All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
2025 Identity Threat Report: Analyzing the Infostealer Economy
Recorded Future's 2025 Identity Threat Landscape Report examines how infostealer malware and session cookie theft drive the modern credential threat economy.
Analyzing Proxy Scanner Activity: Monitoring /proxy/ URI Patterns
Threat actors are shifting scanning patterns to identify open proxies using /proxy/ URI prefixes. Learn how to detect and mitigate these reconnaissance scans.
2025 Ransomware TTP Analysis: Virtualization and Data Theft Trends
Analysis of shifting ransomware TTPs in 2025, highlighting the surge in data theft extortion, virtualization targeting, and exploitation of edge vulnerabilities.
LiveChat Abuse: Phishing Campaign Targets PayPal and Amazon Users
Threat actors are leveraging legitimate LiveChat platforms to impersonate PayPal and Amazon support agents, stealing credit card and personal data.
Security Firm Executive Targeted via DKIM-Signed Phishing
A sophisticated phishing campaign bypassed security filters using DKIM-signed emails and Cloudflare-protected landing pages to target a security executive.
Oracle EBS Exploitation: Risks to Enterprise Financial Integrity
Analysis of the Oracle EBS hack affecting major corporations and the technical risks associated with unpatched ERP systems and financial data theft.
Advertisement
Securing Shadow AI: How to Discover and Govern Unauthorized SaaS Tools
Learn how security teams can identify shadow AI usage, monitor OAuth grants, and implement governance to prevent corporate data leakage in SaaS environments.
Microsoft Exchange Online Outage: Troubleshooting Access Failures
Microsoft Exchange Online service disruption prevents global users from accessing mailboxes and calendars. Review technical impacts and mitigation steps.
Chrome Zero-Days and Router Botnets: Weekly Threat Intel Recap
Analysis of the latest Chrome zero-day vulnerabilities, router botnet infrastructure risks, and AWS cloud security breaches from March 2026.
Quantum Factorization Research: Analyzing RSA Decryption Timelines
Analysis of a new preprint regarding theoretical improvements in quantum factorization and its potential impact on the security of RSA encryption standards.
Poland’s Nuclear Center Targeted in Suspected Iranian Cyberattack
Polish officials investigate a cyberattack at the NCBJ nuclear center. Initial evidence points to Iran, but investigators warn of potential false flag tactics.
ForceMemo: Credential Theft Compromises Python Repositories
Researchers reveal ForceMemo, a campaign exploiting credentials stolen via GlassWorm to compromise hundreds of GitHub accounts and Python repositories.
ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools
Threat actors use ClickFix social engineering tactics to deploy the MacSync infostealer on macOS systems via fraudulent AI software installers.
Why Security Validation is Becoming Agentic: The Shift to AI Agents
Explore the transition from fragmented security tools to agentic security validation using autonomous AI agents to simulate complex attack paths.
Android 17 Restricts Accessibility API to Thwart Malware Abuse
Android 17 Beta 2 introduces restrictions on the Accessibility API under Advanced Protection Mode to prevent malware from hijacking system permissions.
Fake Chrome Update Campaigns Deploying NetSupport RAT
Technical analysis of phishing campaigns using JavaScript-injected websites to distribute NetSupport RAT via fake browser update overlays.
OpenAI ChatGPT Privacy Policy Update: Implications of Ad Rollout
OpenAI clarifies its stance on ChatGPT advertisements following privacy policy updates. Learn how OpenAI data collection for advertising impacts users.
Betterleaks: A New Open-Source Tool for Detecting Secrets in Git
Betterleaks is a new open-source secrets scanner designed to identify hardcoded credentials and sensitive data across directories and Git repositories.
Loblaw Data Breach: Customer PII Exposed in Recent Security Incident
Loblaw confirms a data breach impacting customer names, emails, and phone numbers. Analyze the risk of phishing and credential stuffing in the retail sector.
Windows 11 24H2 RRAS RCE: Microsoft Issues OOB Hotpatch Fix
Microsoft releases an out-of-band hotpatch for Windows 11 24H2 to address critical RRAS remote code execution vulnerabilities CVE-2024-43513 and CVE-2024-49053.
OpenClaw AI Agent Flaws: Prompt Injection and Data Exfiltration Risk
CNCERT warns of critical security flaws in OpenClaw AI agents, enabling prompt injection and data exfiltration due to weak default configurations.
Bruce Schneier 2026 Speaking Schedule: AI Sovereignty and RSAC Insights
An analysis of Bruce Schneier’s March 2026 speaking engagements, covering topics from AI sovereignty to the RSAC 2026 cybersecurity trends.
AppsFlyer Web SDK Hijacked to Deliver Crypto-Stealing Malware
AppsFlyer's Web SDK was compromised in a supply chain attack to steal cryptocurrency. Learn how to detect and mitigate this JavaScript injection threat.
GlassWorm Abuses Open VSX Registry in Supply-Chain Attack
The GlassWorm campaign exploits transitive dependencies in 72 Open VSX extensions to deliver malicious loaders into developer environments.