Category: Research
Balance Theory Lands $19M to Streamline Cybersecurity Spending Decisions
The Maryland startup's platform, which already oversees more than $1 billion in security investments, will use the Series A round to expand…
US and 13 Allied Nations Refresh Minimum SBOM Guidance
Government agencies update the 2021 NTIA baseline for software bills of materials, adding new data fields for hashing, licensing, and tooling while…
Claroty: 1 in 5 Data Center OT Assets One Hop From Internet Exposure
New research from Claroty finds that while direct internet exposure of data center infrastructure is rare, thousands of power, cooling, and building…
Spur Lands $200 Million from Insight Partners to Scale IP Intelligence Platform
Bootstrapped bot-detection and IP intelligence firm Spur Intelligence takes its first outside investment, aiming to help security and fraud teams unmask traffic…
CISA and Australia Urge Critical Infrastructure to Pre-Plan OT Isolation
New joint guidance from CISA, the ACSC, the FBI and international partners lays out how operators of water, energy, transportation and telecom…
Google Overhauls Threat Actor Naming With New Cryptonym System
Google Threat Intelligence Group is retiring its old sequential APT numbering in favor of two-word cryptonyms that pair a memorable identifier with…
SourTrade Malvertising Campaign Assembles Malware Inside the Browser
A malvertising operation dubbed SourTrade delivers malicious payloads in fragments and uses a legitimate Bun runtime to assemble the final Windows executable…
Steam Forum Scammers Trick Gamers Into Installing XMRig Cryptominers
Threat actors are posing as helpful forum members on Steam, tricking users into running PowerShell commands disguised as PC optimization fixes that…
Fake ShinyHunters Sextortion Emails Exploit Old Breach Data for $2,000 Bitcoin Demands
Scammers are recycling email addresses from ShinyHunters' published data leaks to send fraudulent sextortion emails, falsely claiming device compromise to pressure victims…
Malvertising Campaign Builds Malware Inside the Browser, Never Touches the Network
A crypto and trading themed malvertising operation dubbed SourTrade uses service workers and shared workers to assemble malicious executables locally in browser…
HelloNet Campaign Hijacks ViPNet Updates to Hit Russian Government Networks
A threat actor tracked as HelloNet has been sideloading malicious code into Russia's widely certified ViPNet networking suite since May, deploying a…
Carders Move Beyond Residential Proxies as ‘Clean’ IPs Become Scarce
Analysis of nearly 2,900 underground forum posts shows carding actors treating residential proxies as one fragile layer in a broader identity-simulation stack,…