The inside job that cost ransomware victims millions
When a ransomware crew locks up your servers, the outside negotiator you hire has to know everything about you so that they can negotiate a…
When a ransomware crew locks up your servers, the outside negotiator you hire has to know everything about you so that they can negotiate a…
xAI’s Grok Build coding CLI was uploading entire Git repositories, full commit history and all, to a Google Cloud Storage bucket run by xAI, not…
The UK and the European Union have issued sanctions against individuals and organisations linked to Russian-backed cyber attacks. In their first joint cyber-sanctions package, the…
The U.S. Treasury Department has announced new ransomware sanctions against a virtual private network (VPN) provider, its administrator, and a malware service provider accused of…
The Nihon Kotsu cyberattack has disrupted operations at Japan’s largest taxi operator after the company confirmed that its internal systems were compromised by a malware-related…
Researchers have unearthed an Apple macOS malware campaign hidden behind a well-designed veneer of credibility, which uses an unexpected attack vector, namely application crash reporting.…
Several malicious versions of Jscrambler’s NPM package were published over the weekend as part of a supply chain attack involving compromised credentials. The popular NPM…
CrashStealer: New macOS Infostealer Uses Signed Apps to Evade Gatekeeper Pierluigi Paganini July 14, 2026 New macOS infostealer CrashStealer uses a signed app to bypass…
Enterprises have worked for years to improve detection and response times in the face of increasingly sophisticated attacks that relied on manual hacking and living-of-the-land…
Recently there have been a few malicious campaigns involving attacker payloads that invoked AI. AI has been used by threat actors for all sorts of…
When a high-profile data breach hits headlines, the default assumption is often to view the dark web as a single, centralized marketplace where any illicit…
A new macOS information-stealing malware called CrashStealer pretends to be Apple’s crash-reporting tool to steal credentials, keychain data, and crypto wallets. Malware researchers started tracking…