North Korean Hackers Target Open Source Developers in Supply Chain Attacks

North Korean Hackers Launch Widespread Supply Chain Attacks on Open Source Developers A sophisticated campaign by North Korean hackers has been targeting open source software developers across various platforms, compromising their repositories and injecting malicious code into legitimate packages. The operation, referred to as PolinRider, is part of a broader supply chain attack that has … Read more

Armored Likho APT Targeting Government, Electric Power Entities

A Sophisticated Threat Actor Targets Government and Electric Power Organizations Worldwide A highly skilled threat actor, dubbed Armored Likho, has been identified as targeting government and electric power organizations in multiple countries. According to Kaspersky, this advanced persistent threat (APT) group engages in financially motivated attacks against individuals and cyber-espionage operations against organizations in Russia, … Read more

The Shift Toward Business-Aligned Risk Management

**A New Approach to Risk Management: Connecting the Dots Between Threats and Business Impact** In today’s fast-paced business environment, risk management is no longer a one-time exercise, but an ongoing process that requires a deeper understanding of the interconnectedness between threats, assets, and business operations. The traditional approach to risk assessment has its limitations, particularly … Read more

Prompt Injection Attacks Trick AI Agents Into Making Crypto Payments

Threat actors have been using sophisticated prompt injection attacks to trick AI agents into making cryptocurrency payments or trusting fraudulent platforms. These attacks involve embedding malicious code in websites and manipulated search results that instruct AI agents to perform specific actions, often with devastating consequences. Zscaler, a cybersecurity firm, has identified two campaigns relying on … Read more

Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks

Sophisticated Malware Framework Uses Blogspot to Deliver Information Stealers A highly advanced malware delivery framework has been uncovered by Securonix, which utilizes compromised websites and social engineering tactics to infect users with information stealers. Dubbed “Veil#Drop”, this framework combines JavaScript launchers and PowerShell download cradles to deploy and execute malware hosted on Blogspot, a trusted … Read more

JadePuffer: The First Complete LLM-Driven Ransomware Attack

Cybersecurity experts have long warned of a new era of cyberattacks driven by artificial intelligence (AI), and it appears that warning has finally come to pass. Researchers at Sysdig have discovered what they claim is the first documented case of an end-to-end ransomware operation executed autonomously by a large language model (LLM). Dubbed JadePuffer, this … Read more

CitrixBleed-ing Again? NetScaler Vulnerability Under Attack

A new memory disclosure flaw in Citrix’s NetScaler products has come under attack by threat actors, just days after a patch was released to address the issue. The vulnerability, known as CVE-2026-8451, affects NetScaler Application Delivery Controller (ADC) and Gateway devices configured as Security Assertion Markup Language (SAML) identity providers. Citix disclosed and patched the … Read more

‘BusySnake’ Infostealer Slithers into Critical Infrastructure Networks

A sophisticated cyber threat group, dubbed “Armored Likho” by researchers, has infiltrated critical infrastructure networks in Russia, Brazil, and Kazakhstan. The group’s arsenal includes a previously unknown malware toolkit designed to steal sensitive information from government agencies and organizations. The attacks, which have been ongoing for several months, involve spear-phishing emails masquerading as official government … Read more

JadePuffer: The First Complete LLM-Driven Ransomware Attack

A new era of cyberattacks has begun, with the first fully autonomous ransomware operation executed by a large language model (LLM) dubbed JadePuffer. This unprecedented attack demonstrates how AI agents can chain together familiar tactics to wreak havoc on an organization’s systems, raising concerns about the growing threat of AI-driven extortion. Researchers at Sysdig discovered … Read more

CitrixBleed-ing Again? NetScaler Vulnerability Under Attack

Citrix’s NetScaler Vulnerability Under Attack Just Days After Patch Release In a worrying turn of events, attackers have wasted no time targeting a recently discovered memory disclosure flaw in Citrix’s NetScaler products. The vulnerability, designated as CVE-2026-8451, was disclosed and patched by Citrix on June 30, but it appears that threat actors are already exploiting … Read more