Pakistan Spies on Afghan Finance Ministry With Xeno RAT

Pakistan Afghanistan Oleksii Liskonih Getty WG08lL

Despite broadly connected digital infrastructure, standard fare TTPs are enough to cause trouble for Afghanistan’s porous cybersecurity. Despite broadly connected digital infrastructure, standard fare TTPs are enough to cause trouble for Afghanistan’s porous cybersecurity.​ ​Read More

Attackers Use AI to Automate EDR Evasion Testing

Sophos offices Sundry Photography getty 1200830219

Python scripts were used to test malware against endpoint detection and response agents from Sophos, CrowdStrike, and Windows Defender. Python scripts were used to test malware against endpoint detection and response agents from Sophos, CrowdStrike, and Windows Defender.​ ​Read More

Tropical Blend: Cyber & Politics Ramp Up Across Latin America

old globe showing south america jhonny marcell oportus shutterstock sgiAMz

China-linked espionage groups have attacked at least a dozen nations in the region, gathering information on maritime shipping, oil production, and other geopolitical interests. China-linked espionage groups have attacked at least a dozen nations in the region, gathering information on maritime shipping, oil production, and other geopolitical interests.​ ​Read More

Coding Gaffe Exposes Microsoft 365 Accounts to Widespread Takeover

Authentication Zoonar GmbH Alamy

A disabled security setting meant to protect authentication across Android versions of key apps like Word, PowerPoint, and Excel paved the way for attackers to steal logins and data. A disabled security setting meant to protect authentication across Android versions of key apps like Word, PowerPoint, and Excel paved the way for attackers to steal logins […]

Malicious Notifications Could Trick Google Gemini Users

AIappsphone Nazar Rybak getty 2198117815 gaPy0H

A prompt injection flaw in Google Gemini’s voice assistant let attackers hide malicious commands in notifications, enabling social engineering and more. A prompt injection flaw in Google Gemini’s voice assistant let attackers hide malicious commands in notifications, enabling social engineering and more.​ ​Read More

Global Stock Exchange Hit by Monthslong Email Campaign

Stocks down nagelestock.net Alamy W4pyYO

A threat actor got a near-continuous view into an influential finance executive’s email inbox, thanks to clever use of legitimate, native Windows tools. A threat actor got a near-continuous view into an influential finance executive’s email inbox, thanks to clever use of legitimate, native Windows tools.​ ​Read More