Topic
Emerging Issue

CTI Roundup: Infostealers, Zero-Day Attacks, and Gremlin Stealer
The latest news on infostealers, Google observing 75 zero-day exploits in 2024, and new threat Gremlin Stealer.

What is World Password Day? And Why We Still Need It
Despite predictions to the contrary, passwords are here to stay. Four steps to strengthen passwords so they become a security asset, not a liability.

CTI Roundup: Deepfakes, ToyMaker IAB, and ClickFix
Recent news about threat actors using real-time deepfakes to land remote work, ToyMaker initial access broker, and state-sponsored hackers using ClickFix.

CTI Roundup: SMS Phishing, Node.js, and Fake PDF Converters
The latest news about threat actors exploiting SMS with social engineering, misusing Node.js for malware, and fake PDF converters delivering malware.

CTI Roundup: Email Attacks, Hunters International, and New Ransomware Data
Read the latest news about attacks combining credential phishing and malware, Hunters International pivoting to data extortion, and ransomware trends.

What Return-to-Office (RTO) Means for Your Cybersecurity
Ordering employees back to the office isn’t just a matter of returning to some pre-pandemic normal. For security teams, RTO poses a host challenges and shifting priorities. Here’s what to keep top-of-mind.

CTI Roundup: QR Code Phishing, Babuk Locker 2.0, and Qilin
QR code phishing accelerates, LockBit 3.0 rebrands, and Qilin affiliates target downstream customers of an MSP.

I Almost Fell for This Online Scam. Why Even Tech Pros Can Be Taken
Our award-winning tech reporter knows a heckuva lot about AI, deepfakes, and the wave of new online fraudsters – and yet there he was, on the phone with the “police” and about to hand over his credit card number. Think this can’t happen to you? A rising number of C-suite execs and IT experts are learning the hard way.

CTI Roundup: StilachiRAT, Reddit Infostealers, and New Password Reuse Data
The latest information about StilachiRAT malware, AMOS and Lumma stealers spreading via Reddit, and research on how many logins use compromised passwords.

CTI Roundup: Malvertising, XCSSET Variant, and GitHub Abuse
The latest news about a malvertising campaign threatening devices, XCSSET variant, and an ongoing campaign using fake GitHub repositories to spread malware.

CTI Roundup: Silk Typhoon, Fake Ransom Notes, and ClickFix
The latest cyber threat news on Silk Typhoon shifting tactics, threat actors targeting executives with physical ransom notes, and the ClickFix trick.

CTI Roundup: Auto-Color Malware, Vulnerable Windows Driver, and Lotus Blossom
Latest news about Auto-color Linux malware, attackers exploiting Truesight.sys, and Lotus Blossom.