Sitemap
Pages
Posts by category
- Category: Cybercrime
- Category: Carding
- Category: Darkweb
- Australian Man Sentenced for Selling Ecstasy on the Darkweb
- Brave Browser Leaked DNS Queries for Onion Services
- Australian Border Force Seizes Meth Inside a Stuffed Llama
- New Change to German Postal Law Targets Internet Drug Trade
- Dream Market Vendor “Rackjaw2” Sentenced to Prison
- Feds Traced Bitcoin Transactions to a Drug Dealer’s Apartment
- Category: Fraud
- Category: The Deep Web
- Category: Hackers
- Category: Breaches
- ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More
- ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More
- Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data
- Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation
- StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data
- Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000
- Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
- Trump Memo Paves Way for U.S. Firms to Hack and Disrupt Foreign Crime Groups
- ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, Cursor CLI Flaw + 17 More Stories
- Gunra Ransomware Exploits Fortinet FortiOS, FortiProxy Flaws to Breach Networks
- Enterprise Defenses Recovered at the Edge and Collapsed Inside
- Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks
- INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws
- Authorities Claim LockBit Admin “LockBitSupp” Has Engaged with Law Enforcement
- Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts
- ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More Stories
- ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories
- New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack
- Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong Man
- ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More Stories
- U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support
- Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks
- GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint Defenses
- ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories
- New Avalon Malware Framework Packs CrownX Ransomware Capabilities
- AI-Generated Browser Ransomware Abuses Chromium API on Windows, Linux, macOS, Android
- SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation
- FortiBleed Credential Theft Linked to INC and Lynx Ransomware Operations
- AI Agent Exploits Langflow RCE to Automate Database Ransomware Attack
- ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories
- Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials
- AI-Generated Browser Ransomware Abuses Chromium API on Windows and Android
- New Mistic Backdoor Linked to KongTuke in ClickFix and ModeloRAT Campaigns
- ThreatsDay Bulletin: Smart TV Proxyware, 24-Year curl Bug, AI Crime Forums + 13 More Stories
- Europol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware Gangs
- ThreatsDay Bulletin: Worm Code Leaked, AI Agent Phished, Claude Code Patch + 28 New Stories
- The Gentlemen Ransomware Claims 478 Victims, Can Spread Like a Worm
- Veeam Backup & Replication RCE Flaw Lets Domain Users Run Remote Code
- UNC3753 Used Vishing and Physical Intrusions in U.S. Data Theft Extortion Campaign
- Critical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 Setups
- CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog
- ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories
- MFA Prompt Bombing: Why Your Second Factor Isn’t Saving You
- LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as Root
- Category: Phishing
- Category: Breaches
- Category: Malware
- Category: Malware Analysis
- Chinese government hackers attack Russian companies for the first time
- Rare UEFI Malware Found in the wild Kaspersky says
- How the Trickbot C2 uses rDNS to disguise as a legitimate Australian government service
- IcedID Malware Updates new techniques To Avoid Detection
- New Info Stealer Poulight From The Russian Underground
- Category: Threats
- ASyncRat surpasses Dridex, TrickBot and Emotet to become dominant email threat
- Credential-stealing malware disguises itself as Telegram, targets social media users
- Don’t let scammers ruin your Valentine’s Day
- SolarWinds attackers launch new campaign
- Smoking Out a DARKSIDE Affiliate’s Supply Chain Software Compromise
- The UNC2529 Triple Double: A Trifecta Phishing Campaign
- UNC2447 SOMBRAT and FIVEHANDS Ransomware: A Sophisticated Financial Threat
- Abusing Replication: Stealing AD FS Secrets Over the Network
- Ghostwriter Update: Cyber Espionage Group UNC1151 Likely Conducts Ghostwriter Influence Activity
- Zero-Day Exploits in SonicWall Email Security Lead to Enterprise Compromise
- Category: Malware Analysis
- Category: Security
- Category: Cloud Security
- Crawl, Walk, Run: Operationalizing Your IaC Security Program
- How To Prevent the IaC Misconfiguration Snowball Effect
- Prevent Secret Leaks: Find and Secure Secrets Across Your Repositories and Pipelines
- You Must Comply! Why You Need Proactive Open-Source License Compliance
- Infrastructure as Code Security and AppSec: Streamlined DevSecOps From App to Infra
- Prisma Cloud Provides New Extensive Use Cases for Azure Customers
- 6 Key Kubernetes DevSecOps Principles: People, Processes, Technology
- 9 Essential Infrastructure Security Considerations for Kubernetes
- Software Composition Analysis (SCA): How Does It Help Keep Cloud Applications Secure?
- Web Application Firewalls (WAFs): What You Need To Know About the Security Checkpoint for Your Web Application
- Building the Business Case for DevSecOps
- What is Infrastructure as Code? The Best Way to Fully Control Your Cloud Configuration
- Category: IoT
- A Roadmap to Secure Connected Cars: Charting the WP.29’s UN Regulation No. 155
- The Transition to 5G: Security Implications of Campus Networks
- Lost in Translation
- The Cybersecurity Blind Spots of Connected Cars
- New P2P Botnet Targeting IoT Devices
- IoT Security, Attacks And The Industrial Systems at Risk
- Category: Mobile
- Google removes 16 malicious apps from play store found to be part of the Joker malware family
- WhatsApp can be forced to decrypt WhatsApp Google Drive backups by state surveillance
- Vulnerabilities in old GTP protocol could affect 4G and 5G networks
- Google is indexing the phone numbers of WhatsApp Users
- Chinese authorities monitor content of WeChat users registered outside China
- Category: Threat Intelligence
- Name That Toon: Poker Hand
- New Coalfire Report Reveals CISOs Rising Influence
- ChatGPT Could Create Polymorphic Malware Wave, Researchers Warn
- Initial Access Broker Market Booms, Posing Growing Threat to Enterprises
- Microsoft to Block Excel Add-ins to Stop Office Exploits
- ‘DragonSpark’ Malware: East Asian Cyberattackers Create an OSS Frankenstein
- Pair of Galaxy App Store Bugs Offer Cyberattackers Mobile Device Access
- Hunting Insider Threats on the Dark Web
- FanDuel Sportsbook Bettors Exposed in Mailchimp Breach
- Ransomware Profits Decline as Victims Dig In, Refuse to Pay
- Attackers Crafted Custom Malware for Fortinet Zero-Day
- Cybercriminals Target Telecom Provider Networks
- Category: Web Applications
- Category: Cloud Security