At least two Russia-aligned threat clusters have exploited a high-severity WinRAR flaw that has been patched for nearly a year in email-based attacks against military and government organizations in ...
The financially motivated group is combining vishing, IT impersonation, and in-person office intrusions to steal data and ...
A newly discovered, critical zero-day vulnerability is under attack; a Qilin ransomware affiliate has been blamed for at ...
The United States and Iran have extended what began as a two-week ceasefire. The pause applies only to kinetic warfare, and even that didn't fully stop the shooting. The cyber front has no signs of a ...
Threat actors have struck the software supply chain yet again, this time hitting the Python Package Index (PyPI) with Mini Shai-Hulud in an attempt to spread poisoned code. In the latest campaign, ...
A prompt injection flaw in Google Gemini's voice assistant let attackers hide malicious commands in notifications, enabling ...
Dark Reading launched, we're looking ahead. Spoiler: It's hyper-segmented, AI-orchestrated & more sophisticated than your dad ...
Python scripts were used to test malware against endpoint detection and response agents from Sophos, CrowdStrike, and Windows ...
Zoom's CISO, Sandra McLeod, discusses securing a communication platform, AI-driven security workflows, and advice for ...
Gartner analysts issued a call to action to bolster defenses against several emerging critical threats, such as deepfakes and ...
Organizations are growing serious about what nation’s rules apply to their data. Experts point to geopolitical tensions as a ...
From solely targeting Microsoft 365, the phishing-as-a-service platform now targets AWS, Okta, and Russian platforms.