CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing
CISA's “A Tale of Two SOCs” red team assessment reveals how two critical infrastructure organizations faced similar attacks but achieved
Co-founder at Hacklido. Covers breaches, malware and threat intelligence.
CISA's “A Tale of Two SOCs” red team assessment reveals how two critical infrastructure organizations faced similar attacks but achieved
NovaCookies is a $320/month phishing-as-a-service toolkit targeting Microsoft 365 users with adversary-in-the-middle attacks
Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
TikTok will pay $400 million to settle a U.S. lawsuit over alleged violations of children’s privacy laws, including COPPA violations and improper
Kaspersky discovers new malware targeting Android car head units through compromised firmware update mechanisms, linking the campaign to the
14 trojanized npm packages are delivering RedC2 4.0's RedShell Linux backdoor through malicious module loading, combining software supply-chain attacks with an
Check Point Research reveals BTR Reforged, a technique abusing Microsoft Defender's signed BTR.sys driver for kernel-level file and registry
AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure
Three suspected Russian cyber espionage clusters, UNC6293, UNC7005, and UNC5976, are targeting academics, defense organizations,
Malicious Rust crates targeted the software supply chain through a compromised maintainer account and a typosquatted dependency.
A China-nexus cyber espionage campaign dubbed SilkParasite is targeting Central Asian governments with seven RAT families, including five newly documented