| Date | Title | Description |
| 17.09.2026 | Google Patches Actively Exploited Pixel Modem Flaw Linked to Spyware Tradecraft | By Kyle Belmonte
Published: Sep 17 2026, 7:51 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard
Join the Discussion |
| 03.09.2026 | Agentic Ransomware Took Down Enterprise in Ten Hours: AI Left 80-Page Audit | By Roger Satterfield
Published: Sep 03 2026, 8:18 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 26.08.2026 | Chinese State Hackers Doubled Attack Volume by Outsourcing to DeepSeek | By Joshua Mitchell
Published: Aug 26 2026, 5:18 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 20.08.2026 | China Hackers Breached 361 Networks in 5 Days; CISA Sets 3-Day Patch Window for Enterprise Flaws | By Joshua Mitchell
Published: Aug 20 2026, 7:55 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 19.08.2026 | Bluesky Hit Twice by Iran-Linked Hackers: ATProto API Is DDoS Soft Target | By Mark Rutherford
Published: Aug 19 2026, 12:14 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 18.08.2026 | China-Linked Backdoor Hides C2 Traffic in QUIC to Spy on Myanmar Diplomats | By Clayton Lewis
Published: Aug 18 2026, 3:04 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 17.08.2026 | CI — это не Jenkins. Зачем, как, чем — и цена отказа | CI - это не Jenkins
Пайплайн у вас есть. Он есть у всех: CI перестал быть предметом споров примерно тогда же, когда Docker перестал быть новостью. Именно поэтому разговор пора вести другой - не “зачем вам CI”, а можно ли верить вашему зелён... |
| 11.08.2026 | DeadLock Ransomware Hides C2 on Polygon Blockchain, 80-Plus Victims Hit | By Jackie Manning
Published: Aug 11 2026, 11:10 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 11.08.2026 | Sandworm Recruiter Scam Targets Ukrainian Sysadmins, Deploys Hidden WireGuard Trojan | By Kyle Belmonte
Published: Aug 11 2026, 11:00 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 11.08.2026 | Gunra Ransomware Hit Hospitals and Governments; Linux Victims Should Not Pay Ransom | By Chase Fiorini
Published: Aug 11 2026, 11:22 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 10.08.2026 | Personal AI Agent Hacked Melbourne Gym to Erase Stranger’s Reservation | By Mark Rutherford
Published: Aug 10 2026, 7:34 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 05.08.2026 | N-central’s Incomplete Patch Left MSP Clients Exposed While Attackers Held Both Keys | By John Bright
Published: Aug 05 2026, 11:57 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 01.08.2026 | Docker Hub OIDC Closes Last Long-Lived Credential Gap in GitHub Actions | By Joshua Mitchell
Published: Aug 01 2026, 1:24 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 01.08.2026 | DeepSeek Ran Autonomous Cyberattacks That Claude and OpenAI Safety Controls Blocked | By Kyle Belmonte
Published: Aug 01 2026, 7:16 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 23.07.2026 | Zero-Click Zimbra Flaw Fuels Active Russian Espionage Against NATO Agencies | By Daniel Butler
Published: Jul 23 2026, 11:46 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 20.07.2026 | GitHub Actions Gets Secure-by-Default CI/CD: Backport Shuts the Pwn Request Window | By Kyle Belmonte
Published: Jul 20 2026, 6:41 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 18.07.2026 | North Korea Buried Four-Stage Malware in Flag Images: Zero Antivirus Detections | By Daniel Butler
Published: Jul 18 2026, 3:24 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 16.07.2026 | Suno’s Hacked Source Code Confirms YouTube Stream-Ripping: Users Were Never Warned | By Joshua Mitchell
Published: Jul 16 2026, 6:21 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 10.07.2026 | GigaWiper: Modular Windows Backdoor Combines Disk Wiper, Fake Ransomware, Spyware | By Chase Fiorini
Published: Jul 10 2026, 2:06 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 10.07.2026 | Galaxy Z Fold 7 and Flip 7 July Update Fixes Critical Image-File Exploit | By Eloise Jones
Published: Jul 10 2026, 10:13 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 08.07.2026 | npm v12 Ships This Month, Blocking Install Scripts That Enabled Year of Supply Chain Attacks | By Kyle Belmonte
Published: Jul 08 2026, 8:15 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 04.07.2026 | Anubis Ransomware Hits 91 Victims: Citrix Bleed 2 Bypasses MFA Before Encryption | By Joshua Mitchell
Published: Jul 04 2026, 11:13 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 15.06.2026 | AI Agent Orchestration Gets a Control Plane: Databricks Open-Sources Omnigent | By Jerry Owens
Published: Jun 15 2026, 13:47 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 29.05.2026 | Iran and Russia to target Fifa World Cup, threat experts say | Russia and Iran rogue actors will target the Fifa World Cup as part of an ongoing anti-US position, according to global threat intelligence experts.
