Information Security News Blog
Google has developed an artificial intelligence system called Big Sleep, which is already proving valuable in the field of cybersecurity. This week, Apple formally thanked the company for identifying five vulnerabilities in WebKit, the...
Behavioral User-driven Deceptive Activities Framework (BUDA) is a cutting-edge solution designed to enhance deception operations in cybersecurity by automating the simulation of realistic user behaviors within decoy environments. By integrating strategic narratives, dynamic user...
Microsoft has uncovered a new strain of malware, dubbed SesameOp, and released detailed findings on its operation. This backdoor stands out for its unconventional design: its creators leveraged the OpenAI Assistants API as a...
Cybercriminals have discovered a way to exploit digital tools to steal tangible goods from trucks and warehouses. According to researchers at Proofpoint, since the beginning of 2025, an active criminal group has been targeting...
Hackers have breached the DeFi protocol Balancer, stealing over $120 million worth of cryptocurrency. Analysts estimate that roughly $99 million of the stolen assets were in Ether (ETH). The incident, which occurred in the...
South Korea’s largest mobile carrier, SK Telecom, has reported a dramatic decline in operating profit for the third quarter — nearly 90% lower than in 2024. The company attributed the plunge to costs stemming...
Former employees of the U.S.-based company DigitalMint, which specialized in negotiating with hackers on behalf of ransomware victims, have themselves been implicated in conducting cyberattacks. The U.S. Department of Justice has charged them with...
Peter Williams, former chief executive of Trenchant—a division within the defense contractor L3Harris—has recently pleaded guilty to stealing and selling classified cyber-espionage tools to a foreign intermediary. Court documents and a TechCrunch investigation have...
FortiGuard’s mid-year report for 2025 reveals that financially motivated attackers are increasingly eschewing complex exploits and bespoke malware. Rather than deploying heavy toolsets, they rely on legitimate accounts and authorized remote-access applications to slip...
Luminaut is a utility to scope cloud environment exposure for triage. The goal is to quickly identify exposed resources and collect information to start an investigation. Starting from the public IP addresses of AWS...
Experts from Palo Alto Networks Unit 42 have described a new attack vector targeting multi-agent systems, known as agent session smuggling — a technique in which a malicious remote agent embeds hidden instructions during...
Developer Joel Severin has unveiled an experimental build of the Linux kernel ported to the WebAssembly format, enabling it to run directly within a web browser. The demonstration version operates in a shell environment...