Information Security News Blog
Superbox drew consumer attention with promises of access to more than 2,200 television channels and streaming services without a subscription, all for a one-time payment of roughly $400. Yet an examination of the device...
Fake Windows updates have entered a new cycle of ClickFix campaigns, according to researchers at Huntress. Attackers are increasingly replacing bot-check pages with full-screen blue windows that perfectly mimic the Windows update interface. As...
The North Atlantic Alliance is beginning a sweeping modernization of its technical infrastructure, having secured a major contract with Google Cloud. Under the agreement, NATO will gain access to a sealed, fully air-gapped version...
The U.S. Federal Cybersecurity Agency has issued a warning about a surge in targeted attacks involving commercial surveillance tools and remote-access software. Threat actors have increasingly focused on users of popular messaging platforms, seeking...
A recent incident involving malicious files in the 3D-graphics ecosystem has revealed how vulnerable even familiar tools can become when used alongside automated features. On popular model-sharing platforms, attackers have begun uploading Blender projects...
The post–Windows 10 transition period has grown increasingly conspicuous amid rising interest in alternative operating systems. As users search for replacements to their familiar environment, one of the most Windows-oriented Linux distributions has unexpectedly...
Golden dMSA This tool exploits a new attack against delegated Managed Service Accounts called the “Golden DMSA” attack. The technique allows attackers to generate passwords for all associated dMSAs offline. Additional information is available...
The escalating saga surrounding the Salesforce ecosystem data breach has taken a new turn after the group ShinyHunters publicly claimed responsibility for its role in the incident. The events, unfolding over several months, have...
A recently patched vulnerability in Microsoft’s Windows Server Update Services has triggered a wave of attacks involving one of the most notable espionage tools of recent years. The incidents underscore how swiftly adversaries move...
A new scheme for distributing malicious links through browser push notifications is rapidly gaining traction and drawing the attention of security specialists. It is built upon the Matrix Push C2 platform, designed to covertly...
The servicing chain of the U.S. mortgage market has suffered a new disruption following an incident at SitusAMC — a key link responsible for supporting mortgage transactions, processing payments, and storing document packages for...
NVIDIA is preparing a series of patches for inclusion in the Linux 6.19 kernel, paving the way for 1.6-terabit-per-second networking on NVIDIA-Mellanox adapters. Last week, a patch was merged into the RDMA for-next branch,...