Latest CyberSec News by @thecyberpicker

Latest CyberSec News by @thecyberpicker

31742 bookmarks
Custom sorting
New Cyber-Espionage Campaign Targets UAE Aviation and Transport
New Cyber-Espionage Campaign Targets UAE Aviation and Transport
A cyber-espionage campaign targeting UAE aviation and transport has been identified by researchers, using customized lures to deploy Sosano malware
·infosecurity-magazine.com·
New Cyber-Espionage Campaign Targets UAE Aviation and Transport
Catalan court orders former NSO Group executives be indicted for spyware abuses
Catalan court orders former NSO Group executives be indicted for spyware abuses
A provincial court in Barcelona has ordered that three former senior executives at NSO Group, a prominent spyware manufacturer, be indicted for their alleged role in a high-profile hacking scandal in which at least 63 Catalan civil society members were targeted with the company’s surveillance technology.
·therecord.media·
Catalan court orders former NSO Group executives be indicted for spyware abuses
AI Gone Wild: Why Shadow AI Is Your Worst Nightmare | CSA
AI Gone Wild: Why Shadow AI Is Your Worst Nightmare | CSA
Shadow AI is defined as employees using generative AI, coding assistants, or analytics tools without IT’s knowledge. Shadow AI is even riskier than shadow IT.
·cloudsecurityalliance.org·
AI Gone Wild: Why Shadow AI Is Your Worst Nightmare | CSA
New polyglot malware hits aviation, satellite communication firms
New polyglot malware hits aviation, satellite communication firms
A previously undocumented polyglot malware is being deployed in attacks against aviation, satellite communication, and critical transportation organizations in the United Arab Emirates.
·bleepingcomputer.com·
New polyglot malware hits aviation, satellite communication firms
Polish Space Agency offline as it recovers from cyberattack
Polish Space Agency offline as it recovers from cyberattack
​The Polish Space Agency (POLSA) has been offline since it disconnected its systems from the Internet over the weekend to contain a breach of its IT infrastructure.
·bleepingcomputer.com·
Polish Space Agency offline as it recovers from cyberattack
Hunters International ransomware claims attack on Tata Technologies
Hunters International ransomware claims attack on Tata Technologies
The Hunters International ransomware gang has claimed responsibility for a January cyberattack attack on Tata Technologies, stating they stole 1.4TB of data from the company.
·bleepingcomputer.com·
Hunters International ransomware claims attack on Tata Technologies
Dark Caracal group might have refreshed its malware, researchers say
Dark Caracal group might have refreshed its malware, researchers say
Dark Caracal, a group suspected of cyber mercenary activities, appeared to shift to a new espionage tool in a campaign aimed at Latin American targets, according to researchers.
·therecord.media·
Dark Caracal group might have refreshed its malware, researchers say
Broadcom fixes three VMware zero-days exploited in attacks
Broadcom fixes three VMware zero-days exploited in attacks
Broadcom warned customers today about three VMware zero-days, tagged as exploited in attacks and reported by the Microsoft Threat Intelligence Center.
·bleepingcomputer.com·
Broadcom fixes three VMware zero-days exploited in attacks
Shield Against Bad AI | Are Your Vendors AI-Native? | CSA
Shield Against Bad AI | Are Your Vendors AI-Native? | CSA
Explore how AI-native security fights back against AI-powered cyberattacks, protecting your organization from human-targeted threats.
·cloudsecurityalliance.org·
Shield Against Bad AI | Are Your Vendors AI-Native? | CSA
CISO Liability Risks Spur Policy Changes at 93% of Organizations
CISO Liability Risks Spur Policy Changes at 93% of Organizations
Fastly found that organizations have introduced changes such as increasing CISO participation in strategic decisions in response to growing personal liability risks
·infosecurity-magazine.com·
CISO Liability Risks Spur Policy Changes at 93% of Organizations
Trojaned AI Tool Leads to Disney Hack - Schneier on Security
Trojaned AI Tool Leads to Disney Hack - Schneier on Security
This is a sad story of someone who downloaded a Trojaned AI tool that resulted in hackers taking over his computer and, ultimately, costing him his job.
·schneier.com·
Trojaned AI Tool Leads to Disney Hack - Schneier on Security
Google fixes Android zero-day exploited by Serbian authorities
Google fixes Android zero-day exploited by Serbian authorities
Google has released patches for 43 vulnerabilities in Android's March 2025 security update, including two zero-days. Serbian authorities have used one of the zero-days to unlock confiscated devices.
·bleepingcomputer.com·
Google fixes Android zero-day exploited by Serbian authorities
How New AI Agents Will Transform Credential Stuffing Attacks
How New AI Agents Will Transform Credential Stuffing Attacks
AI-powered credential stuffing could worsen in 2025, as attackers scale automation to breach accounts. Defending identity security is now more critica
·thehackernews.com·
How New AI Agents Will Transform Credential Stuffing Attacks