Enterprise malware has been a whole new ballgame over the last ten years. The days of traditional viruses and malicious executable files are gone as cybercriminals try to use other techniques to break into systems. Rather, they rely on ransomware,… Read More "How Fidelis Endpoint Strengthens Enterprise Malware Protection"
AmnesiaStealer macOS Malware Steals Data, Controls Browser Sessions
A multi-stage Rust-based macOS information stealer has been distributed through a counterfeit GitHub download page in recent ClickFix attacks, Jamf reports. The fake download page lures victims into pasting a command into Terminal, which leads to the newly discovered AmnesiaStealer… Read More "AmnesiaStealer macOS Malware Steals Data, Controls Browser Sessions"
A Security Pro Hacked North Korean Hackers. He Found They’d Breached Hundreds of Networks Worldwide
For years, North Korea’s stealthy hackers and scam IT workers have infiltrated companies, stealing corporate secrets and plundering billions in cryptocurrency to help fund the totalitarian regime and its weapons programs. Now, a security researcher who has spent almost two… Read More "A Security Pro Hacked North Korean Hackers. He Found They’d Breached Hundreds of Networks Worldwide"
The Most Dangerous AI Hacking Techniques Still Have Humans in the Loop
Agentic AI has permanently changed cybersecurity by making it quicker and easier to discover vulnerabilities in software and fix them—or develop so-called exploits to weaponize them. But longtime web security researcher James Kettle wanted to look beyond the bug-hunting apocalypse… Read More "The Most Dangerous AI Hacking Techniques Still Have Humans in the Loop"
Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack
More than 2,200 malicious versions of 440 packages were published to the NPM registry as part of a fresh Mini Shai-Hulud supply chain attack. Dubbed ChainDrop, the campaign started with 11 malware carriers in the keyv and cacheable namespaces, after… Read More "Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack"
Overview of System Vulnerabilities and Threats
Understanding system vulnerabilities, threats, and countermeasures is essential for maintaining a secure computing environment. In this regard, this article discusses some of the key vulnerabilities and threats that concern emanations, covert channels, backdoors, malicious code, server-side and client-side attacks, web… Read More "Overview of System Vulnerabilities and Threats"