Information Security News Blog
Operators of the SystemBC botnet have assembled a global fabric built on compromised commercial virtual servers, sustaining roughly 1,500 active nodes each day. These machines have been repurposed into an infrastructure for relaying malicious...
ScreenshotBOF An alternative screenshot capability for Cobalt Strike that uses WinAPI and does not perform a fork & run. The screenshot was downloaded in memory. Changelog v2.0 JPEG is used in place of BMP...
OpenAI has patched a critical vulnerability known as ShadowLeak, which allowed its cloud-based agent Deep Research to silently siphon personal data from connected sources and exfiltrate it to external servers—even without the victim opening...
Cybercriminals have discovered a way to bypass mobile operators’ filters and launch large-scale waves of fraudulent text messages. Whereas past attacks relied on databases of phone numbers and automated distribution through conventional networks, attackers...
Microsoft narrowly avoided a vulnerability that could have led to the mass compromise of its cloud customers: Dutch researcher Dirk-jan Mollema uncovered two interrelated flaws in the Entra ID identity management service (formerly Azure...
Microsoft has unveiled a new generation of data centers designed specifically for artificial intelligence. At the heart of this initiative stands Fairwater, a vast complex in Wisconsin described by the company as an “AI...
Several major European airports—including London Heathrow, Berlin Brandenburg, and Brussels—faced flight delays and cancellations on Saturday following a cyberattack against a company responsible for passenger check-in systems. Heathrow officials reported that supplier Collins Aerospace,...
Leveraging on LLM’s abilities to mimic cognitive human agents, WAFSmith aims to reduce the friction of WAF rule governance from rule creation to deployment in minutes. It is designed as a highly disruptive tool...
Researchers from the ByteRay team have disclosed a critical vulnerability in TP-Link routers that enables remote execution of arbitrary code by bypassing Address Space Layout Randomization (ASLR). Tracked as CVE-2025-9961 (CVSS score: 8.6), the...
Jaguar Land Rover has found itself mired in a protracted crisis following a recent cyberattack that crippled both its information systems and manufacturing operations. The company announced that automobile production will not resume until...
Experts from Zscaler ThreatLabz have uncovered two malicious packages in the PyPI repository that, upon installation and import, secretly deploy the SilentSync Python trojan—a threat capable of seizing control of developer environments and exfiltrating...
An independent researcher named Andreas, author of the blog Anagogistis, has uncovered severe vulnerabilities in the Linux clients of PureVPN, flaws that undermine the very foundations of anonymity and traffic protection. The issues affect...