Information Security News Blog
-
Hackers have found a way to weaponize ordinary Notion notifications to steal employee credentials. The group DOUBLOON DREDGER creates fake executive accounts, sends out document-sharing invitations, and routes victims through a chain of PDF...
-
The notorious ShinyHunters group, meticulously tracked and scrutinized by ReliaQuest for months, audaciously decided to reverse roles. The malevolent actors launched a targeted assault against ReliaQuest personnel, successfully compromising a single employee account. Judging...
-
Occasionally, technological reliability hinges less upon inherent architectural age and more upon the fundamental lack of incentive for exploitation. Cybersecurity luminary Mikko Hyppönen eloquently identifies this fascinating phenomenon as “security by obsolescence.” Antiquated software...
Corporate video meetings are increasingly attracting attention not only from employees but from automated services as well, prompting Microsoft to roll out new protections within Teams. Administrators will now be able to fully block...
Malware doesn’t necessarily need to communicate with an attacker’s server to remain under their control. Researcher Dominic Reichel discovered a previously unknown Windows backdoor called Sleepwalker, which sits silently in memory and waits for...
Two distinct Microsoft SharePoint vulnerabilities have seamlessly merged to form a devastating, fully operational exploit chain. This formidable combination empowers malicious actors to execute arbitrary code remotely on a targeted server, completely bypassing the...
An ordinary-looking message from corporate IT support on Microsoft Teams can end in a stolen Windows password and full access to a company’s internal network. Researchers at Expel discovered a new malware family called...
The malicious software known as Hydra Remote empowers an attacker to generate a covert desktop environment on an infected computer. Crucially, this secondary workspace remains entirely invisible to the legitimate device owner. The attacker...
The North Korean threat group Kimsuky has learned to leave behind multiple pathways back into a compromised computer, with several of them disguised as entirely ordinary software. Researchers at ENKI WhiteHat uncovered a series...
Intel processors feature a critical security mechanism designed specifically to prevent the Windows kernel from accessing standard application memory. However, during certain system calls, this vital protection mysteriously deactivates itself. A security specialist recently...
Cybercriminals no longer need to scour underground networks for illicit neural networks. They no longer must lease expensive servers or meticulously train custom models. Astonishingly, a standard monthly subscription, priced similarly to a streaming...
A common web server misconfiguration has left tens of thousands of Git repositories publicly accessible, exposing keys to cloud services, payment systems, and other critical resources along with them. Researchers at Intruder scanned 3.5...
For months, the group calling itself BLACKNET-00 marketed itself almost as a turnkey cyberweapon supplier, capable of attacking factories, power plants, and water supply systems. After examining actual samples of its tools, researchers discovered...
North Korean hackers are increasingly handing off stolen cryptocurrency to professional intermediaries, who blend it with other criminal proceeds and convert it into conventional currency. Between January 2024 and September 2025, North Korea stole...
An enterprising researcher successfully compelled Apple Find My to operate within an environment completely unsupported by the corporation. A 22-year-old security specialist, operating under the pseudonym Zerotistic, cleverly registered a Linux machine within Apple’s...