Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Pro-Russian Hackers Use Linux VMs to Hide in Windows

A threat actor known as "Curly COMrades" is using Linux VMs to remain undetected in Windows environments while conducting Russia-aligned activities.

DARKReading
#windows#linux
Inside the Playbook of Ransomware's Most Profitable Players

Successful ransomware groups have three key elements in common. Spoiler alert: indicators of success don't all revolve around artificial intelligence.

Europe Sees Increase in Ransomware, Extortion Attacks

European organizations face an escalating cyber threat landscape as attackers leverage geopolitical tensions and AI-enhanced social engineering for attacks.

SesameOp Backdoor Uses OpenAI API for Covert C2

Malware used in a months-long attack demonstrates how bad actors are misusing generative AI services in unique and stealthy ways.

Android Malware Mutes Alerts, Drains Crypto Wallets

Android/BankBot-YNRK is currently targeting users in Indonesia by masquerading as legitimate applications.

Hackers Weaponize Remote Tools to Hijack Cargo Freight

Researchers uncovered a new threat campaign in which attackers use RMM tools to steal physical cargo out of the supply chain.

Let's Get Physical: A New Convergence for Electrical Grid Security

The power grid is being attacked online and IRL. Increasingly, regulators and industry experts agree: Security teams need to focus on both cyber and physical threats, together.

AI Developed Code: 5 Critical Security Checkpoints for Human Oversight

To write secure code with LLMs developers must have the skills to use AI as a collaborative assistant rather than an autonomous tool, Madou argues.

'TruffleNet' Attack Wields Stolen Credentials Against AWS

Reconnaissance and BEC are among the malicious activities attackers commit after compromising cloud accounts, using a framework based on the TruffleHog tool.

UNC6384 Targets European Diplomatic Entities With Windows Exploit

The spear-phishing campaign uses fake European Commission and NATO-themed lures to trick diplomatic personnel into clicking malicious links.