Cyber threats and incidents

Hackers Use GoogleErrorReport Scheduled Task for Persistence in Dropping Elephant Campaign

What happened The threat actor known as Dropping Elephant has returned with...

Cordyceps CI/CD Weakness Exposes Software Supply Chains to Malicious Pull Requests

What happened Security researchers at Novee have disclosed a new class of...

Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks

What happened Security researchers disclosed an eight-year-old high-severity vulnerability in Samsung’s KNOX...

FortiBleed Targeted FortiGate Firewalls in 110 Million-Credential Harvesting Operation

What happened A Russian-speaking initial access broker is assessed to be behind...

Suspected Cyberattack Triggers False Emergency Alerts Across Brazil

What happened Brazil suspended its mobile phone emergency alert system after a...

Popular

Fig Extends Platform Coverage to the Entire SecOps Engineering Lifecycle, Setting Resilience as the Default

The modern security operations center is built on a...

Microsoft’s Largest Patch Tuesday Ever Raises New Challenges for Security Teams

What happened Microsoft released its July 2026 Patch Tuesday update,...

ClickFix Evolves Into a Malware Ecosystem, Challenging Traditional Security Defenses

What happened ClickFix has grown from a simple social engineering...

Weak Router Security Continues to Fuel Russian Cyber Operations Against Critical Infrastructure

What happened US cybersecurity agencies, together with counterparts from more...

Upwind Investigation Into AsyncAPI npm Packages Highlights a More Coordinated Form of Supply Chain Attack

An investigation by cloud security company Upwind has revealed...