npm Malware Targets Atomic and Exodus Wallets to Hijack Crypto Transfers
TL;DR – ReversingLabs has identified a malicious npm package, “pdf-to-office,” that targets Atomic and Exodus crypto wallet users by silently patching local software to hijack…
TL;DR – ReversingLabs has identified a malicious npm package, “pdf-to-office,” that targets Atomic and Exodus crypto wallet users by silently patching local software to hijack…
Western Sydney University has experienced its fourth cyber incident in two years, this time affecting the data of 10,000 current and former students after an…
I like the way Whole Foods makes me feel, but I don’t like the fact that it makes me feel that way. It reeks of…
Ransomware payments trending down, the cyber-resilience gap facing SMBs, and APT groups embracing generative AI – it’s a wrap on another month filled with impactful…
RansomHub, a leading Ransomware-as-a-Service (RaaS) group that emerged in early 2024, has found itself grappling with internal turmoil. The instability came to light on April…
U.S. CISA adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog Pierluigi Paganini April 10, 2025 U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Linux…
I have a wicked crazy idea. What if we in the information security community were to organize a campaign to get level-headed, rational thinkers into…
A panel of U.S. judges considering an appeal of a ruling that went against El Salvadoran journalists suing NSO Group over alleged infections of their…
With AI’s pattern recognition capabilities well-established, Mr. Schölkopf’s talk shifts the focus to a pressing question: what will be the next great leap for AI?…
Hackers started exploiting a high-severity flaw that allows bypassing authentication in the OttoKit (formerly SureTriggers) plugin for WordPress just hours after public disclosure. Users are strongly…
A Cisco’s Smart Install protocol (CVE-2018-0171), first patched in 2018, remains a pervasive threat to global network infrastructure due to widespread misconfigurations and exploitation by…
I’ve not spent a lot of time thinking about this, but here’s how the CloudSec variables move in my mind. The current state of Security…