darkreading
ColdRiver Drops Fresh Malware on Targets
17 hours 25 minutes ago
The Russia-backed threat actor's latest cyber spying campaign is a classic example of how quickly sophisticated hacking groups can pivot when exposed.
Jai Vijayan, Contributing Writer
International Sting Takes Down SIM Box Criminal Network
17 hours 50 minutes ago
The operation took down a massive SIM card fraud network that provided fake phone numbers from more than 80 countries to criminals.
Kristina Beek
Is Your Car a BYOD Risk? Researchers Demonstrate How
18 hours 14 minutes ago
If an employee's phone connects to their car and then their corporate network, an attack against the car can reach the company.
Nate Nelson, Contributing Writer
Flawed Vendor Guidance Exposes Enterprises to Avoidable Risk
20 hours 34 minutes ago
Oracle E-Business Suite customers received conflicting deployment guidance, leaving enterprises exposed a recent zero-day flaw, Andrew argues.
Dan Andrew
New Microchip Tech Protects Vehicles from Laser Attacks
23 hours 24 minutes ago
"FD-SOI" makes hardware attacks on silicon chips more difficult. And, researchers argue, it'll help OEMs with regulatory compliance.
Nate Nelson, Contributing Writer
Self-Propagating GlassWorm Attacks VS Code Supply Chain
1 day ago
The sophisticated worm — which uses invisible code to steal credentials and turn developer systems into criminal proxies — has so far infected nearly 36k machines.
Elizabeth Montalbano, Contributing Writer
Cyber Academy Founder Champions Digital Safety for All
3 days 6 hours ago
Aliyu Ibrahim Usman, founder of the Cyber Cadet Academy in Nigeria, shares his passion for raising cybersecurity awareness in the wake of mounting security concerns worldwide.
Arielle Waldman
Microsoft Disrupts Ransomware Campaign Abusing Azure Certificates
3 days 20 hours ago
Microsoft revoked more than 200 digital certificates that threat actors used to sign fake Teams binaries that set the stage for Rhysida ransomware attacks.
Rob Wright
AI Agent Security: Whose Responsibility Is It?
3 days 22 hours ago
The shared responsibility model of data security, familiar from cloud deployments, is key to agentic services, but cybersecurity teams and corporate users often struggle with awareness and managing that risk.
Alexander Culafi
AI Chat Data Is History's Most Thorough Record of Enterprise Secrets. Secure It Wisely
3 days 23 hours ago
AI interactions are becoming one of the most revealing records of human thinking, and we're only beginning to understand what that means for law enforcement, accountability, and privacy.
Rob T. Lee
Cyberattackers Target LastPass, Top Password Managers
4 days 18 hours ago
Be aware: a rash of phishing campaigns are leveraging the anxiety and trust employees have in password vaults securing all of their credentials.
Nate Nelson, Contributing Writer
Leaks in Microsoft VS Code Marketplace Put Supply Chain at Risk
4 days 18 hours ago
Researchers discovered more than 550 unique secrets exposed in Visual Studio Code marketplaces, prompting Microsoft to bolster security measures.
Rob Wright
China Hackers Test AI-Optimized Attack Chains in Taiwan
4 days 21 hours ago
AI might help some threat actors in certain respects, but one group is proving that its use for cyberattacks has its limits.
Nate Nelson, Contributing Writer
LevelBlue Announces Plans to Acquire XDR Provider Cybereason
5 days 15 hours ago
The deal, which builds on LevelBlue's recent acquisition of Trustwave and Aon, aims to provide customers with a broad portfolio of extended detection and response, managed detection and response, and forensic services.
Jeffrey Schwartz
'Mysterious Elephant' Moves Beyond Recycled Malware
5 days 17 hours ago
The cyber-espionage group has been using sophisticated custom tools to target government and diplomatic entities in South Asia since early 2025.
Jai Vijayan, Contributing Writer
F5 BIG-IP Environment Breached by Nation-State Actor
5 days 19 hours ago
F5 disclosed a breach this week that included zero-day bugs, source code, and some customer information.
Alexander Culafi
Harvard University Breached in Oracle Zero-Day Attack
5 days 23 hours ago
The Clop ransomware group claimed responsibility for stealing the university's data as part of a broader campaign against Oracle customers.
Kristina Beek
Africa Remains Top Global Target, Even as Attacks Decline
6 days 6 hours ago
Organizations across the continent saw 10% fewer attacks in September, but Africa remains the most attacked region in the world, leading the Global South.
Robert Lemos, Contributing Writer
Microsoft Drops Terrifyingly Large October Patch Update
6 days 16 hours ago
October 2025's enormous Patch Tuesday offers plenty of nightmares for admins, including actively exploited zero-days and insidious high-severity privilege-escalation bugs — and it spells curtains for Windows 10 updates.
Jai Vijayan, Contributing Writer
Checked
5 hours 53 minutes ago
Public RSS feed
darkreading feed