Kaspersky attributes a new threat actor, Armored Likho, to espionage and financially motivated attacks on government agencies and power utilities across Russia, Brazil, and Kazakhstan using BusySnake stealer.
FBI arrested an IRGC-linked cybercriminal, Russian hackers exfiltrated Signal backup encryption keys, and unidentified actors breached a DHS information network โ all in one week.
Citizen Lab forensics confirm former European Parliament Member Stelios Kouloglou was repeatedly compromised with Pegasus while serving on the committee probing commercial spyware abuse in the EU.
JFrog links North Korea-tied actors to npm packages 'rollup-packages-polyfill-core' and 'rollup-runtime-polyfill-core,' cloning legitimate Rollup tooling metadata to enable remote access and secrets theft from developers.
War on the Rocks marks America's 250th birthday with a historical essay on the Adams-Jefferson rivalry and divergent visions of federal power. No cybersecurity or geopolitical threat content present; not applicable to this briefing.
Two new Chinese large language models now compete with top U.S. frontier models, raising concern that offensive cyber operators gain disproportionate benefit over under-resourced defenders. The asymmetry matters because attack automation scales faster than defensive tooling adoption in most enterprises.
Researchers discovered Avalon, an undocumented modular framework delivered via multi-stage phishing that combines credential harvesting, lateral movement, remote access, and ransomware in a single package.
Researchers documented a real-world attack in which an agentic AI leveraged Langflow to chain known exploits with real-time reasoning, executing a full ransomware intrusion autonomously.