Two former Air Force members sentenced for BEC scams and phishing
The duo stole victims' employee email credentials through spamming and phishing campaigns.
The duo stole victims' employee email credentials through spamming and phishing campaigns.
The platform aims to significantly reduce the time vulnerabilities and threats remain undetected on corporate networks, a concern amplified by recent warning...
The move addresses the significant size increase in post-quantum certificates, with new algorithms producing signatures of 2,420 bytes compared to the 64 byt...
RemoteThreat's platform is designed to simulate nation-state level attacks for Fortune 500 organizations and provide government operators with tools to targe...
The startup's platform aims to solve a blind spot in identity security: AI agents often operate under employee credentials, making their actions indistinguis...
Microsoft observed phishing campaigns that abused MSP360 RMM to deploy ScreenConnect, creating redundant remote-access channels for follow-on activity The po...
Mandiant researchers said dozens of organizations have been impacted by attacks attributed to advanced and suspected state-sponsored threat groups. They expe...
Custom variants of OpenAI's ChatGPT promoted in sponsored Google results are directing unsuspecting users to malicious sites that use ClickFix attacks to del...
The company plans to close the deal around the end of the year at which point Paragon will begin trading on Nasdaq under the REDLattice umbrella.
An attacker used stolen passwords of staff at France's tax administration to take tax data on hundreds of thousands of taxpayers and businesses in June and J...
The Dutch Institute for Vulnerability Disclosure (DIVD) suffered an AI-driven cyberattack that the organization described as "loud and very, very messy." [.
The arrest of a 24-year-old man in Amsterdam, which occurred a week before ShinyHunters hacked the FBI, marks a major turning point for law enforcement’s pus...
Since January 2026, Microsoft has observed Russian state threat actor Star Blizzard evolve their detection evasion capabilities through large-scale phishing ...
The company said it found and patched a previously unknown critical vulnerability in one product during the weekend shutdown, and has no indication it was ex...
The ransomware attack, which occurred in the early hours of Saturday, September 26, 2026, appears to have primarily affected Keio's hospitality business, inc...
AWS AgentCore SDK flaws could let attackers run commands in AI sandboxes and reach AWS credentials
Security researchers have disclosed a high-severity vulnerability in Anthropic’s Model Context Protocol (MCP) Python SDK. This flaw could allow a malicious M...
We’re building CryptoLabe, an internal AI-powered tool that discovers cryptography across our codebase, surfaces dependencies, and helps us progress toward a...