Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Why SOC Teams Need Cross-Platform Malware Analysis to Stop Multi-OS Attacks
Enterprise attack surfaces are no longer defined by a single operating system. Corporate environments typically combine Windows workstations, macOS laptops ...
Apple Expands iOS 18.7.7 Security Update to Fight DarkSword Exploit Kit
Apple has taken the unusual step of broadening access to the iOS 18.7.7 and iPadOS 18.7.7 security update for a ...
Water Saci’s Casbaneiro–Horabot Phishing Campaign Targets Latin America and Europe
A large-scale, multi-stage phishing campaign is targeting Spanish-speaking users in enterprises across Latin America and several European countries. The operation ...
New WhatsApp Malware Campaign Uses VBS Scripts and AnyDesk for Stealthy Remote Access
Microsoft Defender researchers have identified a new targeted WhatsApp malware campaign that distributes malicious VBS scripts and establishes long-term remote ...
North Korean UNC4736 Linked to $285M Solana DeFi Hack on Drift Exchange
On 1 April 2026, the Solana-based decentralized exchange Drift suffered a theft of approximately $285 million, in what now appears ...
Chrome Zero-Day CVE-2026-5281: Critical WebGPU Vulnerability Under Active Exploitation
Google has released an unscheduled Chrome security update that patches 21 vulnerabilities, including an actively exploited zero-day vulnerability CVE-2026-5281. The ...
Living off the Land Attacks: How to Control Your Internal Attack Surface
Security models built around the principle of “find the malicious file, block the attack” are rapidly losing effectiveness. Modern adversaries ...
Axios npm Package Compromised in North Korean Supply Chain Attack Targeting Developers
The widely used JavaScript HTTP client Axios has become the center of a significant software supply chain attack. Google Threat ...