U.S. Secret Service Seizes Russian Garantex Crypto Exchange Website

07/03/2025 0 Comments 0 tags

A coalition of international law enforcement agencies has seized the website associated with the cryptocurrency exchange Garantex (“garantex[.]org”), nearly three years after the service was sanctioned by the U.S. Treasury

This Malicious PyPI Package Stole Ethereum Private Keys via Polygon RPC Transactions

07/03/2025 0 Comments 0 tags

Cybersecurity researchers have discovered a malicious Python package on the Python Package Index (PyPI) repository that’s equipped to steal a victim’s Ethereum private keys by impersonating popular libraries. The package

What PCI DSS v4 Really Means – Lessons from A&F Compliance Journey

07/03/2025 0 Comments 0 tags

Access on-demand webinar here Avoid a $100,000/month Compliance Disaster March 31, 2025: The Clock is Ticking. What if a single overlooked script could cost your business $100,000 per month in

Safe{Wallet} Confirms North Korean TraderTraitor Hackers Stole $1.5 Billion in Bybit Heist

07/03/2025 0 Comments 0 tags

Safe{Wallet} has revealed that the cybersecurity incident that led to the Bybit $1.5 billion crypto heist is a “highly sophisticated, state-sponsored attack,” stating the North Korean threat actors behind the

PHP-CGI RCE Flaw Exploited in Attacks on Japan’s Tech, Telecom, and E-Commerce Sectors

07/03/2025 0 Comments 0 tags

Threat actors of unknown provenance have been attributed to a malicious campaign predominantly targeting organizations in Japan since January 2025. “The attacker has exploited the vulnerability CVE-2024-4577, a remote code

Medusa Ransomware Hits 40+ Victims in 2025, Demands $100K–$15M Ransom

06/03/2025 0 Comments 0 tags

The threat actors behind the Medusa ransomware have claimed nearly 400 victims since it first emerged in January 2023, with the financially motivated attacks witnessing a 42% increase between 2023

EncryptHub Deploys Ransomware and Stealer via Trojanized Apps, PPI Services, and Phishing

06/03/2025 0 Comments 0 tags

The financially motivated threat actor known as EncryptHub has been observed orchestrating sophisticated phishing campaigns to deploy information stealers and ransomware, while also working on a new product called EncryptRAT.

Elastic Releases Urgent Fix for Critical Kibana Vulnerability Enabling Remote Code Execution

06/03/2025 0 Comments 0 tags

Elastic has rolled out security updates to address a critical security flaw impacting the Kibana data visualization dashboard software for Elasticsearch that could result in arbitrary code execution. The vulnerability,

Over 1,000 WordPress Sites Infected with JavaScript Backdoors Enabling Persistent Attacker Access

06/03/2025 4 Comments 0 tags

Over 1,000 websites powered by WordPress have been infected with a third-party JavaScript code that injects four separate backdoors. “Creating four backdoors facilitates the attackers having multiple points of re-entry

Outsmarting Cyber Threats with Attack Graphs

06/03/2025 0 Comments 0 tags

Cyber threats are growing more sophisticated, and traditional security approaches struggle to keep up. Organizations can no longer rely on periodic assessments or static vulnerability lists to stay secure. Instead,