Hiển thị các bài đăng có nhãn darkreading. Hiển thị tất cả bài đăng
Hiển thị các bài đăng có nhãn darkreading. Hiển thị tất cả bài đăng
0

'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft

Thứ Năm, 13 tháng 8, 2026
Researchers discovered hackers-for-hire performing cyber espionage and financially motivated heists from the same Web panel.
0

Belgium's eID Authentication Opens Citizen Accounts to RCE

The trust framework underlying Belgium's electronic ID system was fully compromised by severe vulnerabilities in a key browser extension, showcasing bigger problems with extensions in general.
0

Long-running Data Theft Campaign Targeting Salesforce, ServiceNow

Thứ Tư, 12 tháng 8, 2026
The "City-Forum" campaign has been active since at least March 2025 and has targeted organizations across multiple sectors with custom tooling.
0

Walmart's "Trusted Agent" Approach to Purple Teaming

Walmart co-locates red and blue teams to build trust and improve security through collaborative purple teaming exercises
0

Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition

Attackers continue to target critical infrastructure and government-linked organizations in the country, mirroring the increased activity across Latin America.
0

Walmart Leaders Transform Security Operations Without Going Bananas

The big-box giant has scaled its defenses by encouraging trust and innovation. Good communications, transparency, and team spirit are key factors.
0

Microsoft's Patch Tuesday Deluge Continues With August Updates

Thứ Ba, 11 tháng 8, 2026
Security experts say prioritization should be the main focus for the August updates, not the massive CVE volume.
0

Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA

The ransomware-as-a-service operation is finding success against critical infrastructure targets with leaked Conti code and old flaws in firewalls and VPN appliances.
0

Multistate Water System Attacks Widen, Iran Suspected

Thứ Hai, 10 tháng 8, 2026
Attacks targeting water systems just keep flowing across a dozen states, against ill-secured, Internet-exposed PLCs.
0

Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius

The maximum-severity vulnerability, which still has no CVE, allows malicious, remote administrator access to the business-analytics platform and its downstream users.
0

The Patch Gap: Why Defenders Need to Think in Chains, Not Checklists

It's time to turn from CVSS-backed patching to choke-point patching focused on breaking chains to critical assets.
0

Coruna, DarkSword iOS Exploits Proliferate Globally

Sophisticated iPhone exploit chains previously limited to nation-states are spreading far and wide to organized cybercrime groups.
0

Sherlock Holmes was the “OG” Social Engineer

The crime solver wore disguises, spied on targets, and built intelligence networks long before modern-day tactics emerged. He has lessons for today’s ethical- and nonethical-hat hackers.
0

AI-Generated Patches Fail Half the Time

Thứ Sáu, 7 tháng 8, 2026
A study of more than 6,000 patches found that even working patches can introduce new bugs, break something else, or are open to bypass.
0

Déjà Vu? Meta's AI Escapes Testing Lab in Hacking Joyride

In the span of three weeks, OpenAI, Anthropic, and Meta have all disclosed AI agent sandbox escape events affecting real organizations.
0

The Coordination Gap: How Attackers Are Outpacing Law Enforcement

Thứ Năm, 6 tháng 8, 2026
The fight against cybercrime continues because threat actors have adapted their strategies to avoid deterrents, but law enforcement still operates in silos.
0

Researcher Claims Control of ChatGPT Secure Sandbox

A researcher demonstrated a proof-of-concept attack chain that provided C2-style influence over ChatGPT's isolated sandbox during a session at Black Hat USA 2026.
0

From Bobmojis to Bobbleheads: How the Democratic Party Built a Security-First Culture

Former chief security officers of the Democratic National Committee explain that a strong security-first mindset requires executive support – and a dose of absurdity.
0

AI Sends Global Crime Syndicates Into Fraud Nirvana

Thứ Tư, 5 tháng 8, 2026
Organized crime is convincingly scamming at scale, making billions thanks to AI-enabled voice cloning, deepfake real-time video overlays, LLM-driven persona management, and automated translation.
0

CSS: The Hidden Threat Lurking in Your Inbox

CSS was once just about design. Now researchers warn it's powerful enough to exfiltrate data from webmail — and some vendors aren't prepared.