All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
Robinhood Sign-Up Flaw Used for Phishing Injection - Analysis
Exploit of Robinhood's account creation process allowed attackers to inject phishing content into official emails, bypassing standard security filters.
UNC6692 Leverages Teams, AWS S3 for Malware & Cloud Abuse
Newly discovered threat actor UNC6692 combines social engineering via Microsoft Teams with custom 'Snow' malware and AWS S3 cloud abuse in multi-pronged attacks.
Alleged Silk Typhoon Hacker Extradited: Cyberespionage Threat
An alleged Silk Typhoon hacker, associated with Chinese intelligence, has been extradited to the US, highlighting persistent nation-state cyberespionage threats.
Toronto SMS Blaster Arrests: Analyzing IMSI Catcher Smishing Risks
Law enforcement in Toronto dismantled an illicit SMS blaster operation used for high-volume smishing. Learn how these devices bypass carrier security filters.
TeamPCP Supply Chain: Checkmarx KICS, Bitwarden CLI, xinference PyPI Attacks
TeamPCP resumes supply chain attacks with new compromises targeting Checkmarx KICS, Bitwarden CLI, and xinference PyPI. UNC6780 credential theft campaign continues.
Fast16 Malware: Revising the History of Cyber Sabotage
Researchers have uncovered 'fast16,' a sophisticated malware framework from two decades ago, predating Stuxnet and rewriting the timeline of cyber sabotage.
Advertisement
Unpatched PhantomRPC: Windows Privilege Escalation via RPC Flaw
Runtime Rebel analyzes the unpatched 'PhantomRPC' flaw in Windows, detailing how an architectural weakness in RPC enables local privilege escalation.
APT28 Exploits Incomplete Windows Patch: Zero-Click Attacks Persist
An incomplete Windows patch leaves systems vulnerable to zero-click attacks. Russia-linked APT28 exploited this against Ukraine and EU. Learn how to defend.
Malicious PyPI Package elementary-data Hijacked for Infostealer
High-profile supply chain attack on the elementary-data PyPI package compromises developer credentials and crypto wallets via account takeover. Patch now.
FTC Report: Social Media Scams Exceed $2.1 Billion in 2025 Losses
The FTC reports a massive surge in social media fraud, with Americans losing over $2.1 billion in 2025 to investment and romance scam operations.
Fast16 Malware and XChat Exploitation: A Supply Chain Alert
Analysis of Fast16 malware, XChat launch vulnerabilities, and the resurgence of remote tool abuse in enterprise software supply chains.
Checkmarx GitHub Repository Data Leaked Following Supply Chain Attack
Checkmarx confirms internal GitHub repository data was published on the dark web following a March 2026 supply chain incident. Learn the impact and TTPs.
Decoding Medieval Spanish Diplomatic Ciphers: Cryptanalysis Insights
Historical analysts decode a Spanish diplomatic letter from the late medieval period, revealing sophisticated cryptographic obfuscation and null-usage.
Malicious AI Prompt Injection Attacks: Google Red Team Insights
Google reports a surge in AI prompt injection attacks, highlighting low-sophistication attempts and strategies for mitigating indirect prompt injection risks.
OpenSSH 9.8 Logic Error: Root Access via Certificate Principals
OpenSSH 9.8 fixes a 15-year-old logic flaw in certificate parsing that could allow unauthorized privilege escalation and root shell access via crafted names.
Microsoft Outlook.com Sign-In Failures: Analysis of Ongoing Outage
Microsoft confirms an Outlook.com outage causing intermittent sign-in failures and mailbox access issues. Learn about the impact on enterprise productivity.
TrueConf Server RCE: PhantomCore Exploit Chain — Patch Now
PhantomCore leverages a three-vulnerability exploit chain in TrueConf video conferencing software to target Russian networks via remote command execution.
Anthropic Claude Mythos: Scaling Vulnerability Discovery and Remediation
Claude Mythos Preview accelerates vulnerability discovery, forcing security teams to rethink remediation workflows and automated patch validation.
Firefox CVE-2026-6770: Tor Browser Fingerprinting Patch Guidance
Firefox 150 and Tor Browser 15.0.10 address CVE-2026-6770, a fingerprinting vulnerability that risks de-anonymizing users on privacy-focused networks.
Keitaro TDS Campaigns Exploit Fake CAPTCHAs for IRSF Fraud
Attackers leverage over 120 Keitaro TDS instances and deceptive CAPTCHA prompts to orchestrate International Revenue Share Fraud via premium SMS messages.
Combating Romance Scams and Confidence Schemes: Institutional Response
Romance scams and confidence schemes represent a growing threat to personnel. Learn how cross-sector collaboration improves victim recovery and threat mitigation.
Itron Discloses Internal IT Network Breach in SEC Filing
Utility giant Itron reports a cybersecurity incident involving unauthorized access to internal IT systems. Learn about the scope and potential supply chain risks.
Microsoft Revamps Windows Insider Program for Windows 11 Testing
Microsoft's Windows Insider Program overhaul introduces new Canary and Dev channels, changing how security teams test Windows 11 reliability and performance.
UNC6692 Targets Microsoft Teams to Deploy Snow Malware
UNC6692 is leveraging Microsoft Teams and social engineering to deliver the modular Snow malware suite, facilitating long-term persistence and data theft.