Category: Information Security
Unidentified threat actors successfully breached the National Association of Insurance Commissioners (NAIC). They exploited a critical vulnerability within Oracle PeopleSoft. Consequently, the organization temporarily suspended assigning investment ratings to insurance assets. Furthermore, they disabled...
Over five billion devices currently support rapid proximity file sharing. Popular mechanisms include Apple’s AirDrop and Google’s Quick Share. Consequently, these features simplify sharing photos and documents without exchanging contact information. However, researchers from...
Guest complaints usually demand immediate attention from hospitality professionals. Consequently, malicious actors recently exploited this urgency. They targeted Booking.com partners across Japan using deceptive emails. Attackers sent these messages posing as dissatisfied guests. They...
A browser search bar often looks safe. A bad Chrome extension, though, can turn it into a data trap before any results even show up. Microsoft recently found an extension called “Search for perplexity...
The Silent Infiltration Strategy A multi-year intelligence operation rarely reveals itself through a single catastrophic breach. Instead, it emerges through a clandestine sequence of quiet infiltrations. Consequently, Unit 42 researchers linked such a campaign...
A phone number has long served as a key to your finances, no less than a banking password. Now Polish law enforcement has exposed a group that built its attacks around exactly that kind...
The Enduring Reach of Cyber Investigations Cyber operations rarely conclude at the exact moment of a breach. Sometimes, investigations catch up with suspects many years later. Consequently, authorities in Montenegro apprehended an Iranian national....
Attackers have begun creating fake ChatGPT workspaces dressed up as real companies. Then they invite employees through genuine OpenAI emails. The scheme is dangerous precisely because it does not look like ordinary phishing. The...
Researchers have uncovered a network of malicious extensions inside the official Microsoft Edge store. These add-ons masqueraded as useful tools and operated for years alongside legitimate extensions. Disguised as ad blockers, weather widgets, video...
A popular ad-blocking extension on YouTube proves far more perilous than its Chrome Web Store page suggests. Researchers from Island dismantled Adblock for YouTube recently. Consequently, they discovered an architecture capable of transforming this...
The more stealthy a malicious software remains, the longer its capacity to endure within a compromised system. This guiding philosophy drives the North Korean-linked Lazarus group in its latest offensive against banking institutions and...
Cyberattacks against critical infrastructure increasingly resemble strategic positioning rather than isolated breaches. Consequently, threat actors prepare for future disruptions. The Australian Security Intelligence Organisation (ASIO) recently reported a severe incident. Foreign Advanced Persistent Threat...