Researchers flag flaw in Google’s AI coding assistant that allowed for ‘silent’ code exfiltrationCyberScoop·Jul 28, 20:26 UTC · Jul 28, 2025Exploit / PoC in the wild160
Chainalysis: $2.17 billion in crypto stolen in first half of 2025, driven by North Korean hacksThe Record·Jul 17, 12:00 UTC · Jul 17, 2025Threat actor57
Deconstructing RACF in z/OS and uncovering security issuesKaspersky Securelist·Jul 8, 10:00 UTC · Jul 8, 2025Vulnerability55
Carding in the Time of COVID: Illicit Antidetect Platforms vs. AntiRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Phishing & fraud30
How SITA Uses Threat Intelligence to Protect the Aviation IndustryRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability in the wild60
Paragon spyware found on the phones of Euro journosCyberScoop·Jun 12, 13:32 UTC · Jun 12, 2025Malware in the wild60
Cloud and AI drive efficiency, but open doors for attackersHelp Net Security·Jun 10, 00:00 UTC · Jun 10, 2025Vulnerability42
The Egg Yolk Principle: Human Sexuality Will Always Outsmart Prudish Algorithms and Hateful Politicians404 Media·Jun 3, 13:42 UTC · Jun 3, 2025Policy & legal30
Senators take another swing at vulnerability disclosure policy bill for federal contractorsCyberScoop·May 23, 18:49 UTC · May 23, 2025Vulnerability in the wild60
Redefining IABs: Impacts of compartmentalization on threat tracking and modelingCisco Talos·May 13, 10:00 UTC · May 13, 2025Ransomware60
Senators move to quash the use of Chinese AI system by federal contractorsCyberScoop·May 9, 18:33 UTC · May 9, 2025Exploit / PoC in the wild60
Beyond Vulnerability ManagementThe Hacker News·May 9, 16:51 UTC · May 9, 2025Vulnerability in the wild60
Pakistani Firm Shipped Fentanyl Analogs, Scams to USKrebs on Security·May 7, 22:58 UTC · May 7, 2025Phishing & fraud30
iOS and Android juice jacking defenses have been trivial to bypass for yearsArs Technica · Security·Apr 28, 11:00 UTC · Apr 28, 2025Research30
GOFFEE’s recent attacks: new tools and techniquesKaspersky Securelist·Apr 10, 10:00 UTC · Apr 10, 2025Vulnerability130
Legislative push for child online safety runs afoul of encryption advocates (again)CyberScoop·Mar 12, 21:48 UTC · Mar 12, 2025Malware30
Microsoft IDs developers behind alleged generative AI hacking-forCyberScoop·Feb 27, 18:30 UTC · Feb 27, 2025Exploit / PoC in the wild160
Lotus Blossom espionage group targets multiple industries with different versions of Sagerunex and hacking toolsCisco Talos·Feb 27, 11:00 UTC · Feb 27, 2025Threat actor57
Researchers warn of risks tied to abandoned cloud storage bucketsThe Record·Feb 5, 02:28 UTC · Feb 5, 2025Ransomware57
WhatsApp says it disrupted spyware campaign aimed at reporters, civil societyCyberScoop·Jan 31, 22:15 UTC · Jan 31, 2025Malware in the wild60
Apple chips can be hacked to leak secrets from Gmail, iCloud, and moreArs Technica · Security·Jan 28, 20:56 UTC · Jan 28, 2025Vulnerability55
Researchers say new attack could take down the European power gridArs Technica · Security·Jan 23, 12:00 UTC · Jan 23, 2025Policy & legal30
Cybercriminal marketplace Rydox seized in international law enforcement operationCyberScoop·Dec 12, 21:20 UTC · Dec 12, 2024Exploit / PoC in the wild60
Code found online exploits LogoFAIL to install Bootkitty Linux backdoorArs Technica · Security·Nov 29, 21:37 UTC · Nov 29, 2024Malware42
Consumer privacy risks of data aggregation: What should organizations do?Help Net Security·Nov 7, 00:00 UTC · Nov 7, 2024Data breach60
Alabama man arrested for role in SEC Twitter account hijackingCyberScoop·Oct 17, 19:33 UTC · Oct 17, 2024Policy & legal in the wild60
GitHub patches critical vulnerability in its Enterprise ServersCyberScoop·Oct 16, 20:24 UTC · Oct 16, 2024VulnerabilityCVE-2024-9487CVE-2024-4985CVE-2024-9539160
NSO Group indicates rare agreement with Apple over dismissal of lawsuitCyberScoop·Sep 30, 20:42 UTC · Sep 30, 2024Policy & legal in the wild60
How multiple vulnerabilities in Microsoft apps for macOS pave the way to stealing permissionsCisco Talos·Aug 19, 10:00 UTC · Aug 19, 2024VulnerabilityCVE-2024-42220CVE-2024-42004CVE-2024-39804+5 CVEs35
What MITRE ATT&CK techniques to detect first?Kaspersky Securelist·Jul 9, 13:00 UTC · Jul 9, 2024Industry30
Detecting and Preventing Malicious Domains Proactively with DNS SecurityPalo Alto Unit 42·Jun 6, 12:43 UTC · Jun 6, 2024Malware30
Finding Azurescape – Cross-Account Container Takeover in Azure Container InstancesPalo Alto Unit 42·Jun 6, 01:32 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2019-5736CVE-2018-1002102160
CNAME Cloaking: Disguising Third Parties Through the DNSPalo Alto Unit 42·Jun 5, 17:47 UTC · Jun 5, 2024Threat actor45
An AI Based Solution to Detecting the DoubleZero .NET WiperPalo Alto Unit 42·Jun 5, 17:25 UTC · Jun 5, 2024Malware55
Analyzing the vulnerability landscape in Q1 2024Kaspersky Securelist·May 7, 10:00 UTC · May 7, 2024VulnerabilityCVE-2023-38831CVE-2023-40477CVE-2023-28252160