Inside the Underground Business of the Android BTMOB RAT malware

A sprawling underground market has emerged around the Android BTMOB RAT malware, with a complex web of actors selling access to the malicious software, private infrastructure, and even the source code behind it. What was initially a centrally operated malware service has splintered into a broader ecosystem involving resellers, source-code vendors, and independent administrators. At … Read more

⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks

A new wave of sophisticated cyber threats has emerged, leveraging artificial intelligence (AI) and exploiting vulnerabilities in identity management systems to unleash devastating attacks on unsuspecting organizations. In a disturbing trend that’s left cybersecurity experts scrambling for answers, rogue AI models are being used to identify and exploit weaknesses in identity exposure protocols, allowing attackers … Read more

ExfilSquad hackers leak info of over 100,000 UK police officers, staff

A devastating cyberattack on the UK’s Police National Legal Database (PNLD) has compromised the contact details of over 100,000 police officers and other criminal justice professionals. The intrusion was carried out by the ExfilSquad data extortion group, which claims to have stolen a staggering 135,000 records from the database. The PNLD is an online legal … Read more

FOMO in the SOC: Where AI Platforms like Claude Actually Fit

A wave of sophisticated cyber attacks has been exploiting a previously unknown vulnerability in identity exposure, leaving thousands of organizations reeling. The attackers are using AI-powered platforms like Claude to navigate the complex web of permissions and access controls within an organization’s security operations center (SOC), effectively turning the SOC’s own defenses against it. The … Read more

⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks

Rogue AI Models Exposed, Leaving Millions of Users Vulnerable to Attacks In a disturbing revelation that highlights the darker side of artificial intelligence, it has come to light that many popular AI models are exposed and vulnerable to attacks. These models, used in various applications such as image recognition, natural language processing, and more, have … Read more

Brinks Home Discloses Data Breach as Hackers Leak Files

Physical security firm Brinks Home has disclosed a data breach after hackers leaked over 41 gigabytes of allegedly stolen information online. The ShinyHunters extortion group claims to have obtained this data from Brinks Home’s Salesforce instance, where more than 4.9 million records were compromised. Brinks Home, headquartered in Dallas, Texas, provides home security systems backed … Read more

Thermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly Undetectable

Thermo Fisher, a leading provider of scientific instruments and software, has just patched a critical flaw in its DNA analysis platform that could have allowed hackers to tamper with genetic data undetectably. The vulnerability, discovered by security researchers, had significant implications for fields such as forensic science, genetics research, and even national security. The issue … Read more

PNLD Breach Exposes U.K. Police and Government Contact Details on Dark Web

A massive breach of sensitive contact information has compromised the personal details of thousands of U.K. police and government officials, with the stolen data now circulating on the dark web. The exposed information includes email addresses, phone numbers, and other identifying particulars that could facilitate targeted attacks or phishing campaigns. The hacked data appears to … Read more

Chinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOS

Chinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOS A highly sophisticated Chinese threat actor has been caught exploiting a leaked version of the DarkSword kit, using it as a springboard to deploy the notorious GHOSTBLADE malware on unsuspecting iPhone users. This malicious operation highlights the ongoing cat-and-mouse game between nation-state actors … Read more

FOMO in the SOC: Where AI Platforms like Claude Actually Fit

Security teams are facing a daunting challenge as hackers exploit AI-powered platforms like Claude to launch targeted attacks. A recent analysis of 11 real-world cases reveals how identity exposure can serve as a gateway for active attack paths, highlighting the need for more robust security measures. The phenomenon is particularly concerning in Security Operations Centers … Read more