All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
ChatGPT Share Link Abuse: Fake Outages Deliver Malware
Threat actors leverage ChatGPT share links to host deceptive outage pages, prompting users to download malware disguised as an official desktop app.
ChatGPT ChatGPhish Vulnerability: Web Summaries Lead to Phishing
A newly disclosed ChatGPhish vulnerability allows attackers to leverage ChatGPT's Markdown trust for prompt injections and sophisticated phishing campaigns.
Asia's Emerging Cyber Insurance Market: Strategic Risk Transfer for Security Leaders
Explore the dynamics of Asia's burgeoning cyber insurance market, its impact on risk management, and how security professionals can leverage evolving policies.
Charter Communications Data Breach: Millions of Records Exposed
ShinyHunters leaked data allegedly from Charter Communications, potentially exposing nearly 5 million customer records. Organizations must assess third-party risk.
Trump Mobile Data Breach and 2026 FIFA World Cup Phishing Risks
Analysis of the Trump Mobile data breach, upcoming 2026 FIFA World Cup phishing campaigns, and CISA's strategic response to recent supply chain attacks.
Evolution of DDoS-as-a-Service: Analyzing Modern Botnet Markets
An analysis of the DDoS-as-a-Service market, covering pricing tiers, technical infrastructure, and how stresser services lower the barrier for attackers.
Advertisement
CVE-2026-39987: Attackers Use LLM Agents for Post-Exploitation
Discover how threat actors are leveraging LLM agents to automate post-exploitation tasks after compromising Marimo notebooks via CVE-2026-39987.
Digital Suppression of Campus Speech and the 2026 Surveillance State
Analysis of how AI monitoring and digital surveillance tools are being leveraged to suppress campus speech and student activism, creating chilling effects.
The Com: Analyzing the Intersection of Cybercrime and Physical Violence
Analysis of The Com, a criminal ecosystem using social engineering and SIM swapping to fund violent activities, sextortion, and neo-Nazi accelerationism.
Securing Non-Human Identities: Lessons from Cloud Integration Flaws
Analysis of how over-permissioned non-human identities and architectural misconfigurations in cloud integrations lead to cross-tenant compromise risks.
California Sues 23andMe for Failing to Protect User Genetic Data
California Attorney General files lawsuit against 23andMe (Chrome Holding Co.) for security failures leading to the massive 2023 credential stuffing breach.
Gogs RCE via CVE-2024-39930 — Mitigation and Patch Guide
A critical argument injection in Gogs (CVE-2024-39930) allows authenticated users to achieve RCE via malicious pull requests. Learn how to patch and defend.
Executive Sentenced for Selling PII of 7 Million Elderly Americans
Former Epsilon executive Robert Reger sentenced to 10 years for selling consumer data of 7 million people to scammers for fraudulent sweepstakes schemes.
Google Chrome DBSC: Preventing Account Takeover via Cookie Theft
Google Chrome rolls out Device Bound Session Credentials (DBSC) to protect users from session hijacking by cryptographically binding cookies to hardware.
Shadow AI Risks: Securing Production against Exposed Vibe-Coded Apps
Analysis of the 'Shadow Builders' report identifying 2,000 exposed AI-generated apps and the critical security gaps in AI-assisted software development.
GREYVIBE: Russian Actor's AI-Powered Cyberattacks Target Ukraine
Analysis of GREYVIBE, a newly discovered Russian-linked threat actor utilizing AI-powered techniques to target Ukrainian entities since August 2025.
Charter Communications Data Breach: 4.9 Million Accounts Exposed
Charter Communications confirms a data breach affecting 4.9 million customer accounts after an extortion group targeted a third-party vendor's environment.
Kimsuky Deploys HTTPSpy and HelloDoor via VS Code Dev Tunnels
Kimsuky expands its arsenal with HTTPSpy and HelloDoor malware, leveraging Visual Studio Code Dev Tunnels to target South Korean military and corporate assets.
VMware Workspace ONE Access RCE via CVE-2022-22960 — Patch Now
VMware Workspace ONE Access and Identity Manager face critical RCE vulnerabilities (CVE-2022-22960, CVE-2022-22957) actively exploited.
GreyVibe Actor Leverages AI Lures to Target Ukrainian Entities
Russian threat cluster GreyVibe uses ChatGPT and Gemini to automate highly targeted phishing lures and deploy custom malware against Ukrainian targets.
Anthropic Claude Mythos-Class Models: Security Implications of Public Rollout
Anthropic confirms public rollout plans for Claude Mythos-class models, addressing previous delays caused by software security risks and safety concerns.
DShield Sensor Analysis: A Year of Observed Threat Upload Trends
Runtime Rebel analyzes a year of file uploads to DShield sensors, revealing peak threat activity from December 2025 to February 2026 and subsequent decline.
THE.Hosting: Dutch Raid Fails to Halt Russian Bulletproof Ops
Dutch law enforcement seized 800 servers and arrested two operators of THE.Hosting, a Russian bulletproof host, but its core IP infrastructure persists.
GreyVibe Threat Actor Leverages AI for Cyberattack Operations
Russia-linked GreyVibe threat actors are using AI tools like ChatGPT and Gemini to enhance cyberattacks, signaling a critical evolution in TTPs.