Dark Watch

Unit 42 has reported a significant incident involving a ransomware attack where a human attacker utilized frontier AI to autonomously breach an enterprise network. The attack was executed with remarkable efficiency, breaching multiple security layers in...
A new identity theft service has emerged on the dark web, offering digital scans of over 153 million drivers licenses from individuals in the United States and Canada. This service, identified as...
Threat actors linked to North Korea have expanded their job fraud schemes beyond the information technology (IT) sector, targeting roles in sales, marketing, and healthcare. This ongoing insider threat is part of a broader strategy where...

TerminalFix Campaign Utilizes Fake CAPTCHA to Deploy Multi-Stage Attack and Reverse Tunnel Access

Microsoft Threat Intelligence has identified a new campaign named TerminalFix, a variant of ClickFix, which is targeting organizations across various sectors. This campaign employs...

US Treasury Sanctions Iranian Cyber Actors for Compromising Critical Infrastructure and Data Theft

The US Treasury has sanctioned several Iranian cyber actors linked to the Ministry of Intelligence and Security (MOIS), accusing them of compromising critical infrastructure...

PaperCut Alerts Users to Active Exploitation of Critical Vulnerabilities in Print Management Software

The company behind a popular brand of printer management software, PaperCut, has issued an emergency advisory regarding critical vulnerabilities in its software, PaperCut NG...

Two Alleged TeamPCP Hackers Arrested in Australia for Software Supply Chain Attacks

Authorities in Australia have arrested two men believed to be members of TeamPCP, a cybercrime group implicated in a series of software supply chain...

AI Infrastructure Targeted: Microsoft Reports Credential Theft and Resource Monetization in LiteLLM, RAGFlow, and Kestra Workloads

Recent investigations by Microsoft have revealed a concerning trend in the cybersecurity landscape, where AI infrastructure is increasingly becoming a target for cybercriminals. Specifically,...

AI-Enabled Malware Analysis Reveals 97% Remains in Research Environments, with Limited Production Activity

  AI-Enabled Malware Analysis: Limited Production Activity Observed Research conducted by Palo Alto Networks reveals that while AI-enabled malware is a growing concern, approximately 97% of...

ReliaQuest Confirms Targeting by ShinyHunters in Limited Social Engineering Attack

Cybersecurity firm ReliaQuest has confirmed being targeted by hackers affiliated with the notorious ShinyHunters group, but claims the impact of the attack was limited. ReliaQuest...

U.S. Bancorp Investigates LockBit Ransomware Claims Linked to Fourth-Party Breach

U.S. Bancorp is currently investigating claims of data theft linked to the LockBit ransomware gang, which recently added the bank to its list of...

Recent Articles

Cyber Warriors Conclave Chapter X — Beyond the Ballroom