PhishingWordPress phishing plugin drives online shopping fraudLaura FrenchJanuary 6, 2025PhishWP imitates trusted payment services and sends stolen information directly to Telegram.
Governance, Risk and ComplianceUS sanctions Chinese service provider for supporting threat groupShaun NicholsJanuary 6, 2025The US government has issued sanctions against a Chinese service provider it said provided support for threat actors
Security Staff Acquisition & DevelopmentCybersecurity industry mourns Amit Yoran, visionary Tenable CEOSteve ZurierJanuary 6, 2025Yoran died suddenly Jan. 3 after leave of absence for cancer treatment.
AI/MLNew LLM jailbreak uses models’ evaluation skills against themLaura FrenchJanuary 3, 2025The “Bad Likert Judge” method asks the LLM to evaluate a prompt’s harmfulness, then provide a harmful example.
IdentityMicrosoft pushes identity management feature for Azure via EntraShaun NicholsJanuary 3, 2025The Federated Identity Credentials system is designed to minimize the number of times a user will have to hand over their secure credential information.
MalwareFireScam malware poses as Telegram app to steal sensitive Android dataSteve ZurierJanuary 3, 2025While the app gets distributed via a GitHub phishing site, all Android users worldwide are at risk.
Application securityApple to settle claims Siri collected user data without permissionShaun NicholsJanuary 2, 2025Tech giant will be paying out a $95 million settlement over claims it exposed user data.
AI/MLGenAI cybersecurity ROI outlook shared by business leadersLaura FrenchJanuary 2, 2025Surveyed COOs reported savings of up to 7.7% of annual revenue due to GenAI use.
DevOpsNPM package poses as legit Ethereum smart contract, injects Quasar RATSteve ZurierJanuary 2, 2025Quasar RAT has circulated in cybercrime and APT campaigns since July 2014.
IdentityUS Treasury hacked by state-sponsored Chinese APT groupSteve ZurierDecember 31, 2024Government says hackers compromised a BeyondTrust API key to then access Treasury workstations and steal unclassified documents.