Ghost identities, poisoned accounts, and AI agent chaos

BeyondTrust’s annual cybersecurity forecast points to a year in which old defenses quietly fail and new attack vectors proliferate. introduction The next big breach isn’t a phished password. It is the result of massive unmanaged identity debt. This debt comes in many forms. Whether it’s the “ghost” identities in IAM from the 2015 breach, the […]

Russian hackers target Ukrainian organizations with covert tactics

Ukrainian organizations are being targeted by Russian-origin attackers with the goal of siphoning sensitive data and maintaining persistent access to compromised networks. The campaign targeted large business services organizations for two months and local governments across the country for one week, according to a new report from Symantec and the Carbon Black Threat Hunters team. […]

10 npm packages discovered stealing developer credentials on Windows, macOS, and Linux

October 29, 2025Ravi LakshmananMalware/Threat Intelligence Cybersecurity researchers have discovered a set of 10 malicious npm packages designed to provide information theft targeting Windows, Linux, and macOS systems. “The malware uses four layers of obfuscation to hide its payload, displays a fake CAPTCHA to appear legitimate, fingerprints the victim by IP address, and downloads a 24MB […]

Active exploit hits Dassault and XWiki — confirms critical flaw CISA is under attack

October 29, 2025Ravi LakshmananVulnerabilities/Malware According to an alert issued by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and VulnCheck, attackers are actively exploiting multiple security flaws affecting Dassault Systèmes’ DELMIA Apriso and XWiki. The vulnerabilities are listed below. CVE-2025-6204 (CVSS score: 8.0) – A code injection vulnerability in Dassault Systèmes DELMIA Apriso could allow […]

New TEE.Fail side-channel attack extracts secrets from Intel and AMD DDR5 secure enclaves

October 28, 2025Ravi LakshmananEncryption/Hardware Security A group of academic researchers from Georgia Tech, Purdue University, and Synchronix has developed a side-channel attack called TEE.Fail that can extract secrets from trusted execution environments (TEEs) on a computer’s main processor, such as Intel’s Software Guard eXtensions (SGX) and Trust Domain Extensions (TDX) and AMD’s Secure Encrypted Virtualization […]

New Android Trojan ‘Herodotus’ Outwits Anti-Cheating Systems by Typing Like a Human

October 28, 2025Ravi LakshmananMalware/Mobile Security Cybersecurity researchers have revealed details of a new Android banking Trojan called Herodotus that has been observed in active campaigns targeting Italy and Brazil carrying out device takeover (DTO) attacks. “Herodotus is designed to perform device takeover while mimicking human behavior and making initial attempts to evade biometric detection of […]

Researchers expose GhostCall and GhostHire: BlueNoroff’s new malware chain

Threat actors associated with North Korea have been observed targeting the Web3 and blockchain sectors as part of two campaigns tracked as GhostCall and GhostHire. According to Kaspersky, these campaigns are part of a broader operation called SnatchCrypto that has been ongoing since at least 2017. This activity is believed to be due to a […]

Why early threat detection is essential for long-term business growth

In cybersecurity, speed isn’t just a win, it’s a multiplier. The faster you learn about new threats, the faster you can adapt your defenses, take less damage, and continue to grow your business with confidence. Early threat detection is not about preventing a breach someday, it’s about protecting the revenue you could be making every […]

Is your Google Workspace as secure as you think?

The new reality for lean security teams If you’re the first security or IT person at a fast-growing startup, you’ve probably inherited a simple yet highly complex mission: to secure your business without slowing it down. Most organizations using Google Workspace start by building an environment for collaboration, not resilience. Shared drives, permissive settings, and […]

Chrome zero-day exploited to deliver LeetAgent spyware from Italy’s Memento Labs

A zero-day exploit of a patched security flaw in Google Chrome led to the distribution of spying tools from Italian information technology and services provider Memento Labs, according to new findings from Kaspersky Lab. The vulnerability in question is CVE-2025-2783 (CVSS score: 8.3), which the company disclosed in March 2025 as being actively exploited as […]