Apple has quietly rolled out a new wave of high-confidence “Apple Threat Notification” alerts, warning selected iPhone users in 110 countries that their devices may be targeted by government-grade mer…
cyberintel.kalymoon.com · 11170 articles · updated every 4 hours · grows forever
Apple has quietly rolled out a new wave of high-confidence “Apple Threat Notification” alerts, warning selected iPhone users in 110 countries that their devices may be targeted by government-grade mer…
A new attack technique that manipulates a computer’s memory controller to bypass some of the strongest hardware security boundaries built into modern processors, including protections around System Ma…
Microsegmentation tools stop attackers from moving sideways. Once ransomware operators land on one machine, everything that follows credential harvesting, domain escalation, mass encryption depends on…
A secure web gateway inspects outbound web traffic blocking malicious sites, enforcing acceptable-use policy, decrypting TLS, and stopping malware before it reaches a browser. Zscaler leads on scale a…
AI’s potential as a security tool and the danger of autonomous AI agents as a new attack surface were key themes of the presentations and product announcements at Black Hat and DEFCON in Las Vegas las…
You're not alone if you just received an "Apple Threat Notification" saying it detected a "mercenary spyware attack targeted at your iPhone." [...]
Fulcrumsec Claims 2nd Data Dump Exposes Firm's Hugging Face Models, Drug R&D Data Extortion gang Fulcrumsec has leaked on its dark web site a second large cache of data it allegedly stole in a June at…
Also, LiteLLM Attack Exposed 430,000 Pipelines, Ukrainian IT Workers Targeted This week: An evil twin attack on a Delta flight, the LiteLLM attack exposed 430,000 pipelines, Russian hackers targeted U…
Resilience Data Shows Social Engineering Dominates Over AI-Native Losses AI is amplifying familiar attacks rather than creating new categories of loss. Resilience's Jud Dressler explains why social en…
CEO: Funding Will Expand Exploit Blocking Across Cloud-Native and Agentic Apps Startup Oligo raised $60 million to expand runtime exploit blocking to agentic AI, tracing activity from prompts and tool…
Security researchers have seen evidence that attackers are attempting to exploit a currently unpatched SQL injection vulnerability in GeoServer, an open-source web server for managing and publishing g…
Exploitation against CVE-2026–59310 began earlier this month, and patching the vulnerability may not be enough to fully mitigate the threat.
An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine into Safe Mode with Networking. [...]
Authorities in Ukraine shut down 94 fraudulent call centers across the country that lured people into investment scams or tried to obtain access to bank accounts. [...]
Also: CTFC-led $48M Fraud Case, NFT Founder Charged in $10M Scam This week, Harmony and BTCPay hacked, violent crypto thefts surged, the U.S. CFTC filed a $48 million fraud case, an NFT founder charge…
A newly identified macOS infostealer called AmnesiaStealer is spreading via a convincing fake GitHub download page, tricking Mac users into pasting a malicious Terminal command that silently installs …
Beacon, the customer relationship management (CRM) platform relied on by over a thousand UK charities and non-profit organizations, has confirmed that a threat actor made a complete copy of and exfilt…
Fortinet has rolled out fixes for a batch of authentication-related vulnerabilities across its FortiWeb, FortiManager, and FortiClient product lines, urging administrators to patch quickly given the s…
A recently patched critical vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being exploited in an active campaign to deploy a reverse SSH tool for persistence and remote access. [...…
Multiple 'watermark removers' have surfaced days after Anthropic began watermarking text generated by Claude, including an open source project with over 4,500 GitHub stars and paid AI detection evasio…