All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
Tax Search Malvertising Deploys HwAudKiller to Blind EDR Solutions
U.S. taxpayers targeted by malvertising campaign delivering ScreenConnect and HwAudKiller to disable security software via vulnerable Huawei drivers.
TeamPCP Backdoors LiteLLM 1.82.7–1.82.8 via CI/CD Compromise
TeamPCP threat actors compromised LiteLLM versions 1.82.7 and 1.82.8, deploying credential harvesters and Kubernetes lateral movement tools via CI/CD.
Defending Against Rogue IP KVMs: Detection and Mitigation Strategies
Discover how threat actors use rogue IP KVMs to bypass EDR and gain persistent remote access, including technical detection and mitigation strategies.
AI Digital Twin Security Implementation for Enterprise Threat Hunting
JPMorgan Chase uses digital twins and fingerprints to model 300,000 users, reducing false positives and automating detection in high-volume environments.
Malicious GitHub OpenClaw Deployer Repos Deliver Trojans
Analysts uncover an AI-assisted campaign using over 300 poisoned GitHub repositories like OpenClaw Deployer to distribute infostealers to developers.
Lapsus$ Claims AstraZeneca Breach: Sensitive Code and Data at Risk
The Lapsus$ extortion group claims to have compromised AstraZeneca internal code repositories, employee credentials, and sensitive personnel data.
Advertisement
RSAC 2026 Day 1: AI-Driven Security and Identity Frameworks
SecurityWeek summarizes RSAC 2026 Day 1 vendor announcements, highlighting the rise of autonomous security operations and advanced identity protection.
Beyond MFA: Bridging the Zero Trust Gap in Session Security
Authentication alone does not equate to trust. Discover how session token hijacking bypasses MFA and why device health is critical for Zero Trust.
Microsoft Outlook Fixes Gmail IMAP Sync Bug in Version 2404
Microsoft resolves a persistent bug in Classic Outlook causing IMAP synchronization failures and connection errors for Gmail and Yahoo mail users.
Team Mirai: Securing Digital Democracy and AI-Driven Political Systems
Analysis of Japan's Team Mirai party and the security implications of utilizing technology to enhance democratic processes and reduce political corruption.
CVE-2023-4966: Critical Citrix NetScaler Memory Leak Patching Guide
Critical unauthenticated memory leak in Citrix NetScaler ADC and Gateway allows session hijacking. Learn to mitigate CVE-2023-4966 and secure your network.
Weaponized Surveillance: How Israel Hijacked Iran's Camera Network
Analysis of the compromise of Iran's surveillance infrastructure by Israel to facilitate kinetic targeting and high-value intelligence operations.
Dutch Ministry of Finance Data Breach Impacts 15,000 Employees
The Dutch Ministry of Finance confirmed a cyberattack on Tax and Customs Administration systems, exposing PII and IBANs of 15,000 staff members.
Gartner Market Guide for Guardian Agents: Securing AI and NHIs
Analysis of the inaugural Gartner Market Guide for Guardian Agents, focusing on securing non-human identities and AI agents in complex cloud environments.
npm Ghost Campaign: 7 Malicious Packages Steal Crypto Wallets
ReversingLabs uncovers the Ghost campaign targeting developers with 7 malicious npm packages designed to exfiltrate cryptocurrency wallets and credentials.
Citrix NetScaler CVE-2026-3055: Critical Data Leak Patch Guidance
Citrix releases critical security updates for NetScaler ADC and Gateway to address CVE-2026-3055, an unauthenticated memory overread and data leak flaw.
U.S. Sentences Yanluowang Ransomware Facilitator Aleksei Volkov
Russian national Aleksei Volkov sentenced to 81 months for facilitating Yanluowang ransomware attacks, causing $9M in damages to U.S. organizations.
CVE-2024-3400: Exploiting Palo Alto Networks PAN-OS — Patch Now
Technical analysis of CVE-2024-3400, a critical command injection vulnerability in PAN-OS firewalls. Learn exploit mechanics, detection, and mitigation steps.
AI-Assisted Code Review: Uncovering Common Python Flaws
A SANS ISC diary highlights how AI identifies long-standing, common security and logic errors in Python scripts, emphasizing the need for robust code review.
Trivy Supply Chain Attack Targets CI/CD Secrets in DevOps Workflows
A supply chain attack leveraged the Trivy security tool to deploy an infostealer within CI/CD pipelines, compromising cloud credentials and sensitive secrets.
AI in SOC Operations: Pitfalls, Performance, and Mitigation
Analysis of challenges faced by cybersecurity leaders integrating AI into SOCs. Learn about common pitfalls, performance issues, and key strategies for effective AI…
Mazda Data Breach Exposes Employee and Partner Information
Mazda Motor Corporation discloses a security breach impacting employee and business partner data, detected in December. Learn implications and recommended actions.
OpenAI ChatGPT Library: Data Privacy and Cloud Security Analysis
OpenAI launches ChatGPT Library for persistent file storage. Explore technical risks, enterprise privacy controls, and data exfiltration mitigations.
Crunchyroll Breach Claims: 6.8M User Data Potentially Stolen
Crunchyroll investigates claims of a data breach impacting 6.8 million users, potentially exposing personal information and raising user privacy concerns.