FamousSparrow APT Targets Azerbaijani Oil and Gas Industry

FamousSparrow APT Targets Azerbaijani Oil and Gas Industry

I'd like to thank my co-author, Martin Zugec, for his valuable contributions to this report ...
Footer-for-Blogs-3

CISA Warns SolarWinds and Ivanti Vulnerabilities Are Actively Exploited

Organizations often prioritize patching vulnerabilities based on severity scores, assuming that lower-rated issues pose limited risk. In practice, attackers frequently exploit vulnerabilities that remain unpatched in real environments, regardless of their official ...
Footer-for-Blogs-3

Iranian APT Hack Targets US Airport Bank and Software Company

Critical infrastructure organizations continue to face sustained pressure from nation-state cyber operations. Airports, financial institutions, and software companies represent high-value targets because of the operational and economic disruption that a successful intrusion ...
APT36: A Nightmare of Vibeware

APT36: A Nightmare of Vibeware

I'd like to thank my coauthors Adrian Schipor, Victor Vrabie, Marius Baciu, and Martin Zugec for their invaluable contributions to this research.  ...
Footer-for-Blogs-3

India’s Largest Pharmacy Just Exposed Millions of Records, and It Wasn’t a Sophisticated Hack

Not every major breach starts with advanced malware or a nation-state playbook.Sometimes, it starts with something far more ordinary. This week, security researchers disclosed that Dava India, one of the country’s largest ...
green button with the word "Access" on it in a shattered glass case.

Salt Typhoon, Rootkits, and Compliance

When U.S. officials began publicly discussing the threat actor known as Salt Typhoon, it was clear this was something beyond mere disorganized attacks. But for compliance leaders, the more important question was ...
Footer-for-Blogs-3

Cyber Fraud Takes the Lead: What the Shift Away From Ransomware Signals for Enterprises

A new global assessment shows that cyber fraud has overtaken ransomware as the top cybersecurity concern for business leaders, driven by a sharp rise in phishing, business email compromise, and identity-based scams, ...
Footer-for-Blogs-3

Advanced Persistent Threats

Not all cyberattacks are created equal. While many are opportunistic and short-lived, some campaigns are methodical, stealthy, and highly targeted. These are known as Advanced Persistent Threats (APTs). Unlike ransomware that makes ...

Volt Typhoon Malware: US Critical Infrastructure Breached

In a recent revelation, the U.S. government disclosed that the Chinese state-sponsored hacking group, Volt Typhoon has surreptitiously infiltrated critical infrastructure networks within the country for a staggering five-year period. This embedded ...