AI Gives Cybercriminals a Dangerous Time Advantage

Brett Johnson’s Dark Past Illuminates AI-Powered Cybercrime Advantage Cybersecurity expert Brett Johnson, once dubbed the “original Internet Godfather” by the US Secret Service for his role in building and running Shadow Crew, a pioneering cybercrime community, has spoken out about how artificial intelligence (AI) is giving cybercriminals an unfair advantage. In a recent demonstration at … Read more

SonicWall SMA 1000 Zero-Days Enable Unauthenticated RCE

A New Wave of SonicWall SMA 1000 Zero-Days Enables Unauthenticated RCE Attacks The cybersecurity community is bracing itself for yet another wave of attacks on SonicWall’s SMA 1000 perimeter devices, this time exploiting two zero-day vulnerabilities that enable unauthenticated remote code execution (RCE). The latest exploits follow a summer of similar attacks on other SMA … Read more

AI’s Vulnerability Surge May Be More Manageable Than First Feared

The rapid acceleration of vulnerability discovery due to the use of AI has sent shockwaves through the cybersecurity community, sparking concerns about the ability of enterprise security teams to keep pace. However, a new study suggests that while the situation may seem dire at first glance, it’s actually more manageable than initially feared – provided … Read more

Sality botnet infrastructure dismantled in joint global takedown

A Major Cybercrime Network Dismantled: Sality Botnet’s 23-Year Reign Comes to an End In a significant blow to cybercrime, international law enforcement agencies and private partners have joined forces to dismantle the Sality botnet infrastructure in a joint global takedown. This operation marks a major milestone in the ongoing effort to disrupt and dismantle large-scale … Read more

AI Gives Cybercriminals a Dangerous Time Advantage

Brett Johnson, a former cybercriminal and founder of Shadow Crew, has shed light on how artificial intelligence (AI) is giving attackers a significant advantage in the cat-and-mouse game between cyber threat actors and defenders. In an exclusive conversation with Dark Reading, Johnson shared his insights on how AI-powered tools are compressing the time it takes … Read more

SonicWall SMA 1000 Zero-Days Enable Unauthenticated RCE

**Critical SonicWall Vulnerabilities Enable Unauthenticated Remote Code Execution** A fresh wave of attacks is targeting select SonicWall SMA 1000 perimeter devices, leveraging two zero-day vulnerabilities that can be chained together to achieve unauthenticated remote code execution (RCE). The exploitation activity follows earlier this summer’s attacks on two other zero-day vulnerabilities in the vendor’s edge devices. … Read more

AI’s Vulnerability Surge May Be More Manageable Than First Feared

A recent study has shed new light on the rapid acceleration of vulnerability discovery thanks to AI. At first glance, the numbers may seem daunting: monthly Common Vulnerabilities and Exposures (CVE) disclosures have risen 145% in just two years, with a staggering 49,979 vulnerabilities disclosed in 2025 alone. But according to Echo’s Mythos Readiness Report, … Read more

US charges Russian for infecting 80,000 freelancers with malware

A Russian National Indicted for Infecting 80,000 Freelancers with Malware in Massive Phishing Campaign In a major crackdown on cybercrime, the US Department of Justice has indicted a 40-year-old Russian national for his role in a massive phishing campaign that infected over 80,000 freelancers with malware. Searzhudin Tamirlanovich Aktulaev, who was extradited to the United … Read more

Hackers exploit Sangoma Switchvox flaw to deploy reverse shells

A critical vulnerability in the Sangoma Switchvox VoIP platform is being actively exploited by hackers to deploy reverse shells, potentially allowing them to take control of affected systems. The bug, identified as CVE-2026-9586, is an unauthenticated SQL injection flaw that can lead to remote code execution. According to security researchers at Horizon3, most internet-exposed Switchvox … Read more

US charges Russian for infecting 80,000 freelancers with malware

A Russian national has been charged with infecting over 80,000 freelancers with malware in a sophisticated phishing campaign that highlights the ongoing threat of cybercrime. Searzhudin Tamirlanovich Aktulaev, 40, was extradited to the United States after being arrested in Cyprus and is now facing federal charges for his alleged role in the scheme. According to … Read more