2026-02-24 12:00 UTC
Government
NIST Cybersecurity Insights · Stephen Quinn · indexed 2026-08-15 20:45 UTC
Celebrate this milestone with us! Email us at csf [at] nist.gov (csf[at]nist[dot]gov) or tag @NISTcyber on X telling us what your favorite CSF 2.0 resource is (or how your organization has benefitted from implementing the CSF 2.0). Today marks two years since the publication of the Cybersecurity Framework (CSF) 2.0! Published in 2024, the CSF 2.0 included the addition of a Govern Function, increased emphasis on cybersecurity supply chain risk management, updated categories and subcategories to …
P0
2026-02-23 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Can you believe your ears? Increasingly, the answer is no. Here’s what’s at stake for your business, and how to beat the deepfakers.
P0
2026-02-20 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
AI-driven deception is the new reality in hiring. Explore key statistics on deepfakes and resume fraud, and learn data-informed strategies to solidify your defense.
P0
2026-02-20 10:09 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
MuddyWater APT has launched a new cyber offensive operation, dubbed Operation Olalampo, deploying new malware variants and leveraging Telegram bots for command-and-control. Analysis of the campaign provides a glimpse into the group’s post-exploitation tactics, which largely align with their historical operations.
P0
2026-02-19 17:00 UTC
Vendor Research
Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC
Posted by Vijaya Kaza, VP and GM, App & Ecosystem Trust The Android ecosystem is a thriving global community built on trust, giving billions of users the confidence to download the latest apps. In order to maintain that trust, we’re focused on ensuring that apps do not cause real-world harm, such as malware, financial fraud, hidden subscriptions, and privacy invasions. As bad actors leverage AI to change their tactics and launch increasingly sophisticated attacks, we’ve deepened our investments…
P0
2026-02-19 10:30 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
ESET researchers discover PromptSpy, the first known Android malware to abuse generative AI in its execution flow
P0
2026-02-19 10:29 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
It’s tax season in Indonesia and fraudsters are observed to be ramping up the fraud campaign involving fake Coretax apps, but behind it lies an industrialized MaaS infrastructure ready to strike anywhere.
P0
2026-02-19 07:21 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Like any other marketplace, the social commerce platform has its share of red flags. It pays to know what to look for so you can shop or sell without headaches.
P0
2026-02-19 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Uncover how attackers use App Domain Manager injection to run code inside trusted .NET apps by tweaking config files and bypassing application controls. Learn key strategies to detect and stop these attacks.
P0
2026-02-17 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
When it comes to our children’s digital lives, prohibition rarely works. It’s our responsibility to help them build a healthy relationship with tech.
P0
2026-02-16 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
ClickFix infection deploys Matanbuchus 3.0 loader and drops a new RAT that we’ve dubbed AstarionRAT. We break down the layers and the hands-on intrusion that followed.
P0
2026-02-12 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
When corporate data is exposed on a dedicated leak site, the consequences linger long after the attack fades from the news cycle
P15
2026-02-12 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Most Google Workspace breaches go undetected for weeks. See how attackers exploit misconfigured permissions and what to look for before it is too late.
P0
2026-02-11 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress uncovers ransomware operations abusing employee monitoring software and SimpleHelp RMM for persistence, and ransomware deployment.
P15
2026-02-10 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
It’s time to file your tax return. And cybercriminals are lurking to make an already stressful period even more edgy.
P0
2026-02-09 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Learn the latest endpoint security trends, from AI-powered defense to zero trust and human-led threat hunting that help under-resourced teams stop threats faster.
P0
2026-02-08 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress has observed active exploitation of a deserialization and remote code execution against the SolarWinds Web Help Desk software (CVE-2025-26399).
P20
2026-02-06 16:22 UTC
Other
Black Lantern Security · Micheal Reski · indexed 2026-09-07 17:30 UTC
Infor Syteline ERP
P5
2026-02-05 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress uncovers the mechanics of the Windows Projected File System. Explore the ProjFS driver, virtualization roots, and the PowerShell commands.
P0
2026-02-04 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress responded to a 2026 intrusion using compromised SonicWall VPN credentials and a revoked EnCase forensic driver to terminate EDR processes via BYOVD.
P0
2026-02-04 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The mobile marketplace app has a growing number of users, but not all of them are genuine. Watch out for these common scams.
P0
2026-02-04 07:11 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
ShadowSyndicate levels up by developing new tactics, establishing additional SSH fingerprints and involving more servers.
P0
2026-02-03 06:01 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
AI knows everything, but should we trust it blindly? Here’s where XAI becomes important, by helping to keep AI in check and maintaining transparency, trust, and a true risk picture in cybersecurity.
P0
2026-02-02 15:30 UTC
Government
CERT-EU Threat Intelligence · indexed 2026-08-15 18:50 UTC
Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.
P0
2026-02-02 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
It’s snow joke – sporting events are a big draw for cybercriminals. Make sure you’re not on the losing side by following these best practices.
P0
2026-02-02 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Deal with alert fatigue like a pro. Learn practical tips from Huntress' SOC on managing overwhelming alerts, preventing burnout, and focusing on real threats.
P0
2026-01-30 15:20 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The trends from January offer useful clues about the risks and priorities that security teams are likely to contend with throughout the year
P0
2026-01-30 10:28 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
ESET researchers present technical details on a recent data destruction incident affecting a company in Poland’s energy sector
P0
2026-01-30 09:09 UTC
Government
CERT-EU Security Advisories · indexed 2026-08-15 18:50 UTC
On 29 January 2026, Ivanti released a security advisory addressing two critical vulnerabilities in their EPMM products. An attacker could exploit those flaws to achieve unauthenticated remote code execution on the vulnerable device. One of these vulnerabilities have been exploited in a limited number of cases.
P15
2026-01-30 00:00 UTC
Government
CERT-FR Alerts · indexed 2026-09-07 17:35 UTC
[Mise à jour du 09 février 2026] Le 6 février 2026, Ivanti a mis à disposition des scripts RPM de détection d'indicateurs de compromission, à utiliser en fonction de la version d'EPMM installée. L'éditeur a également mis son guide d'analyse à jour (cf. section Documentation). [Mise à jour du 02...
P0