Cybersecurity

Cybersecurity
US Water Sector Attacks Spread to Seven States as Iran Link Emerges
Cyberattacks on US water and wastewater systems have spread to at least seven states, as investigators examine possible Iranian involvement in the campaign.
Blog
Cloud Access Security Broker (CASB) Explained: Architecture and Uses
Learn what a cloud access security broker (CASB) is, how its architecture works, key use cases, and how CASB fits into modern multi-cloud security.
Cybersecurity
DPRK macOS Malvertising Uses ClickFix to Steal Wallets and Cloud Keys
North Korea-linked actors use fake macOS update pages and ClickFix prompts to deploy malware that drains crypto wallets and steals SSH, AWS, and Azure keys.
Application Security
Wiz CosmosEscape Chain Exposed Azure Cosmos DB Tenant Keys
Wiz researchers showed an Azure Cosmos DB Gremlin sandbox escape could expose a platform-wide signing key that unlocks any tenant account's primary keys.
Application Security
AnySign4PC Zero-Day Watering Holes Hit 72 South Korean Organizations
A state-sponsored campaign used hacked South Korean websites to exploit an AnySign4PC zero-day and infect visitors with SIGNBT and COPPERHEDGE backdoors.
Cybersecurity
Silver Fox BYOVD Chain Deploys ValleyRAT at Japanese Manufacturer
Silver Fox used a new three-driver BYOVD attack chain and dual watchdog persistence to deliver ValleyRAT at a Japanese manufacturer through invoice lures.
Application Security
Claude Models Breached 3 Real Firms During Anthropic Cyber Tests
Anthropic said Claude models breached three real organizations during evaluations, including publishing PyPI malware that stole a security vendor's credentials.
Cybersecurity
South Korea Fines KT $39 Million Over 11-Month Breach
South Korea's data regulator fined telecom giant KT KRW 53.979 billion after an 11-month breach exposed 16,647 subscribers' data through a rogue femtocell.
Cybersecurity
ShinyHunters Claims Brinks Home Breach of Up to 4.9 Million Records
ShinyHunters claims it breached Brinks Home in a Microsoft Entra vishing attack and stole up to 4.9 million Salesforce records and 3.8 million support chats.
Cybersecurity
Teams Vishing Campaigns Hit North American Firms With Chaos Ransomware
Sophos tracked a Teams vishing campaign as STAC4749, where fake IT support calls led to Chaos ransomware encryption at North American firms in under 17 ...