provides Value
Discover how AI adds value by automating tasks, enhancing decision-making, and driving innovation across industries like finance, healthcare, and more.

Oman : Chinese groups’ partner in Oman prospects in Paris for geospatial intelligence and drones
Oman sees Chinese groups align with local prospects, targeting Paris for breakthroughs in geospatial intelligence and advanced drone technology.

Advanced AI Suffers Complete Accuracy Breakdown When Tackling Complex Challenges
Uncover how advanced AI faces a complete accuracy breakdown when addressing complex challenges, revealing vulnerabilities and sparking new innovations.

Over 70 Organizations Across Multiple Sectors Targeted by China-Linked Cyber Espionage Group
China-linked cyber espionage group infiltrates over 70 organizations across diverse sectors using sophisticated tactics to access sensitive data.