LIVE Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access LIVE Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2 LIVE Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes LIVE MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics LIVE China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing LIVE ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members LIVE Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes LIVE Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign LIVE Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access LIVE Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2 LIVE Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes LIVE MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics LIVE China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing LIVE ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members LIVE Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes LIVE Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign

News

News

CrowdStrike Is ‘Cybersecurity's Infrastructure Layer’ For AI Era: CEO George Kurtz

CrowdStrike reports strong AI security demand as Falcon AIDR growth accelerates, Falcon Flex ARR reaches $2.29 billion, and Q2 revenue rises 26%.

By Rahul Yadav · · 2 min read Read →
News

Nimbus Manticore Expands Toolset With TWOSTROKE-Like Backdoor and SSH Tunneler

Group-IB uncovers new Nimbus Manticore malware and infrastructure, including an SSH tunneling tool and C++ backdoor targeting organizations across

By Rahul Yadav · · 3 min read Read →
News

FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations

U.S. authorities disrupt QScan and QTRouter, hacking platforms linked to China-backed QTFY that used compromised IoT devices and proxy networks to target

By Rahul Yadav · · 4 min read Read →
News

Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code

Kaltura HTML5 player vulnerabilities CVE-2026-19912 and CVE-2026-19913 allow unauthenticated attackers to read sensitive files and execute code remotely.

By Rahul Yadav · · 2 min read Read →
News

CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing

CISA's “A Tale of Two SOCs” red team assessment reveals how two critical infrastructure organizations faced similar attacks but achieved

By Rahul Yadav · · 9 min read Read →
News

NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions

NovaCookies is a $320/month phishing-as-a-service toolkit targeting Microsoft 365 users with adversary-in-the-middle attacks

By Rahul Yadav · · 7 min read Read →
News

Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot

Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot

By Rahul Yadav · · 5 min read Read →
News

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

By Rahul Yadav · · 8 min read Read →
News

TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

TikTok will pay $400 million to settle a U.S. lawsuit over alleged violations of children’s privacy laws, including COPPA violations and improper

By Rahul Yadav · · 4 min read Read →
News

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

Kaspersky discovers new malware targeting Android car head units through compromised firmware update mechanisms, linking the campaign to the

By Rahul Yadav · · 7 min read Read →
News

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

14 trojanized npm packages are delivering RedC2 4.0's RedShell Linux backdoor through malicious module loading, combining software supply-chain attacks with an

By Rahul Yadav · · 5 min read Read →
News

Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot

Check Point Research reveals BTR Reforged, a technique abusing Microsoft Defender's signed BTR.sys driver for kernel-level file and registry

By Rahul Yadav · · 8 min read Read →