Nation-State 1,600 Victims Hit by South American APT’s Malware South American cyberespionage group Blind Eagle has infected over 1,600 organizations in Colombia in a recent campaign. Ionut ArghireMarch 11, 2025
Nation-State Iranian Hackers Target UAE Firms With Polyglot Files An Iranian threat actor was seen targeting UAE organizations with polyglot files to deliver a new backdoor named Sosano. Ionut ArghireMarch 5, 2025
Artificial Intelligence OpenAI Bans ChatGPT Accounts Used by Chinese Group for Spy Tools OpenAI has banned ChatGPT accounts used by Chinese threat actors, including ones leveraged for the development of spying tools. Eduard KovacsFebruary 24, 2025
Nation-State How China Pinned University Cyberattacks on NSA Hackers A researcher dives into Chinese reports attributing cyberattacks on Northwestern Polytechnical University to the NSA’s TAO division. Ionut ArghireFebruary 21, 2025
Malware & Threats How Russian Hackers Are Exploiting Signal ‘Linked Devices’ Feature for Real-Time Spying Mandiant warns that multiple Russian APTs are abusing a nifty Signal Messenger feature to surreptitiously spy on encrypted conversations. Ryan NaraineFebruary 19, 2025
Ransomware Chinese Cyberspy Possibly Launching Ransomware Attacks as Side Job A toolset associated with China-linked espionage intrusions was employed in a ransomware attack, likely by a single individual. Ionut ArghireFebruary 13, 2025
Nation-State Russian Cyberespionage Group Hit 60 Victims in Asia, Europe Russia-linked TAG-110 has targeted over 60 government, human rights, and educational entities in Asia and Europe. Ionut ArghireNovember 22, 2024
Nation-State US Gov Agency Urges Employees to Limit Phone Use After China ‘Salt Typhoon’ Hack The US government's CFPB sent an email with a simple directive: “Do NOT conduct CFPB work using mobile voice calls or text messages.” SecurityWeek NewsNovember 8, 2024
Nation-State Cyberspies Target Air-Gapped Systems at European Government Organization Cyberespionage APT GoldenJackal has been targeting air-gapped systems at government organizations and embassies. Ionut ArghireOctober 9, 2024
Nation-State North Korean Hackers Lure Critical Infrastructure Employees With Fake Jobs A North Korean group tracked as UNC2970 has been spotted trying to deliver new malware to people in the aerospace and energy industries. Eduard KovacsSeptember 18, 2024
Malware & Threats Iranian Hackers Targeting Iraqi Government: Security Firm Hackers believed to be operating on behalf of the Iranian government have deployed malware to Iraqi government networks. Eduard KovacsSeptember 12, 2024
Malware & Threats Cisco Patches NX-OS Zero-Day Exploited by Chinese Cyberspies Cisco has patched an NX-OS command injection zero-day exploited by China-linked cyberespionage group Velvet Ant. Ionut ArghireJuly 2, 2024