Security News

Researchers reveal OT-specific malware in use and in development
2024-12-17 14:29

Malware that’s made specifically to target industrial control systems (ICS), Internet of Things (IoT) and operational technology (OT) control devices is still rare, but in the last few weeks...

MUT-1244 targeting security researchers, red teamers, and threat actors
2024-12-16 15:32

A threat actor tracked as MUT-1244 by DataDog researchers has been targeting academics, pentesters, red teamers, security researchers, as well as other threat actors, in order to steal AWS access...

Researchers Uncover Symlink Exploit Allowing TCC Bypass in iOS and macOS
2024-12-12 12:35

Details have emerged about a now-patched security vulnerability in Apple's iOS and macOS that, if successfully exploited, could sidestep the Transparency, Consent, and Control (TCC) framework and...

New EagleMsgSpy Android spyware used by Chinese police, researchers say
2024-12-11 21:03

A previously undocumented Android spyware called 'EagleMsgSpy' has been discovered and is believed to be used by law enforcement agencies in China to monitor mobile devices. [...]

Researchers Uncover Espionage Tactics of China-Based APT Groups in Southeast Asia
2024-12-11 11:00

A suspected China-based threat actor has been linked to a series of cyber attacks targeting high-profile organizations in Southeast Asia since at least October 2023. The espionage campaign...

Researchers Uncover Prompt Injection Vulnerabilities in DeepSeek and Claude AI
2024-12-09 11:55

Details have emerged about a now-patched security flaw in the DeepSeek artificial intelligence (AI) chatbot that, if successfully exploited, could permit a bad actor to take control of a victim's...

Researchers Uncover Flaws in Popular Open-Source Machine Learning Frameworks
2024-12-06 11:28

Cybersecurity researchers have disclosed multiple security flaws impacting open-source machine learning (ML) tools and frameworks such as MLflow, H2O, PyTorch, and MLeap that could pave the way...

Researchers Uncover 4-Month Cyberattack on U.S. Firm Linked to Chinese Hackers
2024-12-05 11:00

A suspected Chinese threat actor targeted a large U.S. organization earlier this year as part of a four-month-long intrusion. According to Broadcom-owned Symantec, the first evidence of the...

Researchers Uncover Backdoor in Solana's Popular Web3.js npm Library
2024-12-04 09:48

Cybersecurity researchers are alerting to a software supply chain attack targeting the popular @solana/web3.js npm library that involved pushing two malicious versions capable of harvesting users'...

Researchers discover first UEFI bootkit malware for Linux
2024-11-27 17:37

The first UEFI bootkit specifically targeting Linux systems has been discovered, marking a shift in stealthy and hard-to-remove bootkit threats that previously focused on Windows. [...]