Devolutions has released urgent security updates for its flagship self-hosted password management solution, Devolutions Server, addressing three...
Credential Theft
eSentire’s Threat Response Unit (TRU) has uncovered a widespread malware operation leveraging a deceptive social-engineering technique known...
A new report from Group-IB exposes a highly automated phishing framework engineered to impersonate Italian IT and...
Researchers from Cyble Research and Intelligence Labs (CRIL) have uncovered a massive, multi-brand phishing campaign that uses...
Researchers at Proofpoint Threat Research have identified a previously unknown cyber-espionage group, dubbed UNK_SmudgedSerpent, which has been...
Koi Security has uncovered a massive supply-chain campaign dubbed PhantomRaven, which has silently infected the npm ecosystem...
The Socket Threat Research Team has uncovered an extensive supply chain attack targeting the npm ecosystem, involving...
The HelixGuard Threat Intelligence Team has uncovered a widespread supply chain compromise affecting the Visual Studio Code...
A newly disclosed vulnerability, CVE-2025-61481, rated a maximum CVSS score of 10.0, affects MikroTik RouterOS (v7.14.2) and...
In its latest analysis covering the second half of 2025, researchers from Cisco Talos have revealed that...
Researchers at the Genians Security Center (GSC) have uncovered an active Lumma Infostealer campaign leveraging AutoIt scripts,...
Researchers at SEQRITE Labs have uncovered a targeted spear-phishing campaign aimed at organizations in Russia’s automobile and...
Between July and August 2025, global security teams have observed a resurgence in Akira ransomware incidents targeting...
Security researchers at Point Wild have uncovered a new information-stealing malware dubbed Shuyal Stealer, which pushes the...
A new report from Hunt Intelligence reveals that APT SideWinder — one of South Asia’s most active...
Cybersecurity researchers at WithSecure’s Strategic Threat Intelligence & Research Group (STINGR) have uncovered a highly sophisticated malware...
Cisco Talos researchers have detailed the activities of UAT-8099, a Chinese-speaking cybercrime group leveraging compromised Microsoft IIS...
Proofpoint threat researchers have uncovered a surge in campaigns distributing Stealerium-based malware, an open-source infostealer first released...
Okta Threat Intelligence is sounding the alarm over a large-scale phishing campaign that has been actively impersonating...
Researchers at Trustwave SpiderLabs have published an analysis showing a significant uptick in phishing campaigns that rely...
Cymulate Research Labs has uncovered a critical zero-click NTLM credential leakage vulnerability—CVE-2025-50154—that bypasses Microsoft’s April 2025 patch...
A new NVISO investigation has revealed the inner workings of PoisonSeed, a sophisticated threat actor whose tactics...