A new twist on the social engineering tactic is making waves, combining SEO poisoning and legitimate AI domains to install ...
The initial access broker has been weaponizing endpoint detection and response (EDR) platforms and Windows utilities in ...
The actively exploited zero-day bug — and the one therefore that needs high-priority attention — is CVE-2025-62221, which ...
Shanya is the latest in an emerging field of packing malware, selling obfuscation functionality in order to help ransomware ...
Joseph Rooke, director of risk insights at Recorded Future's Insikt Group, points out that "nations are clearly watching this ...
Google has fixed a critical vulnerability that enabled attackers to add malicious instructions to common documents to ...
The Apache Software Foundation's earlier fix for a critical Tika flaw missed the full scope of the vulnerability, prompting ...
The US Treasury's Financial Crimes Enforcement Network shared data showing how dramatically ransomware attacks have changed ...
Broadside' is targeting a critical flaw in DVR systems to conduct command injection attacks that can hijack devices for ...
Manufacturers are the top target for cyberattacks in 2025 because of their still-plentiful cybersecurity gaps and a lack of ...
Attacks against CVE-2025-55182, which began almost immediately after public disclosure, have increased as more threat actors ...
Shadow AI is spreading across enterprises. Rather than fight it, organizations should see it as a catalyst for stronger AI ...