South Korea warns of nation-state actors using phishing and compromised websites
The phishing attacks involve disguised job applicants sending resumes with malicious links or impersonating recruiters with password-protected ZIP files cont...
20 articles
The phishing attacks involve disguised job applicants sending resumes with malicious links or impersonating recruiters with password-protected ZIP files cont...
The attack exploited Adform's JavaScript tracking script, "trackpoint-async.js," which is embedded in numerous websites.
Agents need their own identities, scoped to a specific task, and then must be destroyed.
The surge in malicious activity began around July 29, with initial reports identifying the "openconnect-sso" package as compromised.
Amgen detected the breach in July 2026 and initiated its cybersecurity response plan, engaging forensic experts to investigate.
Organizations need a clear vulnerability disclosure process as AI speeds flaw discovery.
OpenAI’s Hugging Face incident disclosure prompted Anthropic to review its own evaluations.
The attack chain begins with a spear-phishing email containing a link to an encrypted archive.
Bitsight researchers uncovered the operation by monitoring an expired domain used for factory backdoors and telemetry.
The Italian Senate's EU Policies Committee approved a decree allowing the storage of facial biometric data from cameras in sensitive public areas for seven d...
The I-GRIP initiative connects law enforcement agencies across 196 countries with financial institutions to expedite the process of stopping fraudulent money...
Researchers from four universities conducted a study pitting AI chatbots against human scammers in a simulation of "pig butchering" scams, a form of romance ...
CISA reports surge in cyberattacks targeting water utility PLCs.
OWASP NHI guidance highlights detection gaps as the biggest security challenge.
Here’s why in a world where AI models can hack other companies, we have to outreason our adversaries.
A new report from eSentire reveals that AiTM attacks accounted for 28.57% of all initial access events in the legal sector, with a 20% year-over-year increas...
The breach, which lasted from October 8, 2024, to September 5, 2025, exposed the personal information of 16,647 KT subscribers.
The campaign, identified in May 2026 by Group-IB, uses a modified XMRig miner.