All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
Masjesu Botnet: Stealthy DDoS Malware Targets Linux IoT Devices
Masjesu is a highly evasive DDoS botnet targeting Linux IoT devices. It prioritizes persistence and avoids critical infrastructure to remain undetected.
Claude Mythos Identifies Thousands of Zero-Day Flaws in Major Systems
Anthropic's Project Glasswing uses the Claude Mythos AI model to uncover thousands of zero-day vulnerabilities across infrastructure from AWS, Google, and Cisco.
Reducing IAM Attack Surface with Identity Visibility Platforms
Learn how Identity Visibility and Intelligence Platforms (IVIP) eliminate Identity Dark Matter and reduce risk across fragmented enterprise environments.
Detecting Malicious Web Shells: Analysis of Persistence and TTPs
Discover how attackers use deceptive naming and pre-set credentials in web shells to maintain persistence and how to detect these malicious files on servers.
Ivanti CSA 4.6 Exploited via CVE-2024-9380: Migration Required
Attackers are actively exploiting Ivanti CSA 4.6 via CVE-2024-9379 and CVE-2024-9380. Learn how to detect these command injection exploits and migrate to version 5.0.
Windows 11 23H2 Start Menu Search Fix — Microsoft Implementation Guide
Microsoft has resolved a Windows 11 23H2 bug causing Start Menu search failures using a Known Issue Rollback. Discover how this fix impacts system stability.
Advertisement
Iranian Hackers Targeting U.S. Critical Infrastructure via PLCs
U.S. agencies warn of Iran-linked hackers disrupting critical infrastructure by exploiting internet-exposed PLCs to manipulate data and halt operations.
North Korean Hackers Distribute 1,700 Malicious Packages via npm and PyPI
North Korean threat actors expand the Contagious Interview campaign, deploying 1,700 malicious packages across npm, PyPI, Go, and Rust ecosystems.
Storm-1175: High-Velocity Medusa Ransomware Campaigns
Runtime Rebel reports on Storm-1175's rapid Medusa ransomware campaigns, exploiting N-day and zero-day vulnerabilities for financial gain.
Iran-Linked Cyber Av3ngers Target US Water Sector PLCs
US federal agencies warn of Iran-linked Cyber Av3ngers targeting Unitronics PLCs in critical infrastructure. Learn how to detect and mitigate these OT attacks.
FBI Reports $21 Billion Cybercrime Loss in US: Key Attack Vectors
The FBI's IC3 report reveals Americans lost a record $21 billion to cybercrime, primarily due to investment scams, BEC, tech support fraud, and data breaches.
CVE-2023-3800: RCE Vulnerability in Ninja Forms File Uploads Extension
Attackers are exploiting a critical unauthenticated file upload flaw in Ninja Forms File Uploads. Secure your WordPress site and mitigate RCE risks immediately.
Iranian APT Exploits Rockwell Automation PLCs: Securing Critical Infrastructure OT Devices
Iranian-affiliated APT actors are exploiting internet-facing Rockwell Automation PLCs, disrupting US critical infrastructure.
AI's Impact on Software Supply Chain Security and Vulnerability Management
AI is set to revolutionize software development, enabling 'instant software' and advanced vulnerability detection, profoundly reshaping future cybersecurity strategies.
Grafana AI Assistant Flaw Exposes User Data — Immediate Patch Required
Grafana patched an AI vulnerability where malicious instructions on web pages could trick its AI assistant into leaking sensitive user data. Immediate action needed.
Russian Hackers Exploit Routers to Steal Microsoft Office Tokens
Russian military intelligence-linked hackers exploited known router flaws to harvest Microsoft Office authentication tokens from over 18,000 networks, posing a…
AI-Enabled Cyber Attacks: Adapting Defenses for Agentic Speed
AI is accelerating cyber attack speed, demanding architectural shifts in defense. Understand nation-state threats and strategize for agentic attack response.
Anthropic Claude Mythos: Dual-Use AI for Cyber Defense and Offense
Anthropic's Claude Mythos AI, part of Project Glasswing, promises to revolutionize software security but also risks enhancing adversary capabilities.
Iranian-Linked Actors Target Rockwell/Allen-Bradley PLCs in U.S. Critical Infrastructure
U.S. critical infrastructure faces threats from Iranian-linked actors targeting internet-exposed Rockwell/Allen-Bradley PLCs. Learn about the risk and mitigations.
Snowflake Data Theft Via SaaS Integrator Breach: Mitigation
Snowflake customers face data theft due to compromised third-party SaaS integrators and stolen authentication tokens. Learn to secure integrations and detect compromise.
APT28 Exploits MikroTik & TP-Link Routers in DNS Hijacking
Russian state-linked APT28 (Forest Blizzard) is compromising insecure SOHO routers globally, employing DNS hijacking for cyber espionage since May 2025.
Mitsubishi Electric ICS Vulnerabilities Expose SQL Credentials
High-severity vulnerabilities (CVE-2025-14815, CVE-2025-14816) in Mitsubishi Electric ICS/SCADA products risk SQL credential exposure and data compromise.
RSAC 2026: Navigating AI's Strategic Role in Cybersecurity Operations
Explore the cybersecurity debates from RSAC 2026 regarding AI's expanding role, from agentic applications to the critical need for human oversight in defensive…
AI's Rapid Reshaping of Cybersecurity Operations & Future Threats
Analysis from RSAC 2026 on AI's accelerating influence across cybersecurity, detailing its role in threat detection, defense, and emerging attack vectors.