Palo Alto Networks has released an advisory warning that a critical buffer overflow vulnerability in its PAN-OS software has been exploited in the wild. The vulnerability, tracked as CVE-2026-0300, has been described as a case of …
Blog Posts
The China-based cybercrime group known as Silver Fox has been linked to a new campaign targeting organizations in Russia and India with a new malware called ABCDoor. The activity involved using phishing emails that mimic correspondence …
A newly discovered Vietnamese-linked operation has been observed using Google AppSheet as a “phishing relay” to distribute phishing emails with the aim of compromising Facebook accounts. The activity, codenamed AccountDumpling by Guardio, has resulted in approximately …
Instructure, the company behind the widely used Canvas Learning Management System (LMS), has confirmed a data breach in early May 2026, with the notorious ShinyHunters extortion group claiming responsibility for the cyberattack. The Breach ShinyHunters claims …
In a stark reminder of the vulnerabilities inherent in even the most trusted corners of the digital certificate ecosystem, DigiCert—one of the world’s leading certificate authorities—disclosed a significant security breach that resulted in the fraudulent issuance …
In an unprecedented display of international law enforcement cooperation, authorities from the United States, China, and the United Arab Emirates have successfully dismantled one of the largest cryptocurrency fraud networks ever discovered. The massive operation, which …
A sophisticated phishing campaign codenamed VENOMOUS#HELPER has been observed targeting over 80 organizations since at least April 2025, weaponizing legitimate Remote Monitoring and Management (RMM) tools—SimpleHelp and ScreenConnect—to establish persistent remote access while evading traditional security …
Microsoft has disclosed details of a sophisticated large-scale credential theft campaign that leveraged polished enterprise-style templates, legitimate email services, and adversary-in-the-middle (AiTM) phishing techniques to compromise more than 35,000 users across 26 countries in just three …
A critical security vulnerability in Weaver (Fanwei) E-cology, an enterprise office automation and collaboration platform widely used across Asia-Pacific, has come under active exploitation in the wild, with evidence suggesting attackers began weaponizing the flaw just …
A former senior official of the Department of Information and Communications Technology (DICT) has come forward with allegations that internal disputes and severe budget constraints—not merely technical issues—contributed to the operational challenges faced by the government’s …
Grayscale Investments has identified asset tokenization as a transformative “megatrend” poised to reshape global capital markets, projecting a thousandfold increase in the Real World Asset (RWA) sector by 2030 as trillions of dollars in traditional assets …
North Korean hacking groups have stolen approximately $577 million in cryptocurrency through just two attacks in 2026—accounting for a staggering 76% of all crypto hack losses year-to-date, according to a new analysis from TRM Labs. The …