2025-06-16 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Manage human risk by turning real-world incidents into teachable moments with Behavior-Based Assignments. This new feature integrates with Managed EDR and Managed ITDR to provide targeted security awareness training.
P0
2025-06-13 16:03 UTC
Vendor Research
Google Online Security Blog · Kimberly Samra · indexed 2026-08-15 14:33 UTC
Posted by Adam Gavish, Google GenAI Security TeamWith the rapid adoption of generative AI, a new wave of threats is emerging across the industry with the aim of manipulating the AI systems themselves. One such emerging attack vector is indirect prompt injections. Unlike direct prompt injections, where an attacker directly inputs malicious commands into a prompt, indirect prompt injections involve hidden malicious instructions within external data sources. These may include emails, documents, or…
P0
2025-06-13 13:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Uncover top cybercrime trends, data breaches, and essential workforce insights to bolster your defenses with this comprehensive roundup of cybersecurity statistics.
P0
2025-06-12 12:00 UTC
Government
NIST Cybersecurity Insights · Karen Wetzel · indexed 2026-08-15 20:45 UTC
The NICE Workforce Framework for Cybersecurity ( NICE Framework) was revised in November 2020 as NIST Special Publication 800-181 rev.1 to enable more effective and rapid updates to the NICE Framework Components, including how the advent of emerging technologies would impact cybersecurity work. NICE has been actively engaging in conversations with: federal departments and agencies; industry; education, training, and certification providers; and international representatives to understand how Ar…
P0
2025-06-11 16:25 UTC
Other
Black Lantern Security · Jack Pas · indexed 2026-09-07 17:30 UTC
Discovery and Exploitation of two Zero Days from the perspective of a first year Penetration Tester.
P0
2025-06-11 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Enhance Mac security with Huntress Managed EDR's new coverage for Apple XProtect and Microsoft Defender for Endpoint. Learn how we can protect your macOS.
P0
2025-06-10 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Boost employee security awareness with Threat Simulator from Huntress Managed SAT. It features hands-on training, game-like sessions, and real results. Start your free trial today.
P0
2025-06-05 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Don’t underestimate basic attacker tradecraft tactics. Learn how common cybersecurity tradecraft succeeds and get practical tips from the Huntress SOC to shut it down.
P0
2025-06-05 00:00 UTC
Government
CERT-FR Alerts · indexed 2026-09-07 17:35 UTC
[Mise à jour du 06 juin 2025] Une preuve de concept est publiquement disponible. [Publication initiale] Le 01 juin 2025, Roundcube a publié des correctifs concernant une vulnérabilité critique affectant son portail de messagerie ainsi que tous les produits l'incluant (par exemple cPanel et...
P0
2025-06-03 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Cybercriminals are sitting on a pile of stolen credentials, financial information, and sensitive data, thanks to the success of infostealers. Read more to learn how infostealers have grown to become a scourge to defenders, and how businesses can protect themselves.
P0
2025-05-27 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
An intrusion at a market research company used living-off-the-land techniques, but Huntress detected and mitigated the threat, uncovering tactics like service creation and registry manipulation. Learn more and get detection guidance and mitigation strategies.
P0
2025-05-23 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
"defendnot" bypasses Windows Defender using undocumented APIs. Learn detection strategies and robust defenses against this sophisticated evasion technique.
P0
2025-05-22 12:00 UTC
Government
NIST Cybersecurity Insights · Katerina Megas, Victoria Yan Pillitteri · indexed 2026-08-15 20:45 UTC
What is NIST up to? On April 3, 2025, NIST hosted a Cybersecurity and AI Profile Workshop at our National Cybersecurity Center of Excellence (NCCoE) to hear feedback on our concept paper which presented opportunities to create profiles of the NIST Cybersecurity Framework (CSF) and the NIST AI Risk Management Framework (AI RMF). These would serve to support the cybersecurity community as they adopt AI for cybersecurity, need to defend against AI-enabled cybersecurity attacks, as well as protect …
P0
2025-05-22 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
A remote prompt injection vulnerability in GitLab Duo allowed attackers to steal source code from private projects, manipulate code suggestions, and exfiltrate confidential information. The attack chain involved hidden prompts, HTML injection, and exploitation of Duo's access to private data. GitLab has since patched both the HTML and prompt injection vectors.
P0
2025-05-20 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Why Huntress’ 2025 Managed ITDR Report should be required reading for every security team.
