China-linked UAT-8099 targets IIS servers in Asia with BadIIS SEO malware

Cybersecurity researchers have discovered a new campaign attributed to a China-linked threat actor known as UAT-8099 that took place between late 2025 and early 2026. The activity, discovered by Cisco Talos, targeted vulnerable Internet Information Services (IIS) servers across Asia, with a particular focus on targets in Thailand and Vietnam. The scale of the campaign […]

Badges, Bytes and Intimidation January 30, 2026 Cybercrime / Threat Intelligence Behind the scenes of law enforcement in cyber: What do we know about the cybercriminals we have arrested? What brought them to us, where did they come from, and what role did they play at the crime scene? Introduction: One look at the decentralized fight against cybercrime The sophistication and diversification of cybercrime is forcing law enforcement agencies around the world to respond through increasingly coordinated and publicized actions. However, despite the visibility of these activities, to our knowledge, a comprehensive overview of how law enforcement agencies respond to cybercrime globally does not yet exist. Publicly available information includes agency, jurisdiction, and incident-specific reports (e.g. "operation endgame") [1] and reporting formats provide piecemeal insights rather than a coherent understanding of what types of crimes are being targeted, what actions are being taken, and who the offenders are. The result is isolated glimpses rather than a coherent picture. therefore…

Badges, Bytes and Intimidation January 30, 2026 Cybercrime / Threat Intelligence Behind the scenes of law enforcement in cyber: What do we know about the cybercriminals we have arrested? What brought them to us, where did they come from, and what role did they play at the crime scene? Introduction: One look at the decentralized […]

Former Google engineer found guilty of stealing 2,000 AI trade secrets from Chinese startup

Ravi LakshmananJanuary 30, 2026Artificial intelligence/economic espionage A former Google engineer accused of stealing thousands of confidential company documents to build a startup in China has been sentenced in the United States, the Department of Justice (DoJ) announced Thursday. Linwei Ding (also known as Leon Ding), 38, was convicted by a federal jury of seven counts […]

SmarterMail fixes critical uncertified RCE flaw in CVSS 9.3 scores

Ravi LakshmananJanuary 30, 2026Vulnerabilities / Email Security SmarterTools has addressed two additional security flaws in its SmarterMail email software. One of them is a critical security flaw that could lead to the execution of arbitrary code. This vulnerability is tracked as CVE-2026-24423 and has a CVSS score of 9.3 out of 10.0. According to the […]

Two Ivanti EPMM zero-day RCE flaws actively exploited, security update released

Ravi LakshmananJanuary 30, 2026Vulnerabilities / Enterprise Security Ivanti has released security updates to address two security flaws that affect Ivanti Endpoint Manager Mobile (EPMM) and were exploited in a zero-day attack. One of them was added to the Known Exploited Vulnerabilities (KEV) Catalog by the US Cybersecurity and Infrastructure Security Agency (CISA). The critical severity […]

Researchers discover 175,000 publicly available Ollama AI servers in 130 countries

A new joint study by SentinelOne SentinelLABS and Censys reveals that the deployment of open source artificial intelligence (AI) has created a vast “layer of unmanaged, publicly accessible AI computing infrastructure” spanning 175,000 unique Ollama hosts in 130 countries. The company says these systems span both cloud and residential networks around the world and operate […]

New RCEs, Darknet Busts, Kernel Bugs & 25+ More Stories

Ravie LakshmananJan 29, 2026Cybersecurity / Hacking News This week’s updates show how small changes can create real problems. Not loud incidents, but quiet shifts that are easy to miss until they add up. The kind that affects systems people rely on every day. Many of the stories point to the same trend: familiar tools being […]

Study of 100+ Energy Systems Reveals Critical Gaps in OT Cybersecurity

OMICRON’s investigation reveals widespread cybersecurity gaps in operational technology (OT) networks in substations, power plants, and control centers around the world. Based on data from more than 100 installations, this analysis highlights recurring technical, organizational, and functional issues that leave critical energy infrastructure vulnerable to cyberthreats. The findings are based on several years of implementing […]

3 decisions CISOs must make to prevent downtime risk in 2026

hacker newsJanuary 29, 2026Threat intelligence/incident response In addition to the direct impact of a cyberattack, businesses suffer from a secondary but potentially even more costly risk: operational downtime, no matter how much it occurs, leading to very real damage. Therefore, it is important for CISOs to prioritize decisions that reduce dwell time and protect the […]

SolarWinds fixes four critical web help desk flaws related to unauthenticated RCE and authentication bypass

Ravi LakshmananJanuary 29, 2026Vulnerabilities/Software Security SolarWinds has released a security update that addresses multiple security vulnerabilities impacting the SolarWinds Web Help Desk, including four critical vulnerabilities that could lead to authentication bypass and remote code execution (RCE). Here is the list of vulnerabilities: CVE-2025-40536 (CVSS Score: 8.1) – Security control bypass vulnerability that allows unauthenticated […]