Iranian Hackers Repurpose IP Cameras for Espionage and Disruption in Middle East Conflict
Check Point researchers have identified a coordinated Iranian campaign that systematically compromises unsecured IP camera installations across the region. The
LummaStealer Returns, Teams with CastleLoader to Boost Persistence
Bitdefender has identified a new wave of LummaStealer activity in which the notorious infostealer is being delivered by the CastleLoader
CrowdStrike Secures NCSC CIR Certification, Boosting UK Incident Response Trust
CrowdStrike announced that its Incident Response services have been awarded the UK National Cyber Security Centre (NCSC) Cyber‑Incident Response
Spotting the Difference: Targeted Intrusion vs Automated Scan
A recent SANS diary entry detailed a week‑long investigation where security analysts initially flagged dozens of inbound connection attempts
GoAnywhere MFT Zero‑Day Bypasses Perimeter Defenses, Exposes File Transfer Core
VMware’s investigation uncovered a high‑severity deserialization flaw in the GoAnywhere Managed File Transfer (MFT) platform. The zero‑day
Hidden Web Scripts Hijack AI Agents via Indirect Prompt Injection
Researchers at Unit42 observed attackers placing specially crafted strings inside ordinary web pages—HTML, JavaScript, or comments—that are later
AI‑Powered Tycoon2FA Kit Hijacks MFA at Scale
Microsoft’s investigation uncovered the Tycoon2FA phishing kit, which uses artificial‑intelligence to perform real‑time man‑in‑the‑middle
GreyNoise Feeds Real‑Time Blocklists Directly into CrowdStrike Falcon
GreyNoise has integrated its threat‑intelligence platform with CrowdStrike Falcon, delivering live blocklist data straight into the endpoint detection and
Samsung TV ACR Data Harvest Fixed After Texas Lawsuit
Samsung’s Automatic Content Recognition (ACR) feature on Smart TVs was found to be silently capturing viewers’ content data and
CrowdStrike Earns NCSC CIR Certification, Raising IR Standards for Defenders
CrowdStrike announced that its incident response (IR) practice has been awarded the UK National Cyber Security Centre’s Certified Incident