Latest Briefings
Scottish Prosecutor’s Office Hit by Data Breach Tied to Third-Party Vendor
A breach at a Scottish government agency's prosecution service has been linked to a third-party provider that may have also served other…
New Evooo1Bot Malware Turns Routers Into Proxy Nodes for Attackers
A modular, Mirai-based Linux botnet dubbed Evooo1Bot is compromising gateway devices from Alcatel, NETGEAR, Tenda, Mitsubishi Electric, Telesquare, and D-Link, converting them…
Brazilian and European Police Bust €30M Bank Fraud Ring Tied to Commerzbank Vendor Flaw
Operation Klonen led to four arrests in Brazil and charges against three more suspects in Spain and Bulgaria over a 2023 scheme…
Anthropic to Watermark Claude’s Text Output Under EU AI Act Rules
Anthropic is rolling out invisible statistical watermarking for Claude-generated text worldwide, adapting Google DeepMind's SynthID-Text approach to comply with the EU's AI…
Standard Chartered CISO on AI’s Dual Role in Banking Security
In a video interview, Standard Chartered's group CISO discusses the shift from technical security roles to strategic leadership, and how AI is…
Multinational Sweep Nets Arrests in €30M German Bank Card Cloning Heist
German and Brazilian police arrested seven suspects this week tied to a late 2023 scheme that drained an estimated €30 million from…
Trezor Discloses Data Breach at Shipping Partner ShipMonk, 14,000 Customers Affected
A breach at third-party fulfillment provider ShipMonk exposed names, addresses, and contact details of nearly 14,000 Trezor customers, though Trezor says its…
Beacon CRM Breach Traces Back to Leaked AWS Key, Over 1,000 Charities Affected
UK nonprofit CRM provider Beacon says attackers used a compromised AWS access key found in public JavaScript build files to exfiltrate its…
Akira Affiliate Rebooted a Victim Into Safe Mode to Kill EDR, Ransomware Still Failed
An Akira ransomware operator disabled endpoint defenses by forcing a compromised host into Safe Mode with Networking, but the encryption payload crashed…
Ukraine Takes Down 94 Fraudulent Call Centers in Nationwide Sweep
A joint operation by Ukrainian police, security services, and German law enforcement dismantled dozens of scam call centers running fake investment platforms…
Attackers Exploit Critical VMware vCenter Flaw CVE-2026-59310 Within Days of Patch
An APT actor is exploiting a critical directory traversal and RCE bug in VMware vCenter's Syslog server, hitting over 360 IP addresses…
‘Jewelbug’ Hackers-for-Hire Mix State Espionage With Crypto Theft
Researchers say a threat group tracked as Jewelbug ran both nation-state espionage operations and financially motivated cryptocurrency heists through the same web-based…