Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Iranian State Hackers Use SSL.com Certificates to Sign Malware

Security researchers say multiple threat groups, including Iran's Charming Kitten APT offshoot Subtle Snail, are deploying malware with code-signing certificates from the Houston-based company.

DARKReading
#ssl
Prep is Underway, But 2026 FIFA World Cup Poses Significant Cyber Challenges

The world's most-popular sports contest starts in June 2026 across 16 venues in three countries: Securing the event infrastructure from cyber threats will require massive collaboration.

Cisco's Wave of Actively Exploited Zero-Day Bugs Targets Firewalls, IOS

Patch now: Cisco recently disclosed four actively exploited zero-days affecting millions of devices, including three targeted by a nation-state actor previously discovered to be behind the "ArcaneDoor" campaign.

Chinese APT Drops 'Brickstorm' Backdoors on Edge Devices

The China-linked cyber-espionage group UNC5221 is compromising network appliances that cannot run traditional EDR agents to deploy new versions of the "Brickstorm" backdoor.

Salesforce AI Agents Forced to Leak Sensitive Data

Yet again researchers have uncovered an opportunity (dubbed "ForcedLeak" for indirect prompt injection against autonomous agents lacking sufficient security controls — but this time the risk involves PII, corporate secrets, physical location data, and so much more.

How Cloud Service Disruptions Are Making Resilience Critical for Developers

Outages affecting DevOps tools threaten to leave developers coding like it's 1999. How serious is the threat and what can companies do?

CISA: Attackers Breach Federal Agency via Critical GeoServer Flaw

Threat actors exploited CVE-2024-36401 less than two weeks after it was initially disclosed and used it to gain access to a large federal civilian executive branch (FCEB) agency that uses the geospatial mapping data.

The Fall of Scattered Spider? Teen Member Surrenders Amid Group's Shutdown Claims

The cybercrime group continues to gain attention despite its apparent shutdown last week.

Russia Targets Moldovan Election in Disinformation Play

Researchers have tracked a Russian disinformation campaign against upcoming Moldovan elections, linking it to a previous campaign that began in 2022.

Threat Actor Deploys 'OVERSTEP' Backdoor in Ongoing SonicWall SMA Attacks

Hackers tracked as UNC6148 are attacking SonicWall security devices by installing hidden software, allowing them to control systems, steal passwords, and hide their activities.