Siloed Systems Leaves OT Devices Only 'One Hop Away' From the Internet In the rush to get servers on the ground, and especially to cater to the artificial intelligence boom, data center owners have ne…
cyberintel.kalymoon.com · 11170 articles · updated every 4 hours · grows forever
Siloed Systems Leaves OT Devices Only 'One Hop Away' From the Internet In the rush to get servers on the ground, and especially to cater to the artificial intelligence boom, data center owners have ne…
Would you like access to Anthropic's Claude at 90% off the normal price? All you have to do is redirect your traffic to a mysterious service called "Poison Claude". Only problem is that it's run by fr…
Just weeks after Microsoft patched a critical hole in Microsoft Defender, a cybersecurity researcher has posted an apparent workaround that provides system-level control to attackers once they gain an…
The "City-Forum" campaign has been active since at least March 2025 and has targeted organizations across multiple sectors with custom tooling.
Attempts to exploit a critical vulnerability (CVE-2026-71362) in Adobe's Commerce and Magento e-commerce platforms have been detected, potentially allowing attackers to hijack customer accounts. [...]
A new Android NFC relay malware called WindRelay is being used alongside the SpyNote remote administration tool (RAT) to steal live card data and send it to attackers in real time. [...]
An ongoing data theft campaign uses custom tools to steal data exposed to anonymous users through Salesforce Experience Cloud and ServiceNow customer portals. [...]
Senteon Named Finalist for the Coveted Top 25 Most Innovative Cybersecurity Companies in the World 2026 markets.businessinsider.com
Patch Now: Outdated Zoom Clients Still Vulnerable to Malicious Meeting Participants Security experts are urging all Zoom users to patch their client, after the video communications giant fixed flaws t…
Suspected China-linked attackers have carried out what researchers describe as the first fully autonomous cyberattack on a foreign government, using open-source artificial intelligence tools to breach…
AI security startup Mindgard has closed a $30 million Series A funding round, pushing the company’s total funding to nearly $42 million. The milestone reflects the growing urgency among enterprise org…
A newly identified threat actor is running a large-scale, long-running cyber campaign targeting Salesforce Experience Cloud sites and ServiceNow Service Portals globally. Dubbed the “City-Forum Campai…
Palo Alto Networks has released its August 12, 2026 security bulletin, disclosing 11 new vulnerabilities affecting PAN-OS, the GlobalProtect App, Prisma Access Agent, and Prisma Browser, along with a …
Walmart co-locates red and blue teams to build trust and improve security through collaborative purple teaming exercises
The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen backdo…
Security researchers have disclosed new "Plug and Pwn" attacks that abuse the Windows Plug and Play feature to trigger Windows into installing vulnerable or insecure vendor software and gain SYSTEM pr…
More than 737 browser extensions published on the Chrome Web Store impersonated well-known VPN and proxy services while routing users' traffic through SOCKS5 proxies operated by a single provider. [..…
Lessons To Learn About AI And Cybersecurity From Black Hat Cyber 2026 Seeking Alpha
A new Android fraud operation shows how quickly a convincing phone call can turn into financial loss. The campaign combines the SpyNote remote-control tool with WindRelay, a newly tracked NFC relay ma…
Windows users looking for a familiar cleanup utility are being steered toward a convincing counterfeit download page. The file they receive installs GhostDesk, a malicious Chrome extension built to wa…
Stolen login data is so abundant that criminal markets can sell it for almost nothing. Meanwhile, verified entry into large companies commands far higher prices, reshaping the underground economy. Inf…
Hundreds of Chrome extensions advertised as free VPN or proxy tools have been tied to a large traffic-redirection operation. The listings promised privacy and access to blocked services, but their cod…
An active cyberattack campaign targeting internet-accessible VMware vCenter instances. QUIRSO researchers uncovered evidence that advanced persistent threat (APT) actors are actively weaponizing CVE-2…