28 Feb

This month in security with Tony Anscombe – February 2026 edition

In this roundup, Tony looks at how opportunistic threat actors are taking advantage of weak authentication, unmanaged exposure, and popular AI tools 28 Feb 2026

Author rabih
27 Feb

Double whammy: Steaelite RAT bundles data theft, ransomware in one evil tool

A new remote access trojan (RAT) being sold on cybercrime networks enables double extortion attacks on Windows machines by bundling ransomware and data theft, along

Author rabih
27 Feb

Suspected Nork digital intruders caught breaking into US healthcare, education orgs

Digital intruders with possible links to North Korea have been infecting US education and healthcare sectors with a never-before-seen backdoor since at least December, according

Author rabih
27 Feb

Ransomware payments cratered in 2025, but attacks surged to record highs

Ransomware payments cratered in 2025, but it seems like the cybercrooks launching the attacks didn’t get the memo. That’s the headline from Chainalysis’ 2026 Crypto

Author rabih
27 Feb

French DIY etailer ManoMano admits customer data stolen

French online marketplace ManoMano is warning customers their personal data was siphoned off after a cyberattack hit one of its customer support subcontractors – and

Author rabih
27 Feb

Cops back Dutch telco Odido after second wave of ShinyHunters leaks

The Netherlands’ national police is backing Odido’s refusal to pay a ransom after ShinyHunters leaked a second round of records belonging to the telco. In

Author rabih
27 Feb

Mobile app permissions (still) matter more than you may think

Mobile Security Start using a new app and you’ll often be asked to grant it permissions. But blindly accepting them could expose you to serious

Author rabih
26 Feb

Rapid AI-driven development makes security unattainable, warns Veracode

Veracode has posted its annual State of Software Security report, based on data from 1.6 million applications tested on its cloud platform, finding that more

Author rabih
26 Feb

Scattered Lapsus$ Hunters auditioning female voices to sharpen social engineering

Prolific cybercrime crew Scattered Lapsus$ Hunters (SLSH) is reportedly recruiting women in the hope of improving its social engineering success. According to Telegram channel posts

Author rabih
26 Feb

Five Eyes warn: Patch your Cisco SD-WAN or risk root takeover

The Five Eyes intelligence alliance is urgently warning defenders to patch two Cisco Catalyst SD-WAN vulnerabilities used in attacks. First discovered by the Australian Signals

Author rabih
26 Feb

Claude collaboration tools left the door wide open to remote code execution

Security vulnerabilities in Claude Code could have allowed attackers to remotely execute code on users’ machines and steal API keys by injecting malicious configurations into

Author rabih
25 Feb

Google catches Beijing spies using Sheets to spread espionage across 4 continents

A China-linked crew found a unique formula for attacking telcos and government orgs across the Americas, Asia, and Africa in its latest round of intrusions.

Author rabih
25 Feb

Fake ‘interview’ repos lure Next.js devs into running secret-stealing malware

Next.js developers are once again in the crosshairs as hackers seed malicious repositories disguised as legitimate projects, according to Microsoft, which said a limited set

Author rabih
25 Feb

Ex-L3Harris exec jailed 7 years for selling exploits to Russia

The former general manager of L3Harris’s cyber arm will spend the next seven years behind bars for selling trade secrets to Russia. Peter Williams, 39,

Author rabih
25 Feb

Wynn Resorts takes attacker’s word for it that stolen staff data was deleted

Wynn Resorts has confirmed that employee data was stolen from its servers, and is taking the hackers’ word that they’ve since deleted it. For anyone

Author rabih
25 Feb

OpenAI says Chinese cops used ChatGPT to plan and track smear ops against opponents

A ChatGPT user with links to Chinese law enforcement tried to use the AI chatbot to run smear campaigns targeting the Japanese prime minister and

Author rabih
25 Feb

Threat intelligence supply chain is full of weak links, researchers find

Researchers from Georgia Tech have found that the supply chain for threat intelligence data is susceptible to adversarial action, and proposed a method to improve

Author rabih
24 Feb

AI has gotten good at finding bugs, not so good at swatting them

What good is finding a hole if you can’t fix it? Anthropic last week talked up Claude Code’s improved ability to find software vulnerabilities and

Author rabih
Load moreLoadingAll items loaded