Webinar: Why traditional email security is no longer enough

Email Security No Longer Enough as Modern Attacks Exploit Trust Traditional email defenses are failing to keep pace with the evolving landscape of cyber threats. For years, organizations have relied on secure email gateways, reputation services, and signature-based detection to stop phishing attacks before they reached employees. However, today’s attackers are increasingly exploiting trusted identities … Read more

DHS confirms hackers breached HSIN info-sharing platform

Cyber Attack on DHS Info-Sharing Platform Raises Security Concerns Across the US A recent cyber attack has compromised the Homeland Security Information Network (HSIN), a sensitive information-sharing platform used by federal, state, local, and private-sector partners. The Department of Homeland Security is currently investigating the breach, which is believed to have occurred sometime between late … Read more

New ChocoPoC malware targets researchers via trojanized PoC exploits

Cybersecurity Researchers Targeted by Malicious Proof-of-Concept Exploits Delivering ChocoPoC RAT A sophisticated campaign has been uncovered, where multiple proof-of-concept (PoC) exploits on GitHub are being used to deliver a Python-based remote access trojan (RAT) named ChocoPoC. The malware is designed to target cybersecurity researchers and has the capability to execute commands, steal sensitive data, and … Read more

Kubota says hackers had month-long access to network systems

Kubota’s Network Breach Exposes Employee Data to Hackers for Over a Month Japanese industrial giant Kubota has revealed that its network systems were compromised by hackers for over a month, leaving sensitive employee data vulnerable. The breach, which occurred between March 16 and April 20 this year, exposed personal information of employees and their dependents, … Read more

FortiBleed credential-theft campaign linked to Lynx ransomware

A massive credential-theft campaign linked to two notorious ransomware operations has exposed over 73,000 Fortinet devices and compromised an estimated 430,000 firewalls worldwide. The operation, dubbed “FortiBleed,” has been tied to members of the INC and Lynx ransomware-as-a-service (RaaS) groups by researchers at SOCRadar. The campaign’s scope is staggering, with over 19,000 devices deploying traffic … Read more

Webinar: Why traditional email security is no longer enough

Traditional Email Security is No Longer Enough: How Behavioral AI Can Help As we’ve seen all too often, phishing attacks have evolved beyond relying on malicious attachments or suspicious domains. Today’s attackers are becoming increasingly adept at impersonating trusted colleagues, vendors, and business partners, using legitimate authentication workflows to blend into everyday business communications. This … Read more

DHS confirms hackers breached HSIN info-sharing platform

The Department of Homeland Security’s (DHS) sensitive information-sharing platform, the Homeland Security Information Network (HSIN), has been breached by an unknown threat actor. The intrusion occurred sometime between late May and early June, with DHS currently investigating the attack to determine the extent of the compromise. HSIN is a critical tool used by federal, state, … Read more

New ChocoPoC malware targets researchers via trojanized PoC exploits

Researchers have uncovered a sophisticated malware campaign targeting cybersecurity professionals through a unique tactic of hiding malicious code within proof-of-concept (PoC) exploits on GitHub. The Python-based remote access trojan (RAT), dubbed ChocoPoC, has been embedded in at least seven PoC repositories, allowing attackers to deliver a payload that can execute commands, steal sensitive data, and … Read more

Kubota says hackers had month-long access to network systems

Kubota Exposes Employee Data in Month-Long Hackers’ Stroll Through its Network Japanese industrial manufacturer Kubota North America Corporation has just revealed that hackers had unfettered access to its network systems for over a month earlier this year. Between March 16 and April 20, the threat actor browsed through files containing sensitive personal information of employees … Read more

FortiBleed credential-theft campaign linked to Lynx ransomware

A Massive Credential-Stealing Campaign Exposed: FortiBleed Linked to Lynx Ransomware Group In a shocking revelation, researchers have uncovered a massive credential-theft campaign known as FortiBleed, which has been linked to two notorious ransomware groups: INC and Lynx. The operation, which exposed over 73,000 Fortinet devices worldwide, was not just a simple case of data breaches … Read more