Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

4 Arrested in UK Over M&S, Co-op, Harrods Hacks

The UK's National Crime Agency arrested four people, who some experts believe are connected to the notorious cybercriminal collective known as Scattered Spider.

DARKReading
SIM Swap Fraud Is Surging — and That's a Good Thing

Now it's time to build systems that attackers can't reroute with a phone call.

North American APT Uses Exchange Zero-Day to Attack China

Stories about Chinese APTs attacking the US and Canada are plentiful. In a turnabout, researchers found what they believe is a North American entity attacking a Chinese entity, thanks to a mysterious issue in Microsoft Exchange.

#microsoft#zero_day
Browser Exploits Wane as Users Become the Attack Surface

For browsers, exploitation is out — and getting users to compromise their own systems is in. Improved browser security has forced attackers to adapt their tactics, and they've accepted the challenge.

An NVIDIA Container Bug & Chance to Harden Kubernetes

A container escape flaw involving the NVIDIA Container Toolkit could have enabled a threat actor to access AI datasets across tenants.

New AI Malware PoC Reliably Evades Microsoft Defender

Worried about hackers employing LLMs to write powerful malware? Using targeted reinforcement learning (RL) to train open source models in specific tasks has yielded the capability to do just that.

AirMDR Tackles Security Burdens for SMBs With AI

The security startup provides managed detection and response services for small to midsize businesses to detect and address modern threats, such as ransomware, phishing attacks, and malicious insiders.

Rubio Impersonator Signals Growing Security Threat From Deepfakes

An impostor who posed as the secretary of state in text and voice communications with diplomats and politicians demonstrates the increased sophistication of and national security threat posed by the AI technology.

Know Your Enemy: Understanding Dark Market Dynamics

To help counter crime, today's organizations require a cyber-defense strategy that incorporates the mindset of the cybercriminal.

SatanLock Next in Line for Ransomware Group Shutdowns

Though the victims list on its site has since been taken down, the group plans on leaking the rest of the files stolen from its victims.