BigBear 2.0 uses Evilginx2 to steal Microsoft 365 credentials and session cookies, bypassing MFA through phishing.
Ditch the monthly subscription fees. Here's how a cheap Raspberry Pi and PiVPN can create a free, private tunnel back to your ...
ScreenConnect abuse shows worm-like propagation of a four-stage VBScript chain; ConnectWise advises disabling file transfers ...
Hackers are exploiting a chain of two recently disclosed vulnerabilities in MikroTik routers to take control of devices with ...
Attackers are actively exploiting an unauthenticated remote access flaw in MikroTik RouterOS, and network administrators ...
Fake virus or tracking warnings, bogus photo-recovery apps, and false “storage almost full” notices are among thousands of ...
SonicWall patched two zero-days in SMA 1000 VPNs, including a CVSS 10 pre-auth SSRF flaw, after confirming active ...
This week’s cybersecurity recap covers AI agents breaching Hugging Face, Chinese spy proxies, router backdoors, PaperCut ...
Hackers are abusing Google Docs and Claude.ai to deliver malware, steal passwords, and target crypto wallets through convincing social engineering attacks.
Rob Allen from ThreatLocker joins us to discuss securing agentic AI with zero-trust controls, least privilege, and access controls to limit what agents can access and do. This segment is sponsored by ...
If your Android phone suddenly can’t reach the Google Play Store, or a VPN toggle you never turned on shows up active, you might be dealing with ToxicPanda, an Android banking trojan that has quietly ...
An Iranian-linked threat actor has expanded its malware toolset with a backdoor and reverse SSH tunneling utility, while newly identified infrastructure points to potential targeting across Europe and ...