AI/MLFounder of e-commerce firm hit with fraud charge for lying about AI techShaun NicholsApril 11, 2025The $40 million startup was relying on manpower in the Philippines to run the so-called "AI" tool.
Threat IntelligenceBlack Basta-like Microsoft Teams phishing leads to novel backdoorLaura FrenchApril 11, 2025A new PowerShell backdoor and persistence technique that hijacks TypeLib were discovered.
NetworkingPalo Alto confirms brute-force attacks on PAN-OS GlobalProtect gatewaysSteve ZurierApril 11, 2025PAN points out that to date, the brute-force attacks have not led to exploitation.
IdentityIdentity is the new security architecture, says former CISA director EasterlyTom Spring April 10, 2025Easterly warns that without intelligent identity systems, AI-fueled cyberattacks will outpace defenses.
IdentityMicrosoft warns how domain controllers can be used to spread ransomwareShaun NicholsApril 10, 2025Domain controllers were breached in more than 78% of human-operated cyberattacks, warned Microsoft.
IdentityAmazon EC2 instance metadata targeted in SSRF attacksLaura FrenchApril 10, 2025EC2 instance metadata can include sensitive information such as IAM role credentials.
Government RegulationsTrump orders probe of ex-CISA chief Krebs over 2020 election disputeSteve ZurierApril 10, 2025Krebs is on record saying the 2020 election “was the most secure in American history.”
AI/MLAI-driven state-sponsored cyberattacks worry security professionalsShaun NicholsApril 10, 2025Cyberwarfare is no longer a distant threat as tensions escalate between nations worldwide.
Cloud SecurityGoogle introduces GUS, a unified security platform with MandiantShaun NicholsApril 9, 2025Google will combine existing services bundled with cybersecurity firm Mandiant.
RansomwareRansomHub affiliates scramble amid apparent internal conflictLaura FrenchApril 9, 2025Several RansomHub affiliate chat portals reportedly went offline last week.