The Hidden Threat in Your Stack: Why Non-Human Identity Management is the Next Cybersecurity Frontier

10/06/2025 0 Comments 0 tags

Modern enterprise networks are highly complex environments that rely on hundreds of apps and infrastructure services. These systems need to interact securely and efficiently without constant human oversight, which is

Rare Werewolf APT Uses Legitimate Software in Attacks on Hundreds of Russian Enterprises

10/06/2025 0 Comments 0 tags

The threat actor known as Rare Werewolf (formerly Rare Wolf) has been linked to a series of cyber attacks targeting Russia and the Commonwealth of Independent States (CIS) countries. “A

CISA Adds Erlang SSH and Roundcube Flaws to Known Exploited Vulnerabilities Catalog

10/06/2025 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added two critical security flaws impacting Erlang/Open Telecom Platform (OTP) SSH and Roundcube to its Known Exploited Vulnerabilities (KEV) catalog,

Over 70 Organizations Across Multiple Sectors Targeted by China-Linked Cyber Espionage Group

09/06/2025 0 Comments 0 tags

The reconnaissance activity targeting American cybersecurity company SentinelOne was part of a broader set of partially-related intrusions into several targets between July 2024 and March 2025. “The victimology includes a

Two Distinct Botnets Exploit Wazuh Server Vulnerability to Launch Mirai-Based Attacks

09/06/2025 0 Comments 0 tags

A now-patched critical security flaw in the Wazur Server is being exploited by threat actors to drop two different Mirai botnet variants and use them to conduct distributed denial-of-service (DDoS)

Think Your IdP or CASB Covers Shadow IT? These 5 Risks Prove Otherwise

09/06/2025 0 Comments 0 tags

You don’t need a rogue employee to suffer a breach. All it takes is a free trial that someone forgot to cancel. An AI-powered note-taker quietly syncing with your Google

⚡ Weekly Recap: Chrome 0-Day, Data Wipers, Misused Tools and Zero-Click iPhone Attacks

09/06/2025 0 Comments 0 tags

Behind every security alert is a bigger story. Sometimes it’s a system being tested. Sometimes it’s trust being lost in quiet ways—through delays, odd behavior, or subtle gaps in control.

OpenAI Bans ChatGPT Accounts Used by Russian, Iranian and Chinese Hacker Groups

09/06/2025 0 Comments 0 tags

OpenAI has revealed that it banned a set of ChatGPT accounts that were likely operated by Russian-speaking threat actors and two Chinese nation-state hacking groups to assist with malware development,

New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally

08/06/2025 0 Comments 0 tags

Cybersecurity researchers have flagged a supply chain attack targeting over a dozen packages associated with GlueStack to deliver malware. The malware, introduced via a change to “lib/commonjs/index.js,” allows an attacker

Malicious Browser Extensions Infect 722 Users Across Latin America Since Early 2025

08/06/2025 0 Comments 0 tags

Cybersecurity researchers have shed light on a new campaign targeting Brazilian users since the start of 2025 to infect users with a malicious extension for Chromium-based web browsers and siphon