US Federal Insurance Regulator Confirms Data Breach Via Oracle Flaw
An attacker has exploited a zero day in Oracle Peoplesoft to gain access to the IT systems of the NAIC, the standard-setting association for the US federal i...
20 articles
An attacker has exploited a zero day in Oracle Peoplesoft to gain access to the IT systems of the NAIC, the standard-setting association for the US federal i...
The UK Cyber Monitoring Centre reviews the Canvas breach affecting 160 UK universities, highlighting data theft risks and financial impacts of cyber incidents
A polite caller from your bank says there is a problem with your account. Don't worry - they'll send someone round to help.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of ATEN Unizon. Authentication is required to exploit this vul...
The White House Executive Order on securing the nation against advanced cryptographic attacks accelerates the mandatory timeline for post-quantum readiness. ...
Unit 42's analysis of ClawHub revealed evasive malicious skills bypassing automated scanners to deploy infostealers and execute agentic financial fraud. The ...
All US federal agencies will have to complete their post-quantum cryptography transition by 2031, according to a new Trump Executive Order
Cybercriminals launch fake GTA 6 pre-order sites offering early access for crypto payments
Someone is pretending to be your bank, your government, or your local planning office. And according to the FTC, they're making billions doing it.
A Rust crypto clipper hides behind fake GitHub stars and AI-narrated YouTube videos
GitBait phishing kit abuses GitHub Pages and the SheetBest API to steal Mexican banking credentials
Key Points Introduction In this research, we analyze a clipboard hijacker campaign that is hidden inside a collection of “solutions” and “tools” that claim t...
SANS Institute study finds few SOCs have built AI into defined workflows, despite widespread adoption
Rokarolla Android trojan steals banking logins and spies on victims while blocking fraud alerts
The FBI claims couriers are being used to circumvent bank transfers in crypto investment schemes
Domain of dark web money laundering platform AudiA6 seized and suspects arrested in joint operation by the FBI, Europol and others
MaaS trojan SilabRAT uses HVNC and browser cloning to hijack sessions and steal crypto
North Korean actor UNK_DeadDrop targeted developers with fake coding tasks to steal crypto
Lloyds Banking Group shared its approach for securing agentic AI workflows, with a mix of hands on experimentation and cross functional governance