Fake Voicemail SVG Attachments Fuel Large-Scale Phishing Campaign
A large-scale phishing campaign used fake voicemail SVG attachments to bypass email defenses, targeting 5527 organizations with over 26,000 malicious messages
20 articles
A large-scale phishing campaign used fake voicemail SVG attachments to bypass email defenses, targeting 5527 organizations with over 26,000 malicious messages
More than 100 companies, including OpenAI, Anthropic, Google and Microsoft, have urged collective action to unlock the power of AI to protect critical public...
Aurora ransomware operators are abusing SpaceX’s Cursor Agent AI tool to conduct tasks such as reconnaissance and exploitation activities
Customer data linked to bookings and airport Wi-Fi registrations at Manchester, Stansted and East Midlands airports has been accessed by an unauthorized thir...
The FBI advisory set out QTFY’s distributed hacking ecosystem, allowing it to exploit vulnerabilities at scale and obfuscate its activities
CISA added six new bugs to its Known Exploited Vulnerabilities catalog on August 26, showing signs of active exploitation in the wild
MedTech giant Boston Scientific has revealed IT outages following a cyber incident
OpenAI reveals that unauthorized message boards were at the heart of the recent Hugging Face breach
Group-IB uncovered new Tortoiseshell infrastructure, including a backdoor and SSH tunneling tool
Interpol operation leads to 58 arrests and identifies 263 suspects across 22 countries
Reco report reveals growing shadow AI problem and surge in vulnerability disclosures
Chubb reported that growing privacy litigation has contributed to surging cyber claim costs in the US
This new open standard offers hardware-attested runtime and compliance evidence for AI agents
A coordinated DDoS campaign has caused disruption among Norwegian government services
ZeroTokens gives phishing operators live control of victim sessions targeting 53 financial brands
RecruitTrap campaigns use mobile-optimized phishing pages to target enterprise credentials
Australian officials are urging TeamCity customers to patch an actively exploited critical flaw, which follows a similar warning from the US government
A threat actor keeps spreading the WeedHack malware to Minecraft players despite its original infrastructure taken down in July
ReliaQuest has detailed a social engineering attack linked to ShinyHunters, denying reports that the threat actor successfully compromised its systems
The US has sanctioned individuals connected to hacking-for-hire group the Mabna Institute