MSP guide to scaling cybersecurity with AI-powered risk management

hacker newsMarch 6, 2026Artificial Intelligence/Enterprise Security Scaling cybersecurity services as an MSP or MSSP requires technical expertise and a business model that delivers measurable value at scale. Risk-based cybersecurity is the foundation of that model. Done right, it builds customer trust, increases upsell opportunities, and drives recurring revenue. But delivering this consistently and efficiently requires […]

Iran-linked Muddy Water hackers target US networks with new Dindoor backdoor

A new investigation by Broadcom’s Symantec and Carbon Black Threat Hunters team has uncovered evidence of an Iranian hacker group infiltrating the networks of multiple U.S. companies, including banks, airports, nonprofit organizations and the Israeli arm of a software company. This activity is believed to be the work of a state-sponsored hacking group called MuddyWater […]

China-linked hackers use TernDoor, PeerTime, and BruteEntry in communications attacks in South America

Ravi LakshmananMarch 6, 2026Cyber ​​espionage/threat intelligence China-linked advanced persistent threat (APT) attackers have been targeting critical communications infrastructure in South America since 2024, targeting Windows and Linux systems and edge devices with three different implants. This activity is being tracked by Cisco Talos as UAT-9244 and is described as being closely related to another cluster […]

Microsoft reveals ClickFix campaign to deploy Lumma Stealer using Windows Terminal

Ravi LakshmananMarch 6, 2026Endpoint security/browser security Microsoft on Thursday revealed details of a wide-ranging new ClickFix social engineering campaign that leveraged the Windows Terminal app as a way to activate a sophisticated attack chain and deploy the Lumma Stealer malware. This activity, identified in February 2026, allows users to install Windows[ファイル名を指定して実行]Instead of launching a dialog […]

Hikvision and Rockwell Automation CVSS 9.8 defects added to CISA KEV catalog

Ravi LakshmananMarch 6, 2026Vulnerability/Network Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws affecting Hikvision and Rockwell Automation products to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The critical severity vulnerabilities are: CVE-2017-7921 (CVSS Score: 9.8) – Improper authentication vulnerability affecting multiple Hikvision products could […]

Post-Quantum Cryptography Webinar for Security Leaders

hacker newsMarch 5, 2026Encryption/data protection Most organizations assume that encrypted data is secure. However, many attackers are already preparing for a future where today’s encryption can be broken. Rather than trying to decrypt the information now, we collect and store the encrypted data so that it can be decrypted later using a quantum computer. This […]

Cisco confirms active exploitation of two vulnerabilities in Catalyst SD-WAN Manager

Ravi LakshmananMarch 5, 2026Vulnerabilities / Enterprise Security Cisco has revealed that two more vulnerabilities affecting Catalyst SD-WAN Manager (formerly known as SD-WAN vManage) are being exploited in the wild. The vulnerabilities in question are as follows. CVE-2026-20122 (CVSS Score: 7.1) – Arbitrary file overwrite vulnerability could allow an authenticated, remote attacker to overwrite arbitrary files […]

DDR5 Bot Scalping, Samsung TV Tracking, Reddit Privacy Fine & More

Ravie LakshmananMar 05, 2026Cybersecurity / Hacking News Some weeks in cybersecurity feel routine. This one doesn’t. Several new developments surfaced over the past few days, showing how quickly the threat landscape keeps shifting. Researchers uncovered fresh activity, security teams shared new findings, and a few unexpected moves from major tech companies also drew attention. Together, […]

Dust Specter targets Iraqi officials with new SPLITDROP and GHOSTFORM malware

Ravi LakshmananMarch 5, 2026Malware/Threat Intelligence A suspected Iranian-linked actor is believed to have been involved in a campaign targeting Iraqi government officials by impersonating the Iraqi Ministry of Foreign Affairs and delivering a series of never-before-seen malware. Zscaler ThreatLabz, which observed this activity in January 2026, is tracking this cluster under the name Dust Specter. […]

Where multi-factor authentication stops and credential abuse begins

Organizations typically deploy multi-factor authentication (MFA) and assume that a stolen password is not sufficient to gain access to a system. In Windows environments, that assumption is often incorrect. Attackers still use valid credentials to breach networks every day. The problem isn’t MFA itself, it’s coverage. MFA enforced through an identity provider (IdP) such as […]