Latest Briefings
UK National Cyber Action Plan Delayed by Labour Leadership Crisis
Britain's forthcoming cybersecurity strategy has been postponed again following Prime Minister Keir Starmer's resignation, raising fresh concerns about the country's commitment to…
How Unit 42 Built WebAuthn Redirection Into a Browser-Based RDP Client
Palo Alto Networks' Unit 42 engineered WebAuthn virtual channel support directly into a browser-native RDP client, a feat that required reverse-engineering undocumented…
Microsoft Teams Gets New Admin Controls to Block Unauthorized AI Bots
Microsoft has introduced a new Teams admin policy that forces explicit organizer approval before external bots can join meetings, addressing growing privacy…
Scattered Spider Suspect, 19, Extradited from Finland to Face U.S. Charges
Peter Stokes, a dual U.S.-Estonian citizen, has been extradited from Finland and appeared in a Chicago federal court on charges of conspiracy,…
ChocoPoC RAT Targets Security Researchers via Trojanized GitHub PoCs
A Python-based remote access trojan named ChocoPoC is being distributed through weaponized proof-of-concept exploit repositories on GitHub, targeting cybersecurity researchers who test…
Scattered Spider Suspect Extradited to US After Finnish Arrest
A 19-year-old dual US-Estonian citizen faces federal charges tied to a luxury retailer breach and an $8 million ransom demand, after being…
Kubota North America Breach Exposed Employee Data Over 35 Days
Kubota North America has disclosed a network intrusion lasting more than a month that exposed sensitive personal and financial data belonging to…
Medtronic Notifies Customers After ShinyHunters Breach Exposed 9M Records
Medical device giant Medtronic is sending breach notifications after the ShinyHunters extortion group accessed corporate IT systems in April, potentially exposing names,…
Alleged Scattered Spider Member Extradited to US After Finland Arrest
Peter Stokes, a 19-year-old dual US-Estonian citizen, has been extradited to the United States to face fraud, conspiracy, and computer intrusion charges…
AI Agent Runs Autonomous Ransomware Attack Against Production Database
Sysdig researchers say they have identified what may be the first ransomware attack executed end-to-end by an AI agent, with a large…
CISA Adds SharePoint RCE Flaw CVE-2026-45659 to KEV Catalog
CISA has added a high-severity Microsoft SharePoint Server remote code execution vulnerability to its Known Exploited Vulnerabilities catalog after confirming active exploitation…
FortiBleed Credential Theft Operation Tied to INC and Lynx Ransomware Groups
Researchers at SOCRadar have linked the large-scale FortiBleed FortiGate credential theft campaign to operators of the INC and Lynx ransomware-as-a-service platforms, with…