SOC and CTI teams spend a significant part of their day maintaining context that should already be there. The assets they monitor, the technologies they protect, the threat actors they track, this...
A view of the H1 2026 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts.
For many years, we’ve released an annual artwork. These are always hand crafted by our people or an artist. Here is this year’s piece and the story behind it. This year’s artwork was created by...
What HappenedOfficers from the City of London Police’s Dedicated Card and Payment Crime Unit (DCPCU) secured the conviction of a man who used an SMS Blaster device to send fraudulent text messages...
The real AI threat isn't frontier models. It's cheap local models getting easier to run. Here's why CISOs should build defensive agents now, before attackers scale.
Datadog Security Labs identified multiple coordinated campaigns abusing the GitHub API to systematically enumerate organizations, repositories, users, and software development activity at scale....
Along with other telemetry, Windows GDID makes online activity more traceable
Along with other telemetry, Windows GDID makes online activity more traceable
A new Android malware operation called RedWing is being rented out on Telegram as a ready-made bank-fraud service. It lets even low-skill criminals take over a victim's phone, steal their banking...
A critical flaw in Google's Dialogflow CX could have let an attacker with edit rights on one Code Block-enabled agent compromise other Code Block-enabled agents in the same Google Cloud project....
A cybercrime campaign combined a loader-as-a-service framework and DLL sideloading via a Go-compiled fake MpClient.dll, a novel evasion layer combination. The post Vidar Stealer Unmasked: Code...
Authorities didn’t name the man or file formal charges, but accuse him of participating in attacks linked to Cyber Army of Russia Reborn and NoName. The post Spain arrests suspected hacker linked...
Per usual, there's no fix - or even any documentation - for GitLost
A Microsoft 365 device code phishing campaign has been observed leveraging collaboration-themed lures to take control of victim accounts between the last week of June 2026 and into early July, per...
Google Chrome security advisory (AV26-669)
HPE security advisory (AV26-668)
A public issue can trick GitHub Agentic Workflows into leaking the contents of an organization's private repositories, researchers at Noma Security have shown. The attacker needs only to open a...
Dog-eat-dog world for credential-stealing attackers
U.S. prosecutors linked an alleged Scattered Spider hacker to a break-in at a luxury jewelry retailer using a persistent Windows device ID, according to a newly unsealed federal complaint....
Cybersecurity researchers have disclosed details of a now-patched critical session isolation vulnerability in Writer, an enterprise generative artificial intelligence (AI) platform, that could...
How targeted isolation prevents contagion in an interconnected world
Greek lawsuit comes as rights campaigners lobby the EU to take firmer stance on spyware abuses
Software supply chain security was hard enough. Then AI joined the build pipeline. For five years, "software supply chain security" meant one question: what's in your code? Which open-source...
Zimbra security advisory (AV26-667)
Samsung mobile security advisory (AV26-665)
Django security advisory (AV26-666)
Android security advisory – July 2026 monthly rollup (AV26-662)
Broadcom VMware security advisory (AV26-663)
[Control systems] ABB security advisory (AV26-664)
Majority report AI-related security incidents or vulnerabilities