CISOs Break Their Silence in ‘Declassified’ Docuseries

Behind Closed Doors: Cybersecurity’s Darkest Secrets Exposed in Groundbreaking Docuseries In a bold move, 11 high-profile Chief Information Security Officers (CISOs) from top organizations have opened up about their most intimate and often painful experiences with breaches, burnout, and personal struggles. The “Declassified” docuseries, launched by Red Mirror Studios, is changing the narrative around cybersecurity … Read more

Clop created custom web shell for Windchill data theft attacks

Cybersecurity Threat Actors Create Custom Web Shell to Steal Data from PTC Windchill Servers A sophisticated cyber threat has been uncovered, with hackers leveraging a custom-built web shell to steal sensitive data from PTC Windchill servers. The web shell, linked to the notorious Clop ransomware gang, is specifically designed to exploit vulnerabilities in these servers … Read more

Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000

A group of self-proclaimed “ransom busters” has claimed responsibility for hacking into servers used by notorious ransomware gangs, but their motives have raised more questions than answers. The hackers, who operate under the name Ransom Busters, are seeking to extort substantial sums from victims they claim were previously targeted by these same ransomware groups. Ransomware … Read more

Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets

Cloud Security Breach Exposes Sensitive Data as Attackers Exploit MLflow SSRF Flaw A critical vulnerability in the popular machine learning (ML) platform MLflow has been exploited by attackers, compromising sensitive data stored on cloud services. The flaw, a Server-Side Request Forgery (SSRF) bug, allows malicious actors to access and steal cloud credentials and secrets, potentially … Read more

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Microsoft’s AI-powered assistant, Copilot Personal, has a vulnerability that could allow hackers to extract sensitive data from connected applications with just one click. This flaw, discovered by researchers, is particularly concerning as it exploits a common issue in identity exposure – where an attacker gains access to a user’s digital identity and uses it to … Read more

Silent ‘TwinLoot’ Cyber Threat Operates Entirely From Microsoft’s Cloud

Microsoft’s Cloud Services Hijacked by Stealthy ‘TwinLoot’ Malware Framework A sinister malware framework, dubbed “TwinLoot” by its discoverers, has been found operating entirely from within Microsoft’s cloud services. This Python-based framework uses various Microsoft tools to disguise its malicious activity as legitimate traffic, making it a masterclass in stealth and sophistication. Researchers at Ontinue Cyber … Read more

‘Ransom Busters’: Ransomware Actor Poses as Incident-Recovery Service

Ransomware Affiliate Poses as Incident-Recovery Service, Luring Victims with False Promises of Data Recovery A sophisticated and brazen tactic has been uncovered by cybersecurity researchers, where a ransomware affiliate is posing as an incident-recovery service to lure victims into paying them for help in recovering their stolen data. Dubbed “Ransom Busters,” this malicious entity claims … Read more

CISA: Windows Task Host flaw now exploited by ransomware gangs

A Critical Windows Flaw is Now Being Exploited by Ransomware Gangs, CISA Warns The US Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that a previously patched high-severity vulnerability in Windows Task Host is being exploited by ransomware gangs. This flaw, tracked as CVE-2025-60710, allows attackers to gain SYSTEM privileges and take control of unpatched … Read more

Your Controls Block Known Attacks. What About the Behavior?

A Critical Blind Spot in Cybersecurity Defenses Exposed by Recent Study The latest Blue Report from Picus Labs, a comprehensive analysis of enterprise cybersecurity defenses, has revealed a disturbing trend. Despite a slight improvement in prevention effectiveness, the report highlights a critical blind spot in our defenses against advanced threats. The study found that even … Read more

Clop created custom web shell for Windchill data theft attacks

A custom web shell, built specifically for PTC Windchill servers, has been discovered in recent data theft attacks linked to the notorious Clop ransomware gang. The web shell’s advanced features allow it to decrypt credentials, enumerate file repositories, and steal files with ease, making it a formidable tool in the hands of cyber attackers. The … Read more