News

CyberScoop
cyberscoop.com > ransomware-negotiation-pitfalls-moral-gray-zone

The thin line between saving a company and funding a crime

The thin line between saving a company and funding a crime1+ hour, 33+ min ago   (1705+ words) The pitfalls of ransomware negotiation are excessive " pinning the goals of cybercrime against victims and incident response firms that typically face no good options. Negotiators are charged with ensuring their clients don't break any laws by financially supporting sanctioned criminals,…...

CyberScoop
cyberscoop.com > congressional-appropriators-move-to-extend-information-sharing-law-fund-cisa

Congressional appropriators move to extend information-sharing law, fund CISA

Congressional appropriators move to extend information-sharing law, fund CISA18+ hour, 3+ min ago   (188+ words) Congressional appropriators announced funding legislation this week that extends an expiring cyber threat information-sharing law and provides $2.6 billion for the Cybersecurity and Infrastructure Security Agency (CISA), including money for election security and directives on staffing levels. The legislation that funds…...

CyberScoop
cyberscoop.com > malicious-bots-predator-bots-api-security-machine-speed-defense

Predator bots are exploiting APIs at scale. Here’s how defenders must respond.

Predator bots are exploiting APIs at scale. Here’s how defenders must respond.1+ day, 1+ hour ago   (620+ words) The economic fallout is staggering: bots and API attacks drain up to $186 billion annually, driven by credential theft, scalping, and fake account creation that fuel large-scale fraud and distort online markets. This represents one of the fastest-growing forms of cyber-enabled…...

CyberScoop
cyberscoop.com > jordanian-national-access-broker-pleads-guilty

Jordanian national pleads guilty after unknowingly selling FBI agent access to 50 company networks

Jordanian national pleads guilty after unknowingly selling FBI agent access to 50 company networks4+ day, 20+ hour ago   (380+ words) A 40-year-old Jordanian national pleaded guilty Thursday to operating as an access broker, selling access to at least 50 victim company networks he broke into by exploiting two commercial firewall products in 2023, according to the Justice Department. Feras Khalil Ahmad Albashiti,…...

CyberScoop
cyberscoop.com > cisa-secure-software-buying-tool-had-a-simple-xss-vulnerability-of-its-own

CISA’s secure-software buying tool had a simple XSS vulnerability of its own

CISA’s secure-software buying tool had a simple XSS vulnerability of its own5+ day, 18+ hour ago   (313+ words) A Cybersecurity and Infrastructure Security Agency tool dedicated to helping government agencies buy secure software turned out to have a cybersecurity vulnerability of its own. Jeff Williams, the former leader of the Open Worldwide Application Security Project (OWASP), told CyberScoop…...

CyberScoop
cyberscoop.com > dhs-anchor-cipac-replacement-critical-infrastructure-cybersecurity-liability-protections

Sources: DHS finalizing replacement for disbanded critical infrastructure security council 

Sources: DHS finalizing replacement for disbanded critical infrastructure security council 6+ day, 21+ hour ago   (736+ words) The Department of Homeland Security is finalizing plans for a new body that would replace the functions of the Critical Infrastructure Partnership Advisory Council (CIPAC) and serve as a communications hub between industry and government to discuss ongoing threats to…...

CyberScoop
cyberscoop.com > kimwolf-aisuru-botnet-lumen-technologies

Kimwolf botnet’s swift rise to 2M infected devices agitates security researchers

Kimwolf botnet’s swift rise to 2M infected devices agitates security researchers6+ day, 21+ hour ago   (525+ words) The Kimwolf botnet, which splintered off from the record-setting Aisuru DDoS botnet in August, gained the widespread attention of security researchers when it temporarily claimed the top spot in Cloudflare's global domain rankings in late October 2025. Within weeks it spread…...

CyberScoop
cyberscoop.com > microsoft-seizes-disrupts-redvds-cybercrime-marketplace

Microsoft seizes RedVDS infrastructure, disrupts fast-growing cybercrime marketplace

Microsoft seizes RedVDS infrastructure, disrupts fast-growing cybercrime marketplace6+ day, 21+ hour ago   (592+ words) Microsoft announced Wednesday that it worked with international law enforcement to seize infrastructure used to run cybercrime subscription service RedVDS and organized civil actions in the United States and United Kingdom to disrupt its further use." RedVDS has enabled at…...

CyberScoop
cyberscoop.com > predator-spyware-demonstrates-troubleshooting-researcher-dodging-capabilities

Predator spyware demonstrates troubleshooting, researcher-dodging capabilities

Predator spyware demonstrates troubleshooting, researcher-dodging capabilities6+ day, 23+ hour ago   (267+ words) Jamf Threat Labs found from an analysis of a Predator sample that it has an error code system that can alert operators to why an implant didn't stick, with "error code 304" signifying that a target was running security or analysis…...

CyberScoop
cyberscoop.com > sean-plankey-re-nominated-to-lead-cisa

Sean Plankey re-nominated to lead CISA

Sean Plankey re-nominated to lead CISA1+ week, 17+ hour ago   (301+ words) President Donald Trump re-nominated Sean Plankey to lead the Cybersecurity and Infrastructure Security Agency on Tuesday, after Plankey's bid for the position ended last year stuck in the Senate. It's not clear whether or how Plankey's resubmitted nomination will overcome…...