Russian tech firm attacked by Chinese state hackers in allied attack By Sead Fadilpašić published 17 October 25 The Chinese were apparently spying on Russians for almost half a year.
Black Basta ransomware gangs exploit patched Windows flaw to launch zero-day attacks By Sead Fadilpašić published 13 June 24 Cardinal abused an elevation of privilege vulnerability but failed to deploy the encryptor.
Top Android and iOS apps used by millions could shed unencrypted cloud logins By Sead Fadilpašić published 23 October 24 Almost a dozen popular apps kept hardcoded AWS and Azure cloud credentials.
China government-linked hackers caught running a seriously dangerous ransomware scam By Sead Fadilpašić published 14 February 25 State-sponsored threat actors rarely engage in ransomware attacks, so why now?
Russian hackers hit military mission in Ukraine with info-stealing malware on external drives By Sead Fadilpašić published 11 April 25 GammaSteel infostealer found on infected devices belonging to a Western military operation in Ukraine.
Fog ransomware attacks use employee monitoring tool to break into business networks By Sead Fadilpašić published 13 June 25 The ransomware group was also seen using open source tools in a bid to stay undetected.
Norton launches new small business protection package for Windows, Mac, Android, and iOS By Benedict Collins published 22 November 24 Norton has launched its Small Business Premium, offering antivirus, firewall, 24/7 expertise, and much more.
Microsoft Graph is becoming a popular target for hackers By Sead Fadilpašić published 6 May 24 Multiple groups used Microsoft Graph API to hide malware communications in plain sight over the past two years.
Chinese hackers target Mac users with boosted Macma malware By Sead Fadilpašić published 25 July 24 Daggerfly updates Macma to target non-govs in China, and commercial firms in Taiwan.
Another devious antivirus killer tool has been found - so make sure you're protected By Sead Fadilpašić published 15 August 25 AV-killing tools are gaining popularity but there are ways to mitigate the threat.
Ransomware attacks are soaring to a new high By Ellen Jennings-Trace published 13 September 24 Cyberattacks continue to snare ransomware victims at record levels.
Norton wants to protect small businesses (and influencers) with dark web and social media monitoring By Efosa Udinmwen published 11 September 25 Norton expands monitoring to fight rising data breaches and scams, but small businesses must act fast to benefit from alerts.
Norton boosts AI scam protection tools for all users By Sead Fadilpašić, Sead Fadilpašić published 24 February 25 AI-powered scam protection is being built directly into Norton plans and covers texts, emails, web, and more.
VMware launches new VeloCloud SASE to help tie together all your edge infrastructure By Mike Moore published 27 February 24 MWC 2024: Secured by Symantec, VMware turns to classic VeloCloud brand for new SASE offering.
SonicWall warns of fake VPN apps stealing user logins and putting businesses at risk - here's what we know By Benedict Collins published 25 June 25 SonicWall has issued an advisory after spotting spoofed VPN clients that steal configurations and credentials.
Lotus Panda hits unnamed government with bespoke hacking tools and malware By Sead Fadilpašić published 22 April 25 The infamous Chinese group used brand new tools to hit multiple victims in Southeast Asia
Hackers are tricking victims into scam-yourself attacks with fake tutorials, CAPTCHAs, and updates By Efosa Udinmwen published 25 December 24 Report uncovers rising cyber threats with alarming increases in ransomware, data-stealing malware, and sophisticated social engineering tactics.
Over a million critical severity records exposed in Q1 2025 alone - make sure you're not at risk By Ellen Jennings-Trace published 30 May 25 Gen Threat Report reveals concerning cybersecurity findings, particularly when it comes to leaked data.
North Korean hackers have some deious new Linux backdoor attacks to target victims By Sead Fadilpašić published 17 May 24 Researchers find Gomir to be a copy of GoBear, an earlier Windows-based backdoor.
Ransomware hackers target a new Windows security flaw to hit businesses By Sead Fadilpašić published 8 May 25 A zero-day in Windows Common Log File System was being used to drop encryptors and backoors.
Patch your Bitdefender and Trend Micro security software immediately to stay safe from these threats By Ellen Jennings-Trace published 22 October 24 Bitdefender Total Security users are advised to be using the newest version of the software to catch vulnerabilities.
Thousands of SonicWall VPN devices are facing worrying security threats By Sead Fadilpašić published 18 December 24 Many SonicWall VPNs are running outdated and vulnerable software versions.
Antivirus updates hijacked to drop dangerous malware By Sead Fadilpašić published 24 April 24 Malware discovered hiding in virus database updates by Avast researchers.
Watch out - that antivirus website could be a fake, and infecting your PC with malware By Sead Fadilpašić published 28 May 25 Researchers find a malicious site impersonating popular antivirus software.
Experts warn Gladinet file sharing tool flaw prompts dangerous cyberattacks - and there's no patch By Sead Fadilpašić published 13 October 25 Gladinet CentreStack and Triofox are carrying a flaw that enables RCE, but a mitigation is available.
Fake VPN checker tool lets hackers bypass antivirus protections By Sead Fadilpašić published 9 October 25 Hackers are mixing cache smuggling with identity theft and phishing to bypass protections and deploy malware.
Hackers hijacked antivirus features to install malware - here's what we know By Sead Fadilpašić, Sead Fadilpašić published 12 November 25 Gladinet Triofox was abused to deploy remote desktop tools and achieve lateral movement capabilities.
Is your antivirus "good enough"? New survey shows more and more are paying for protection — but many of us just don't seem to care By Benedict Collins published 3 July 24 American antivirus habits survey finds almost half use a third-party service.
Another serious Ivanti vulnerability has been found under attack, so update now By Sead Fadilpašić published 6 February 24 Ivanti can't seem to catch a break after CISA orders government agencies to temporarily disconnect the VPNs.
These vulnerabilities in Apache HTTP Server enable HTTP Request Smuggling and SSL Authentication Bypass, posing severe threats to organizations worldwide By Efosa Udinmwen published 7 October 24 Protect your systems by patching Apache HTTP Server and reviewing configurations immediately.