The U.K. National Cyber Security Centre on Wednesday published six cybersecurity culture principles developed through extensive research with... The post UK NCSC unveils cybersecurity culture...
Honeywell disclosed that 1,929 ransomware attacks were publicly documented, with 71 percent of attacks occurring in eight verticals,... The post Honeywell Community Intelligence reveals ransomware...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued Internet Exposure Reduction Guidance to help organizations address overlooked... The post CISA’s Internet Exposure Reduction...
Cellebrite said the deal will help with the "accelerated identification of mobile vulnerabilities and exploits."
Cofense Intelligence uncovers a surge in ClickFix email scams impersonating Booking.com, delivering RATs and info-stealers. Learn how these…
At Infosecurity Europe 2025, Axonius’ Jon Ridyard proposed seven best practices to build mature vulnerability management processes
SQL Injection vulnerability (CVE-2025-4568) has been found in 2ClickPortal software.
Cisco has released security patches to address a critical security flaw impacting the Identity Services Engine (ISE) that, if successfully exploited, could allow unauthenticated actors to carry...
As data breaches rise and public trust flickers, Australia has taken a bold step in reforming its Privacy Act, marking one of the significant regulatory shifts in the region’s digital history. To...
Kaspersky ICS CERT experts managed to find and analyze the malware and utilities most probably used by the actors. The key finding was a previously unknown backdoor.
Designing a security-focused Windows Service? Learn more from ThreatLocker about the core components for real-time monitoring, threat detection, and system hardening to defend against malware and...
Designing a security-focused Windows Service? Learn more from ThreatLocker about the core components for real-time monitoring, threat detection, and system hardening to defend against malware and...
Cisco Talos observed a destructive attack on a critical infrastructure entity within Ukraine, using a previously unknown wiper we are calling “PathWiper.”
The report presents statistics for Windows, macOS, IoT, and other threats, including ransomware, miners, local and web-based threats, for Q1 2025.
The number of attacks on mobile devices involving malware, adware, or unwanted apps saw a significant increase in the first quarter.
On Christmas Day in 2014 hackers knocked out the Xbox and PlayStation gaming networks, impacting how video game companies handled cybersecurity for years.
Extensions analyzed expose information such as browsing domains, machine IDs, OS details, usage analytics, and more.
API keys, secrets, and tokens commonly left exposed in browser extensions’ code.
ESET researchers analyzed a cyberespionage campaign conducted by BladedFeline, an Iran-aligned APT group with likely ties to OilRig
Endpoint and network security is still essential, even as malicious actors turn to supply chains, identities and AI
The German data protection authority (BfDI) has fined Vodafone GmbH, the telecommunications company's German subsidiary, €45 million ($51.4 million) for privacy and security violations. [...]
2025-05-27 • AIVD • AIVD Open article on Malpedia
Two members of a group of cybercriminals named ViLE were sentenced this week for hacking into a federal law enforcement web portal in an extortion scheme. [...]
The Interlock ransomware gang has claimed a recent cyberattack on the Kettering Health healthcare network and leaked data allegedly stolen from breached systems. [...]
The U.S. Department of State has announced a reward of up to $10 million for any information on government-sponsored hackers with ties to the RedLine infostealer malware operation and its...
University spokesperson says Genevieve Bell’s account had ‘liked’ posts she had never seen before about Julie Bishop and GazaGet our breaking news email, free app or daily news podcastThe...
New research from Censys identified that nearly 400 web-based Human Machine Interfaces (HMIs) connected to U.S. water facilities... The post About 400 exposed web-based US water facility...
SIEM software solutions give organizations a centralized view of their digital environments, enabling them to detect anomalies, investigate incidents and respond to threats.
These days, one of my favourite hobbies is complaining about Suricata. In this blog, I’m going to talk about some of the weirdness in Suricata when processing URL-encoded data! I’m gonna go into...
After three years of peddling stolen data, BidenCash, one of the web's most brazen cybercrime hubs is offline, and authorities say they're just getting started.