Malicious ML Models on Hugging Face Leverage Broken Pickle Format to Evade Detection

08/02/2025 0 Comments 0 tags

Cybersecurity researchers have uncovered two malicious machine learning (ML) models on Hugging Face that leveraged an unusual technique of “broken” pickle files to evade detection. “The pickle files extracted from

DeepSeek App Transmits Sensitive User and Device Data Without Encryption

07/02/2025 0 Comments 0 tags

A new audit of DeepSeek’s mobile app for the Apple iOS operating system has found glaring security issues, the foremost being that it sends sensitive data over the internet sans

India’s RBI Introduces Exclusive “bank.in” Domain to Combat Digital Banking Fraud

07/02/2025 0 Comments 0 tags

India’s central bank, the Reserve Bank of India (RBI), said it’s introducing an exclusive “bank.in” internet domain for banks in the country to combat digital financial fraud. “This initiative aims

CISA Warns of Active Exploitation in Trimble Cityworks Vulnerability Leading to IIS RCE

07/02/2025 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned that a security flaw impacting Trimble Cityworks GIS-centric asset management software has come under active exploitation in the wild. The

AI-Powered Social Engineering: Reinvented Threats

07/02/2025 0 Comments 0 tags

The foundations for social engineering attacks – manipulating humans – might not have changed much over the years. It’s the vectors – how these techniques are deployed – that are

Microsoft Identifies 3,000 Leaked ASP.NET Keys Enabling Code Injection Attacks

07/02/2025 0 Comments 0 tags

Microsoft is warning of an insecure practice wherein software developers are incorporating publicly disclosed ASP.NET machine keys from publicly accessible resources, thereby putting their applications in attackers’ pathway. The tech

Hackers Exploiting SimpleHelp RMM Flaws for Persistent Access and Ransomware

07/02/2025 0 Comments 0 tags

Threat actors have been observed exploiting recently disclosed security flaws in SimpleHelp’s Remote Monitoring and Management (RMM) software as a precursor for what appears to be a ransomware attack. The

Ransomware Extortion Drops to $813.5M in 2024, Down from $1.25B in 2023

06/02/2025 0 Comments 0 tags

Ransomware attacks netted cybercrime groups a total of $813.5 million in 2024, a decline from $1.25 billion in 2023. The total amount extorted during the first half of 2024 stood

SparkCat Malware Uses OCR to Extract Crypto Wallet Recovery Phrases from Images

06/02/2025 0 Comments 0 tags

A new malware campaign dubbed SparkCat has leveraged a suit of bogus apps on both Apple’s and Google’s respective app stores to steal victims’ mnemonic phrases associated with cryptocurrency wallets. 

The Evolving Role of PAM in Cybersecurity Leadership Agendas for 2025

06/02/2025 0 Comments 0 tags

Privileged Access Management (PAM) has emerged as a cornerstone of modern cybersecurity strategies, shifting from a technical necessity to a critical pillar in leadership agendas. With the PAM market projected