P0
2025-05-19 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
AWS's Account Assessment for AWS Organizations tool, designed to audit cross-account access, inadvertently introduced privilege escalation risks due to flawed deployment instructions. Customers were encouraged to deploy the tool in lower-sensitivity accounts, creating risky trust paths from insecure environments into highly sensitive ones. This could allow attackers to pivot from compromised development accounts into production and management accounts.
P10
2025-05-15 07:47 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Uncover how cybercriminals in Colombia impersonate financial brands and exploit public data to craft convincing vehicle insurance scams.
P0
2025-05-15 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Break down how a ransomware attack works. Why ransomware is on the side, and how Huntress helps you stay protected.
P15
2025-05-14 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Get to know Huntress' new client-side API for EDR, which enables real-time agent health checks and simplifies endpoint management. With instant “healthy” or “unhealthy” status updates, you can ensure your security is running smoothly.
P0
2025-05-14 00:00 UTC
Government
CERT-FR Alerts · indexed 2026-09-07 17:35 UTC
[Mise à jour du 15 mai 2025] Une preuve de concept est publiquement disponible sur Internet. [Publication initiale] Le 13 mai 2025, Ivanti a publié deux avis de sécurité concernant les vulnérabilités CVE-2025-4427 et CVE-2025-4428. L'utilisation combinée de ces deux vulnérabilités permet...
P5
2025-05-13 12:00 UTC
Government
NIST Cybersecurity Insights · Katerina Megas, Michael Fagan · indexed 2026-08-15 20:45 UTC
The Background…and NIST’s Plan for Improving IoT Cybersecurity The passage of the Internet of Things (IoT) Cybersecurity Improvement Act in 2020 marked a pivotal step in enhancing the cybersecurity of IoT products. Recognizing the increasing internet connectivity of physical devices, this legislation tasked NIST with developing cybersecurity guidelines to manage and secure IoT effectively. As an early building block, we developed NIST IR 8259, Foundational Cybersecurity Activities for IoT Devic…
P0
2025-05-13 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
During ransomware attacks, the average time-to-ransom for attackers is almost 17 hours. Learn more about what this means for businesses.
P15
2025-05-13 00:00 UTC
Government
CERT-FR Alerts · indexed 2026-09-07 17:35 UTC
Le 13 mai 2025, Fortinet a publié un avis de sécurité concernant la vulnérabilité CVE-2025-32756. Celle-ci permet à un attaquant non authentifié d'exécuter du code arbitraire à distance. L'éditeur indique que cette vulnérabilité est activement exploitée. Les exploitations constatées jusqu'ici...
P5
2025-05-10 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Security advisories were issued for FreeRTOS and coreSNTP releases containing unintended scripts that could potentially transmit AWS credentials if executed on Linux/macOS. Affected releases have been removed and users are advised to rotate credentials and delete downloaded copies.
P0
2025-05-09 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress has verified that attackers are exploiting flaws in Samsung MagicINFO 9 Server (version 21.1050.0). Understand why MagicINFO 9 Server shouldn’t be internet-facing until a patch is available and applied.
P0
2025-05-08 07:13 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Learn how attackers exploit Pluggable Authentication Modules (PAM) for credential harvesting—and discover defenses to harden Linux authentication.
P0
2025-05-08 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Autonomous system numbers are like the address book of the internet, and not every IP address belongs to a “friendly” address. Learn more about how the Huntress Hunt & Response teams utilize ASNs.
P0
2025-05-07 12:00 UTC
Government
UK NCSC Threat Reports · indexed 2026-08-15 18:50 UTC
An NCSC assessment highlighting the impacts on cyber threat from AI developments between now and 2027.
P0
2025-05-07 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress has verified Samsung’s MagicINFO 9 Server (version 21.1050.0) is vulnerable to a publicly available proof-of-concept (PoC). Understand why MagicINFO 9 Server shouldn’t be internet-facing until a patch is applied.
P0
2025-05-06 05:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Across the larger cybersecurity community, an often-used adage is that “threat actors always change their tactics.” However, when we really start to look at and track incident data, we begin to see that while some changes may be necessitated based on infrastructures and other challenges the threat actor may encounter, there are times when tactics remain consistent across incidents. Recent investigations into exploitation activity for CVE-2025-31151 and CVE-2025-30406 show similar TTPs across di…
P5