Skip to main content

Topic

Emerging Issue

CTI Roundup: Infostealers, Zero-Day Attacks, and Gremlin Stealer
May 7, 2025

The latest news on infostealers, Google observing 75 zero-day exploits in 2024, and new threat Gremlin Stealer.

What is World Password Day? And Why We Still Need It
May 1, 2025

Despite predictions to the contrary, passwords are here to stay. Four steps to strengthen passwords so they become a security asset, not a liability.

CTI Roundup: Deepfakes, ToyMaker IAB, and ClickFix
Apr 30, 2025

Recent news about threat actors using real-time deepfakes to land remote work, ToyMaker initial access broker, and state-sponsored hackers using ClickFix.

CTI Roundup: SMS Phishing, Node.js, and Fake PDF Converters
Apr 23, 2025

The latest news about threat actors exploiting SMS with social engineering, misusing Node.js for malware, and fake PDF converters delivering malware.

CTI Roundup: Email Attacks, Hunters International, and New Ransomware Data
Apr 16, 2025

Read the latest news about attacks combining credential phishing and malware, Hunters International pivoting to data extortion, and ransomware trends.

A photo of glass office towers, with row after row of windows reflected in other windows.
Apr 10, 2025

Ordering employees back to the office isn’t just a matter of returning to some pre-pandemic normal. For security teams, RTO poses a host challenges and shifting priorities. Here’s what to keep top-of-mind.

CTI Roundup: QR Code Phishing, Babuk Locker 2.0, and Qilin
Apr 9, 2025

QR code phishing accelerates, LockBit 3.0 rebrands, and Qilin affiliates target downstream customers of an MSP.

An image of a man as if seen through a touch screen as he studies graphic displays of AI avatars and coding.
Apr 3, 2025

Our award-winning tech reporter knows a heckuva lot about AI, deepfakes, and the wave of new online fraudsters – and yet there he was, on the phone with the “police” and about to hand over his credit card number. Think this can’t happen to you? A rising number of C-suite execs and IT experts are learning the hard way.

CTI Roundup: StilachiRAT, Reddit Infostealers, and New Password Reuse Data
Mar 26, 2025

The latest information about StilachiRAT malware, AMOS and Lumma stealers spreading via Reddit, and research on how many logins use compromised passwords.

CTI Roundup: Malvertising, XCSSET Variant, and GitHub Abuse
Mar 19, 2025

The latest news about a malvertising campaign threatening devices, XCSSET variant, and an ongoing campaign using fake GitHub repositories to spread malware.

CTI Roundup: Silk Typhoon, Fake Ransom Notes, and ClickFix
Mar 12, 2025

The latest cyber threat news on Silk Typhoon shifting tactics, threat actors targeting executives with physical ransom notes, and the ClickFix trick.

CTI Roundup: Auto-Color Malware, Vulnerable Windows Driver, and Lotus Blossom
Mar 5, 2025

Latest news about Auto-color Linux malware, attackers exploiting Truesight.sys, and Lotus Blossom.