China-Linked TA416 Targets European Governments with PlugX and OAuth-Based Phishing The Hacker News
cyberintel.kalymoon.com · 47312 articles · updated every 4 hours · grows forever
China-Linked TA416 Targets European Governments with PlugX and OAuth-Based Phishing The Hacker News
GOLD BLADE Exploiting Custom QWCrypt Locker for Data Exfiltration and Ransomware Deployment cyberpress.org
When trust turns toxic: Mars exec jailed in $28m fraud case that exposed insider risk BakeryAndSnacks.com
Malicious insider activity surges amid dark web recruitment drive, Accenture warns Cybernews
AI attack trends reshape cybersecurity at RSAC 2026 SiliconANGLE
CrowdStrike Dived. Why a New AI Tool Crushed Cybersecurity Stocks. barrons.com
Value of AI, cloud solutions reign in Cellebrite’s 2025 annual industry trends survey Police1
New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands The Hacker News
83% of Ivanti EPMM Exploits Linked to Single IP on Bulletproof Hosting Infrastructure The Hacker News
Vulnerability Research Is Cooked Thomas Ptacek's take on the sudden and enormous impact the latest frontier models are having on the field of vulnerability research. Within the next few months, coding…
A fun thing about recording a podcast with a professional like Lenny Rachitsky is that his team know how to slice the resulting video up into TikTok-sized short form vertical videos. Here's one he sha…
On the kernel security list we've seen a huge bump of reports. We were between 2 and 3 per week maybe two years ago, then reached probably 10 a week over the last year with the only difference being o…
The challenge with AI in open source security has transitioned from an AI slop tsunami into more of a ... plain security report tsunami. Less slop but lots of reports. Many of them really good. I'm sp…
Months ago, we were getting what we called 'AI slop,' AI-generated security reports that were obviously wrong or low quality. It was kind of funny. It didn't really worry us. Something happened a mont…
Here’s a fossil of a 150-million year old fish that choked to death on a belemnite rostrum : the hard, internal shell of an extinct, squid-like animal. Original paper . As usual, you can also use this…
This post reflects my personal opinion and not necessarily that of other members of Apollo Research. TLDR: I think funders should heavily incentivize AI safety work that enables spending $100M+ in com…
Insider Brief Quantum technology is often portrayed as a field staffed by people with doctoral degrees and years of academic experience. That may be how it is now, but experts are increasingly concern…
Recent supply chain attacks have highlighted an urgent need for organizations to shift from a reactive security posture to a preemptive exposure management strategy. Learn why endpoint detection and r…
Additional Adapters and More Modules This week, we added a whole new bunch of HTTP/HTTPS-based CMD payloads for X64 and X86 versions of Windows. The additional breadth of selectable payloads and deliv…
A vulnerability, which was classified as critical , was found in Linux Kernel up to 7.0-rc4 . This affects the function decode_int of the component nf_conntrack_h323 . Such manipulation leads to out-o…
A vulnerability has been found in Linux Kernel up to 7.0-rc4 and classified as critical . This impacts the function drm_dev_unplug . Performing a manipulation results in use after free. This vulnerabi…
A vulnerability was found in Linux Kernel up to 7.0-rc4 and classified as critical . Affected is the function qman_create_fq of the component fsl . Executing a manipulation can lead to race condition.…
A vulnerability was found in Linux Kernel up to 6.19.9/7.0-rc4 . It has been classified as critical . Affected by this vulnerability is the function emac_run_xdp . The manipulation leads to memory lea…
A vulnerability was found in Linux Kernel up to 7.0-rc4 . It has been declared as critical . Affected by this issue is the function mana_hwc_destroy_channel of the component IRQ Handler . The manipula…