darkreading
1Password Addresses Critical AI Browser Agent Security Gap
7 months 3 weeks ago
The security company looks to tackle new authentication challenges that could lead to credential leakage, as enterprises increasingly leverage AI browser agents.
Arielle Waldman
RondoDox Botnet: an 'Exploit Shotgun' for Edge Vulns
7 months 3 weeks ago
RondoDox takes a hit-and-run, shotgun approach to exploiting bugs in consumer edge devices around the world.
Nate Nelson, Contributing Writer
The Fight Against Ransomware Heats Up on the Factory Floor
7 months 3 weeks ago
Ransomware gangs continue to set their sights on the manufacturing industry, but companies are taking steps to protect themselves, starting with implementing timely patch management protocols.
Arielle Waldman
Feds Shutter ShinyHunters Salesforce Extortion Site
7 months 3 weeks ago
The group warned that law-enforcement crackdowns are imminent in the wake of the takedown, but its extortion threats against Salesforce victims remain active.
Kristina Beek
Chinese Hackers Use Velociraptor IR Tool in Ransomware Attacks
7 months 3 weeks ago
In a new wrinkle for adversary tactics, the Storm-2603 threat group is abusing the digital forensics and incident response (DFIR) tool to gain persistent access to victim networks.
Rob Wright
Microsoft Adds Agentic AI Capabilities to Sentinel
7 months 3 weeks ago
Microsoft previewed the Sentinel security graph and MCP server at its annual Microsoft Secure virtual event earlier this month.
Jeffrey Schwartz
Deepfake Awareness High at Orgs, But Cyber Defenses Badly Lag
7 months 3 weeks ago
The vast majority of organizations are encountering AI-augmented threats, but remain confident in their defenses, despite inadequate detection investment and more than half falling to successful attacks.
Robert Lemos, Contributing Writer
Commentary Section Launches New, More Opinionated Era
7 months 3 weeks ago
Dark Reading is looking for leading industry experts with a point of view they want to share with the rest of the cybersecurity community for our new Commentary section.
Becky Bracken
GitHub Copilot 'CamoLeak' AI Attack Exfiltrates Data
7 months 3 weeks ago
While GitHub has advanced protections for its built-in AI agent, a researcher came up with a creative proof-of-concept (PoC) attack for exfiltrating code and secrets via Copilot.
Nate Nelson, Contributing Writer
SonicWall: 100% of Firewall Backups Were Breached
7 months 3 weeks ago
SonicWall said a breach it disclosed last month affected firewall configuration files for all customers who have used SonicWall’s cloud backup service — up from its previous 5% estimate.
Alexander Culafi
Fastly CISO: Using Major Incidents as Career Catalysts
7 months 3 weeks ago
Marshall Erwin shares how crisis leadership shaped his path from CIA analyst to the US Congress to protecting global Web traffic at Fastly.
Kristina Beek
Take Note: Cyber-Risks With AI Notetakers
7 months 3 weeks ago
Transcription applications are joining your online meetings. Here's how to create policies for ensuring compliance and security of your information.
Gadi Evron, Joe Sullivan
Chaos Ransomware Upgrades With Aggressive New C++ Variant
7 months 3 weeks ago
New encryption, wiper, and cryptocurrency-stealing capabilities make the evolving ransomware-as-a-service operation more dangerous than ever.
Elizabeth Montalbano, Contributing Writer
Vampire Bot Malware Sinks Fangs Into Job Hunters
7 months 3 weeks ago
The campaign is the latest by BatShadow, one of a growing number of cybercrime groups operating out of Vietnam.
Jai Vijayan, Contributing Writer
Red Hat Hackers Team Up With Scattered Lapsus$ Hunters
7 months 3 weeks ago
Crimson Collective, which recently breached the GitLab instance of Red Hat Consulting, has teamed up with the notorious cybercriminal collective.
Rob Wright
LockBit, Qilin & DragonForce Join Forces in Ransomware 'Cartel'
7 months 3 weeks ago
The three extortion gangs also invited other e-crime attackers to join their collaboration to share attack information and resources, in the wake of LockBit 5.0 being released.
Alexander Culafi
Framelink Figma MCP Server Opens Orgs to Agentic AI Compromise
7 months 3 weeks ago
Patch now: A bug (CVE-2025-53967) in a third-party option for connecting Figma to agentic AI can lead to remote code execution (RCE).
Tara Seals
China-Nexus Actors Weaponize 'Nezha' Open Source Tool
7 months 3 weeks ago
A threat actor is putting a spin on classic remote monitoring and management (RMM) attacks, using a Chinese open source tool instead.
Nate Nelson, Contributing Writer
Calling All Influencers: Spear-Phishers Dangle Tesla, Red Bull Jobs
7 months 3 weeks ago
Wanna work for a hot brand? Cyberattackers continue to evolve lures for job seekers in an impersonation campaign aimed at stealing résumés from social media pros.
Elizabeth Montalbano, Contributing Writer
Checked
8 hours 50 minutes ago
Public RSS feed
darkreading feed