Chinese Threat Actor Deploys Leaked DarkSword iOS Exploit Kit
A Chinese-speaking threat actor is running 100+ fake AWS and Apple ID pages to deliver the leaked DarkSword iOS exploit kit and GHOSTBLADE malware.
A Chinese-speaking threat actor is running 100+ fake AWS and Apple ID pages to deliver the leaked DarkSword iOS exploit kit and GHOSTBLADE malware.
Expel attributes the April 2026 DigiCert certificate theft to CylindricalCanine, a subgroup of Chinese cybercrime group GoldenEyeDog using Golden Gh0st RAT.
ESET found 11 old UEFI shims that bypass Secure Boot on most UEFI systems. Microsoft revoked the vulnerable binaries in the June 2026 Patch Tuesday update.
AI enables natural language queries on video footage, allowing intelligence officers to search for behaviors rather than objects—creating vast new surveillance
Microsoft's AutoJack exploit chain turns an AI browsing agent into an RCE vector via an unauthenticated local WebSocket in AutoGen Studio.
Legacy OT systems in manufacturing face growing cyber risks as IT/OT convergence expands attack surfaces. Visibility, architecture, and long-term support are ke
Attackers hijacked over 400 AUR packages to install a Rust-based credential stealer. Systems built from affected packages since June 11 should be treated as com
Vietnam-aligned APT group OceanLotus ran two SPECTRALVIPER campaigns from 2024–2026, targeting a construction firm and stock investors via a supply-chain attack
ServiceNow patched a flaw on June 5, 2026 after threat actors exploited it to query instance tables across a subset of customers.
Children face the same identity and data risks as adults — often with higher stakes. Here's how to protect their digital lives early.
Europe is pushing for tech sovereignty amid concerns over US reliability. Reducing decades-long dependencies will require policy, procurement, and private secto
Popular websites still permit dangerously weak passwords. Mandatory MFA and stricter authentication laws could finally end the cycle.