A Russian-speaking threat actor known as "bandcampro" has weaponized Google's Gemini CLI AI agent to migrate, deploy, and operate a live command-and-control (C&C) botnet.
Remarkably, the attacker completed the entire infrastructure migration in just six minutes, contributing only 11% of...
The Department of Justice has unsealed an indictment in the Northern District of Ohio charging three Russian nationals and two Russia-based "bulletproof hosting" companies.
The entities are accused of enabling widespread cybercrimes that have collectively caused tens of millions...
Apple has issued a security advisory warning iPhone and iPad users to treat unexpected FaceTime calls with the same scrutiny as standard phishing emails.
A newly tracked wave of social engineering scams shows threat actors actively impersonating major financial...
An active, highly structured intrusion campaign co-opting commercial artificial intelligence platforms as operational engines for state-sponsored operations.
Rather than acting as peripheral research tools, Claude Code and DeepSeek-v4-pro were embedded directly into the core execution flows of a China-linked cyber...
Volkswagen has inadvertently exposed the personal information of 800,000 electric vehicle owners, including their location data and contact details.
The breach, which occurred due to a misconfiguration in the systems of Cariad, VW's software subsidiary, left sensitive data stored on...
US authorities are considering a ban on TP-Link routers due to concerns over their potential role in Chinese cyber attacks. The popular router manufacturer, which holds approximately 65% of the US market for home and small business routers, is...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a stark warning to senior government officials and political figures to adopt end-to-end encrypted messaging services like Signal.
This recommendation follows a series of cyber espionage activities attributed to Chinese state-affiliated...
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about a critical vulnerability in Cleo's file transfer software being actively exploited by ransomware gangs.
The vulnerability, initially identified as CVE-2024-50623, affects Cleo Harmony, VLTrader, and LexiCom products,...
A significant surge in brute-force attacks targeting Citrix NetScaler devices across multiple organizations.
The attacks, primarily originating from a Hong Kong-based cloud provider, are exploiting misconfigured and outdated systems, coinciding with recent critical vulnerability disclosures affecting Citrix NetScaler.
The attacks have...
A federal court in St. Louis, Missouri, has indicted 14 North Korean nationals in a sophisticated scheme involving IT workers who allegedly defrauded US companies and funneled millions of dollars to North Korea's weapons programs.
The indictment, unsealed on...