CrowdStrike Is ‘Cybersecurity's Infrastructure Layer’ For AI Era: CEO George Kurtz
CrowdStrike reports strong AI security demand as Falcon AIDR growth accelerates, Falcon Flex ARR reaches $2.29 billion, and Q2 revenue rises 26%.
Nimbus Manticore Expands Toolset With TWOSTROKE-Like Backdoor and SSH Tunneler
Group-IB uncovers new Nimbus Manticore malware and infrastructure, including an SSH tunneling tool and C++ backdoor targeting organizations across
FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations
U.S. authorities disrupt QScan and QTRouter, hacking platforms linked to China-backed QTFY that used compromised IoT devices and proxy networks to target
Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code
Kaltura HTML5 player vulnerabilities CVE-2026-19912 and CVE-2026-19913 allow unauthenticated attackers to read sensitive files and execute code remotely.
CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing
CISA's “A Tale of Two SOCs” red team assessment reveals how two critical infrastructure organizations faced similar attacks but achieved
NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions
NovaCookies is a $320/month phishing-as-a-service toolkit targeting Microsoft 365 users with adversary-in-the-middle attacks
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit
TikTok will pay $400 million to settle a U.S. lawsuit over alleged violations of children’s privacy laws, including COPPA violations and improper
Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
Kaspersky discovers new malware targeting Android car head units through compromised firmware update mechanisms, linking the campaign to the
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
14 trojanized npm packages are delivering RedC2 4.0's RedShell Linux backdoor through malicious module loading, combining software supply-chain attacks with an
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
Check Point Research reveals BTR Reforged, a technique abusing Microsoft Defender's signed BTR.sys driver for kernel-level file and registry