Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

'Klopatra' Trojan Makes Bank Transfers While You Sleep

A sophisticated new banking malware is hard to detect, capable of stealing lots of money, and infecting thousands of people in Italy and Spain.

DARKReading
China Exploited New VMware Bug for Nearly a Year

A seemingly benign privilege-escalation process in VMware and other software has likely benefited attackers and other malware strains for years, researchers noted.

#vmware
Can Shadow AI Risks Be Stopped?

Agentic AI has introduced abundant shadow artificial intelligence (AI) risks. Cybersecurity startup Entro Security extends its platform to help enterprises combat the growing issue.

'Trifecta' of Google Gemini Flaws Turn AI Into Attack Vehicle

Flaws in individual models of Google's AI suite created significant security and privacy risks for users, demonstrating the need for heightened defenses.

AI-Powered Voice Cloning Raises Vishing Risks

A researcher-developed framework could enable attackers to conduct real-time conversations using simulated audio to compromise organizations and extract sensitive information.

IoT Security Flounders Amid Churning Risk

The Internet of Things (IoT) has made everything more interconnected than ever, but an important US government security initiative is stuck in limbo even as threat actors step up attacks on everything from medical gear to printers.

Sneaky, Malicious MCP Server Exfiltrates Secrets via BCC

The first known malicious MCP server is an AI integration tool that automatically sends email such as those related to password resets, account confirmations, security alerts, invoices, and receipts to threat actors.

Akira Hits SonicWall VPNs in Broad Ransomware Campaign

Akira ransomware actors are currently targeting SonicWall firewall customers vulnerable to a bug discovered last year.

Ukrainian Cops Spoofed in Fileless Phishing Attacks on Kyiv

Attackers impersonate the National Police of Ukraine to deploy Amatera Stealer and PureMiner, using malicious Scalable Vector Graphics to trick victims.

Volvo Employee SSNs Stolen in Supplier Ransomware Attack

Three international vehicle manufacturers have fallen to supply chain cyberattacks in the past month alone.