Advanced Software fined £3m over LockBit attack
21
Jul
2025

Patch ToolShell SharePoint zero-day immediately, says Microsoft

Organisations running on-premise instances of Microsoft’s SharePoint collaboration and document management platform should update without delay after multiple reports of…

21
Jul
2025

Why You Shouldn’t Be Calling Yourself Agnostic

September 4, 2009 — After much spirited debate I have come to the conclusion that the argument presented below is…

SentinelOne analysis links service disruption to software flaw
21
Jul
2025

How IT leaders infuse cyber hygiene into daily work

Cybersecurity leaders are tasked with protecting their organizations from external and, sometimes, internal threats. But if CISOs and other technology…

New KAWA4096’s Ransomware Leverages Windows Management Instrumentation to Delete Shadow Copies
21
Jul
2025

New KAWA4096’s Ransomware Leverages Windows Management Instrumentation to Delete Shadow Copies

A sophisticated new ransomware strain named KAWA4096 has emerged in the cybersecurity landscape, showcasing advanced evasion techniques and borrowing design…

KAWA4096 Ransomware Employs WMI Techniques to Delete Backup Snapshots
21
Jul
2025

KAWA4096 Ransomware Employs WMI Techniques to Delete Backup Snapshots

Trustwave SpiderLabs has played a crucial role in monitoring new ransomware variants in the incredibly unstable ransomware threat landscape of…

21
Jul
2025

A Few Thoughts on Social Networking Tools

Ok, just a few random thoughts; I’ll do a real post later on this once things are fleshed out more….

Microsoft, CISA warn of cyberattacks targeting on-premises SharePoint servers
21
Jul
2025

Microsoft, CISA warn of cyberattacks targeting on-premises SharePoint servers

Microsoft on Saturday warned that hackers are exploiting a critical vulnerability in SharePoint, dubbed ToolShell, to launch attacks against on-premises…

Livewire Vulnerability Exposes Millions of Laravel Apps to Remote Code Execution Attacks
21
Jul
2025

Livewire Vulnerability Exposes Millions of Laravel Apps to Remote Code Execution Attacks

A critical security vulnerability in Laravel’s Livewire framework has been discovered that could expose millions of web applications to remote…

AI-Powered Cloaking Tools Help Threat Actors Hide Malicious Domains from Security Scans
21
Jul
2025

AI-Powered Cloaking Tools Help Threat Actors Hide Malicious Domains from Security Scans

Threat actors are increasingly adopting AI-powered cloaking services to obfuscate phishing domains, counterfeit e-commerce sites, and malware distribution endpoints from…

Major npm Security Incident Exposes Prettier Tooling Packages to Malware After Maintainer Falls for Phishing Scam
21
Jul
2025

Fake npm Website Used to Push Malware via Stolen Token

A phishing campaign targeting JavaScript developers has led to the compromise of several popular npm packages, including eslint-config-prettier. The breach…

Meet the deepfake fraudster who applied to work at a deepfake specialist
21
Jul
2025

Meet the deepfake fraudster who applied to work at a deepfake specialist

Last year, security company KnowBe4 helped spark a wave of interest in fraudulent workers when it revealed extensive details of…

21
Jul
2025

If You’re Agnostic, You’re Probably an Atheist

[ 2009-04-12 : I’ve decided to back off this specific argument of “atheist” applying to those that lack belief. The…