2026-01-29 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
SOAPHound's LDAP query (!soaphound=*) never appears in Event 1644 logs, but it transforms into (! (FALSE)) through LDAP optimization. Understanding this transformation reveals a unique detection signature that most defenders have never seen.
P0
2026-01-28 09:59 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
ESET researchers discover an Android spyware campaign targeting users in Pakistan via romance scam tactics, revealing links to a broader spy operation
P0
2026-01-27 17:35 UTC
Other
Black Lantern Security · TheTechromancer · indexed 2026-09-07 17:30 UTC
An overhaul of BBOT's cloud detection
P0
2026-01-27 16:59 UTC
Vendor Research
Google Online Security Blog · Edward Fernandez · indexed 2026-08-15 14:33 UTC
Posted by Nataliya Stanetsky, Fabricio Ferracioli, Elliot Sisteron, Irene Ang of the Android Security Team Phone theft is more than just losing a device; it's a form of financial fraud that can leave you suddenly vulnerable to personal data and financial theft. That’s why we're committed to providing multi-layered defenses that help protect you before, during, and after a theft attempt. Today, we're announcing a powerful set of theft protection feature updates that build on our existing protect…
P0
2026-01-27 12:00 UTC
Government
NIST Cybersecurity Insights · Ellen Nadeau, Meghan Anderson, Nakia Grayson, Diane Wertime · indexed 2026-08-15 20:45 UTC
Grab your party hats – it’s Data Privacy Week! Data Privacy Week is a global initiative led by the National Cybersecurity Alliance to spread awareness about online privacy and empower individuals and businesses to respect privacy, safeguard data, and enable trust. In celebration of this week, the NIST Privacy Engineering Program is reflecting on recent work and looking ahead to what’s coming in the new year. Throughout 2026, we plan to continue collaborating with our privacy stakeholder communi…
P0
2026-01-27 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Has your inbox recently been deluged with unwanted and even outright malicious messages? Here are 10 possible reasons – and how to stem the tide.
P0
2026-01-27 09:37 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Reconfigure multi-cloud security with the newly launched Group-IB Cloud Security Posture Management (CSPM)
P0
2026-01-23 16:58 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The attack involved data-wiping malware that ESET researchers have now analyzed and named DynoWiper
P0
2026-01-23 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
As children turn to AI chatbots for answers, advice, and companionship, questions emerge about their safety, privacy, and emotional development
P0
2026-01-22 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
SmarterMail versions prior to Build 9511 are vulnerable to privileged account takeover and remote code execution. Learn more about the latest Huntress DE&TH Team’s findings.
P15
2026-01-22 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Here’s how the most common scams targeting Apple Pay users work and what you can do to stay one step ahead
P0
2026-01-21 06:56 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
A deep dive into loan phishing scams in Peru and Latin America. Discover how scammers lure victims with fake loan offers, harvest sensitive banking credentials, and leverage advanced scripts to maximize fraud at scale.
P0
2026-01-21 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Vertical-specific construction applications face unique risks. Hacked apps stem from flaws in the software or its components, expanding the jobsite attack surface.
P0
2026-01-20 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Once again, data shows an uncomfortable truth: the habit of choosing eminently hackable passwords is alive and well
P0
2026-01-20 06:27 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
P0
2026-01-20 06:12 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
P0
2026-01-20 05:59 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
P0
2026-01-16 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
The business social networking site is a vast, publicly accessible database of corporate information. Don’t believe everyone on the site is who they say they are.
P0
2026-01-16 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Fake ad blocker crashes your browser, then offers a "fix." Go inside KongTuke's CrashFix campaign, from malicious extension to ModeloRAT for VIP targets.
P0
2026-01-15 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
While investigating LDAP filters and attributes, I completely missed "SDFlags" in my Event 1644 logs. When I finally noticed it, the investigation led to nTSecurityDescriptor, attack path discovery, and a high-confidence detection signature.
P0
2026-01-15 06:07 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
This blog uncovers DeadLock’s stealthy usage of Polygon smart contracts for proxy address storage, a poorly-documented and under-reported technique that Group-IB analysts have observed increased usage in the wild. Variants of this technique are very wide and offer great alternatives to threat actors for bypassing traditional defenses by abusing decentralized blockchains available worldwide.
P35
2026-01-14 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Should verified identities become the standard online? Australia’s social media ban for under-16s shows why the question matters.
P0
2026-01-13 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
If your data is on the dark web, it’s probably only a matter of time before it’s abused for fraud or account hijacking. Here’s what to do.
P0
2026-01-13 06:39 UTC
Other
Red Hunt Labs · Lohit · indexed 2026-09-07 17:30 UTC
Modern payment integrations are fast, flexible, and increasingly complex. APIs talk to gateways, webhooks trigger state changes, third parties handle fraud, retries, refunds, and orchestration layers quietly sit in between. In most teams, the signal that things are “working” is simple: transactions go through. That signal is misleading. At RedHunt Labs, we found that the real-world payment pentests reveal the common mistake of treating PCI DSS as a finish line instead of a baseline. This blog r…
P0
2026-01-13 06:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress researchers weigh in on the challenge of getting feature parity across Windows, macOS, and Linux. And learn how unique security models and platform maturity shape the way products are built.
P0
2026-01-12 08:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress outlines 2025 AI attack speed with automated scripts, but adversaries use familiar tradecraft. Detection and hygiene remain decisive.
P0
2026-01-08 10:00 UTC
Other
ESET · indexed 2026-09-07 17:30 UTC
Reusing passwords may feel like a harmless shortcut – until a single breach opens the door to multiple accounts
P0
2026-01-07 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress outlines a complex, multi-step attack designed to break out of guest VMs and target the ESXi hypervisor, using potential zero-day vulnerabilities and sneaky VSOCK communication.
P45
2026-01-07 12:00 UTC
Government
NIST Cybersecurity Insights · Bill Fisher, Ryan Galluzzo, Heather Flanagan · indexed 2026-08-15 20:45 UTC
Understanding mDL credential formats Standards in the VDC Ecosystem In our first blog post in this series, we highlighted that VDCs can represent a wide range of credentials, from a driver’s license to a diploma to proof of age. The ability to use VDCs in a wide variety of use cases is a major reason why many are looking at the VDC ecosystem as technology that can change how we present identity and attributes (both in person and online). While credential variety is a good thing, interoperabilit…
P0
2026-01-07 07:00 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB researchers detail the inner workings of Chinese tap-to-pay schemes on Telegram and examine the NFC-enabled Android apps fraudsters are using to steal money from victim’s bank cards and mobile wallets remotely.
P0