In Other News: Canadian Hacker Jailed, Open Source Zero-Days, Two Sentenced for ATM Jackpotting

A String of Cybersecurity Incidents Rocks the Global Community In a worrying trend that highlights the ongoing evolution of cyber threats, a series of high-profile incidents has come to light in recent weeks. From hacktivists being brought to justice to major corporations falling victim to sophisticated attacks, it’s clear that no organization is immune to … Read more

Chinese LLMs Broaden the Gap Between Attackers & Defenders

Chinese AI Models Blur the Line Between Attackers and Defenders In a worrying development for cybersecurity defenders, two new language models from Chinese firms have been released in recent weeks, showcasing capabilities that are outpacing those of their US counterparts. The release of these models has sparked concerns among experts, who warn that they could … Read more

ARToken PhaaS exposes EvilTokens’ Microsoft 365 phishing toolkit

A sophisticated phishing platform dubbed “ARToken” has been uncovered by Cisco Talos researchers, revealing a vast toolkit designed to compromise Microsoft 365 users. The platform appears to be an affiliate of the notorious EvilTokens phishing platform, which was first exposed earlier this year. The discovery was made while investigating phishing infrastructure used in an incident … Read more

Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer

A sophisticated malware threat, dubbed Armored Likho, has been uncovered targeting government agencies and power sector organizations worldwide. This cyber espionage campaign leverages the BusySnake stealer malware to infiltrate and exfiltrate sensitive data from high-profile targets. At its core, Armored Likho is a highly customized and heavily modified version of BusySnake, a notorious information-stealing malware … Read more

North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

A sophisticated cyberattack campaign has been uncovered, leveraging popular JavaScript library npm packages to steal sensitive information from software developers’ machines. The malicious activity is linked to North Korean hackers, who have been using a clever ruse to infiltrate development environments worldwide. The attackers exploited vulnerabilities in Rollup polyfills, a collection of libraries that simplify … Read more

Someone infected a spyware probe overseer with spyware

A Member of European Parliament’s Spyware Oversight Committee Infected with Spyware In a shocking turn of events, it has been revealed that a member of the European Parliament’s Permanent Special Committee on Foreign Interference in Democratic Processes (PEGA) was infected with Pegasus spyware. Stelios Kouloglou, a Greek journalist and former member of the European Parliament, … Read more

In Other News: Canadian Hacker Jailed, Open Source Zero-Days, Two Sentenced for ATM Jackpotting

A Dubious Trio of Cybersecurity Incidents: Jail Time for a Canadian Hacker, KDDI’s Massive Data Breach, and More Aubrey Cottle, a 39-year-old Canadian hacker linked to Anonymous, has been sentenced to 18 months in prison for his role in the Texas Republican Party’s website cyberattack in September 2021. The attack resulted in data being exfiltrated … Read more

Chinese LLMs Broaden the Gap Between Attackers & Defenders

Chinese AI Models Fuel Cybersecurity Concerns as Defenders Fall Behind A recent surge in advanced artificial intelligence (AI) models from Chinese firms has raised alarm bells among cybersecurity experts, who worry that these cutting-edge tools are widening the gap between attackers and defenders. The two new models, released by Zhipu AI and 360 Security Technology, … Read more

ARToken PhaaS exposes EvilTokens’ Microsoft 365 phishing toolkit

**Phishing-as-a-Service Platform Exposes Extensive Toolkit to Compromise Microsoft 365** A disturbing new development in the world of cybercrime has been uncovered by Cisco Talos researchers. The team discovered a phishing-as-a-service (PhaaS) platform called ARToken, which appears to be an affiliate of the notorious EvilTokens phishing platform. This finding has shed light on a sophisticated toolkit … Read more

Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer

A new and highly sophisticated malware strain, dubbed Armored Likho, has been discovered targeting government agencies and critical infrastructure in the power sector with its BusySnake stealer component. This stealthy threat combines advanced AI-powered detection evasion techniques with a robust payload delivery mechanism, making it a formidable foe for even the most seasoned security teams. … Read more