China-linked DKnife AitM framework, routers targeted for traffic hijacking and malware distribution

Rabi LakshmananFebruary 6, 2026Malware/IoT Security Cybersecurity researchers have uncovered the secrets of a gateway monitoring and attacker-in-the-man (AitM) framework called DKnife, which has been operated by Chinese-linked attackers since at least 2019. The framework consists of seven Linux-based implants designed to perform deep packet inspection, manipulate traffic, and deliver malware through routers and edge devices. […]

CISA orders removal of unsupported edge devices to reduce risk to federal networks

Rabi LakshmananFebruary 6, 2026Federal Security/Infrastructure Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal civilian executive branch (FCEB) agencies to strengthen asset lifecycle management of edge network devices and remove devices that no longer receive security updates from original equipment manufacturers (OEMs) within the next 12 to 18 months. The agency said […]

Asian State Assistance Group TGR-STA-1030 breaches 70 governments and infrastructure-related organizations

Rabi LakshmananFebruary 6, 2026Cyber ​​espionage/malware New research from Palo Alto Networks Unit 42 reveals that a previously undocumented cyber espionage group based in Asia has infiltrated the networks of at least 70 governments and critical infrastructure organizations in 37 countries over the past year. Additionally, Hacking Team was observed conducting active reconnaissance on government infrastructure […]

How Samsung Knox prevents network security breaches

As you know, enterprise network security has evolved significantly over the past decade. Firewalls have become more intelligent, threat detection methods have advanced, and access controls have become more granular. However (and this is a big “however”), the increased use of mobile devices in business operations requires network security measures specifically tailored to the unique […]

Compromised dYdX npm and PyPI packages deliver wallet stealer and RAT malware

Cybersecurity researchers have discovered a new supply chain attack that compromises legitimate packages on npm and the Python Package Index (PyPI) repository, pushing malicious versions to facilitate wallet credential theft and remote code execution. The compromised versions of the two packages are shown below. “The @dydxprotocol/v4-client-js (npm) and dydx-v4-client (PyPI) packages provide tools for developers […]

Claude Opus 4.6 discovers over 500 high-severity flaws across major open source libraries

Rabi LakshmananFebruary 6, 2026Artificial intelligence/vulnerabilities Artificial intelligence (AI) company Anthropic has revealed that its latest large-scale language model (LLM), Claude Opus 4.6, has discovered more than 500 previously unknown high-severity security flaws in open source libraries such as Ghostscript, OpenSC, and CGIF. Claude Opus 4.6, released Thursday, includes enhancements to coding skills such as code […]

AISURU/Kimwolf botnet launches record 31.4 Tbps DDoS attack

Rabi LakshmananFebruary 5, 2026Botnet/Network Security The distributed denial of service (DDoS) botnet known as AISURU/Kimwolf is believed to be responsible for the record-setting attack, which lasted just 35 seconds at a peak of 31.4 terabits per second (Tbps). Cloudflare, which automatically detected and mitigated this activity, said it was part of a growing volume of […]

Codespaces RCE, AsyncRAT C2, BYOVD Abuse, AI Cloud Intrusions & 15+ Stories

Ravie LakshmananFeb 05, 2026Cybersecurity / Hacking News This week didn’t produce one big headline. It produced many small signals — the kind that quietly shape what attacks will look like next. Researchers tracked intrusions that start in ordinary places: developer workflows, remote tools, cloud access, identity paths, and even routine user actions. Nothing looked dramatic […]

Buyer’s Guide to AI Usage Control

Today’s “AI Everywhere” reality is woven into daily workflows across the enterprise, embedded in a world of SaaS platforms, browsers, copilots, extensions, and shadow tools that are rapidly expanding faster than security teams can track them. However, most organizations still rely on traditional controls that operate far from where the AI ​​interactions actually occur. As […]