News
Continuous Detection, Continuous Response: Mate Security Redefines the Modern SOC
8+ min ago (530+ words) The CD/CR model directly addresses this structural mismatch by collapsing the boundary between detection and investigation. Instead of treating alerts as the start of an investigative workflow, or investigations as the end of a detection lifecycle, both are treated…...
Grafana Says It Rejected Ransom Demand After Source Code Theft
1+ day, 2+ hour ago (295+ words) The good news is that rather than resolving the matter behind closed doors, the company confirmed that the attacker later attempted to extort Grafana Labs by demanding payment in exchange for not releasing the stolen code. According to Grafana, the…...
Critical "Claw Chain" Vulnerabilities Put Thousands of Open Claw AI Servers at Risk
2+ day, 3+ hour ago (527+ words) Open Claw helps businesses automate tasks by connecting smart computer programs directly to internal files, messaging apps like Telegram, and office systems like Microsoft Agent 365. According to researchers, these flaws create a major problem because "AI agents have become a…...
The Next Cybersecurity Challenge May Be Verifying AI Agents
2+ day, 16+ hour ago (1161+ words) For the past two decades, cybersecurity has largely been a story about protecting humans from machines blocking malware, filtering phishing emails, companies mitigating DDo S attacks, and patching software vulnerabilities before attackers exploit them. The adversary was clear. The surface…...
Hackers Use Py Installer and AMSI Patching to Deliver XWorm RAT v7. 4
2+ day, 20+ hour ago (325+ words) Cybersecurity researchers at Point Wild recently found a new way that cyberattackers are gaining unauthorised access to computers. The investigation, led by experts Kedar Shashikant Pandit, Prathamesh Shingare, and Amol Swami from the Lat61 Threat Intelligence Team, reveals that a common…...
Cal Phishing Scam Uses Evil Tokens Kit, Outlook Invites to Steal M365 Sessions
3+ day, 2+ hour ago (420+ words) Cybercriminals have found a way to bypass security controls by using your work schedule against you, reveals a new report from Fortra Intelligence and Research Experts (FIRE). The report, shared with Hackread. com, shows hackers are now actively exploiting calendar…...
Fake Job Interview Apps Drop Job Stealer Malware on Windows and mac OS
3+ day, 19+ hour ago (507+ words) A fake job interview is now being used as bait to steal crypto wallets, browser credentials, and sensitive files from both Windows and mac OS users. Researchers at Dr. Web say the malware campaign revolves around a trojan called Job…...
Famous Sparrow Targeted Oil and Gas Industry via MS Exchange Server Exploit
4+ day, 47+ min ago (352+ words) Bitdefender Labs reveals how the China-linked Famous Sparrow hacking group targeted an Azerbaijani energy firm using Proxy Not Shell, Deed RAT, and Terndoor malware across three persistent waves. According to research details shared by Bitdefender's Martin Zugec, the campaign involved…...
China-Linked Twill Typhoon Uses Fake Apple and Yahoo Sites for Espionage
4+ day, 2+ hour ago (429+ words) A new wave of cyberattacks has been hitting organisations across Japan and the Asia-Pacific area. These attacks, which began in late September 2025, have been linked by security experts at Darktrace to a group known as Twill Typhoon, which is using…...
Team PCP Claims Sale of Mistral AI Repositories Amid Mini Shai-Hulud Attack
4+ day, 12+ hour ago (402+ words) Only days after the Mini Shai-Hulud supply chain attack targeted npm and Py PI packages associated with French artificial intelligence company Mistral AI, a threat actor using the Team PCP identity is now claiming to sell what appear to be…...