Information Security News Blog
Logitech has informed the U.S. Securities and Exchange Commission (SEC) that it experienced unauthorized data exfiltration as a result of a previously unknown vulnerability in third-party software. The incident involved targeted access to a...
Akira’s sustained activity continues to alarm investigators in the United States and Europe, who released an updated set of recommendations for organizations confronting this ransomware operation. The document outlines newly observed tactics used in...
A nearly forgotten utility command has unexpectedly returned to the spotlight after being discovered in new infection chains targeting Windows devices. A mechanism long regarded as a relic of the early internet is now...
JonMon-Lite is a research proof-of-concept “Remote Agentless EDR” that creates an ETW Trace Session through a Data Collector Set. This session can be created locally or remotely. Events Collected JonMon-Lite collects the following data:...
Ahead of the major pre-holiday sales, a new cause for concern has emerged: popular children’s toys equipped with built-in AI algorithms have begun behaving unpredictably, offering children advice that directly endangers their safety. A...
Ensuring that older software continues to function on newer versions of Windows has been a challenge shadowing Microsoft since the operating system’s earliest days. Compatibility has always been one of the principal conditions of...
The payment service Checkout.com has faced an extortion attempt: the ShinyHunters group claimed to have obtained data linked to the company and demanded a ransom. The investigation revealed that the attackers had managed to...
A Chinese cyber-espionage group designated by Anthropic as GTG-1002 exploited the capabilities of the Claude Code model in an attempt to breach roughly thirty major corporations and government entities. This is the first documented...
A serious issue has been uncovered in the digital photo-frame market: Android-based devices sold under the Uhale brand are downloading malicious components during system startup and contain a series of critical vulnerabilities that allow...
Cisco Talos experts have identified an active wave of attacks involving a new strain of ransomware known as Kraken. The group behind it began operating in February 2025 and employs double-extortion tactics without confining...
According to the third installment of the analysis of the Great Chinese Firewall, leaks concerning the GFW infrastructure reveal a system that appears not as a mere collection of filters, but as an integral...
In Linux kernel 6.10, a new system call, mseal, has been introduced, enabling developers to “seal” memory regions and protect them from modification. Its purpose is to prevent sudden overwrites or alterations of critical...