Gigabud Uses Android App Cloning to Evade Fraud Detection
Gigabud clones banking apps into a work profile to break the link between malware alerts and fraud
20 articles
Gigabud clones banking apps into a work profile to break the link between malware alerts and fraud
ClickFix campaign uses browser-injected JavaScript and Google Sheets to steal cryptocurrency
SpyCloud claims non-human identities are the most likely route into the enterprise
The update contained 119 critical flaws and two zero days, with security teams needing to prioritize updates
Onapsis urges SAP customers to patch “Overpass” vulnerability, which has a CVSS score of 10.
After a major cyber-attack targeted France's national tax authority, the Prime Minister called for the establishment of a new dedicated cyber incident respon...
Grindr settled UK claims over alleged unlawful processing of sensitive user data
Google warned that the rapid integration of AI-assisted coding tools has significantly expanded software supply chain risks
THost9 hides its payload and uses ADB to spread across exposed Android devices and containers
CloudSEK has uncovered BigBear 2.
Crypto wallet-maker Trezor says a data breach at supplier ShipMonk is far worse than originally thought
NCSC warns unapproved AI tools can expose corporate data and create new security risks
The vulnerability, CVE-2026-86218, was allocated a maximum-severity rating by the software provider itself
The ransomware group’s published dataset reportedly includes Berlin state employee data, as well as highly sensitive emergency plans
Sekoia and Kudelski Security have observed that North Korea's Lazarus umbrella is split into six distinct clusters, focused on espionage, financial theft and...
Several victims of a recent breach of driver’s license information have sued the company they believe responsible
A security researcher has posted a zero-day exploit in CrowdStrike which could allow hackers to escalate privileges
OpenAI has committed to subsidizing access to Daybreak, helping defenders deploy its AI models in its existing cybersecurity infrastructure
The G7 has published a call to action, urging governments to launch national strategies dedicated to the post-quantum encryption transition
Pegasus infected a Serbian student activist's iPhone through an iMessage zero-click exploit