This year’s World Cup – taking place across the United States, Canada and Mexico – is likel... |
| 26.05.2026 | npm Supply Chain Attacks Hit GitHub: 2FA Approval Gate Now Blocks Stolen CI Tokens | By Adrian Parham
Published: May 26 2026, 08:10 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 20.05.2026 | Drupal Core Patch Drops Today: No-Login Flaw Puts Government and University Sites at Immediate Risk | By Shannon Harwood
Published: May 20 2026, 12:44 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 30.04.2026 | Claude Code, Copilot and Codex all got hacked. Every attacker went for the credential, not the model. | On March 30, BeyondTrust proved that a crafted GitHub branch name could steal Codex’s OAuth token in cleartext. OpenAI classified it Critical P1. Two days later, Anthropic’s Claude Code source code spilled onto the public npm registry, and ... |
| 25.04.2026 | CVSS scored these two Palo Alto CVEs as manageable. Chained, they gave attackers root access to 13,000 devices. | During Operation Lunar Peek in November 2024, attackers gained unauthenticated remote admin access — and eventual root — across more than 13,000 exposed Palo Alto Networks management interfaces. Palo Alto Networks scored CVE-2024-0012 at 9.... |
| 15.04.2026 | Sharp Rise in Brute-Force Cyber-Attacks from Middle East | Security researchers at Barracuda have identified an 88% spike in brute-force attacks targeting SonicWall and FortiGate devices originating from the Middle East, accounting for over half of all incidents seen by the SOC over February and Ma... |
| 01.04.2026 | Hackers slipped a trojan into the code library behind most of the internet. Your team is probably affected | Attackers stole a long-lived npm access token belonging to the lead maintainer of axios, the most popular HTTP client library in JavaScript, and used it to publish two poisoned versions that install a cross-platform remote access trojan. Th... |
| 16.03.2026 | Gemini panel in Chrome left the doors open for hackers, and you must update ASAP | A recently disclosed vulnerability in Google’s Gemini AI panel could have allowed hackers to hijack the feature and access sensitive data on a user’s device. Researchers at Palo Alto Networks’ Unit 42 first discovered the flaw, which is lab... |
| 20.02.2026 | The Rise of Porch Piracy: How Technology and Community Action Are Fighting Back | Created by
Carl Williams
Published: Feb 20 2026, 01:29 AM EST
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 17.02.2026 | Identity Emerges As A Primary Attack Vector | AI is shrinking attack timelines, identity is now a primary attack vector, and extortion is moving beyond encryption – these are just some of the headline findings from Unit 42’s Global Incident Response Report.
The Palo Alto Network resear... |
| 16.02.2026 | Заглянем в закулисье Muddled Libra | intro. Статья является переводом. Кто желает — вот оригинал:
При расследовании инцидента, произошедшего в сентябре 2025 года, Unit 42 обнаружила необычную виртуальную машину (ВМ), которая использовалась киберпреступной группировкой Muddled ... |
| 04.02.2026 | Теневой ИИ, двойное вымогательство, дипфейки, фишинг-вишинг и не только: киберпрогнозы-2026 | Привет, Хабр!
На прошлой неделе мы рассказали о мировых трендах IT и ИБ, сложившихся в 2025 году. Это важные тенденции, которые буду влиять на нас и наше будущее в ближайшие месяцы и годы. Каким видится это будущее, исходя из тенденций — ра... |
| 29.01.2026 | Palo Alto Networks Completes Acquisition of Chronosphere | Palo Alto Networks® (NASDAQ: PANW), a global cybersecurity company, completed its acquisition of Chronosphere, an observability company.
The amount of the deal was not disclosed.
With this acquisition, the planned integration of Palo Alto N... |
| 27.01.2026 | Hackers recorrem aos LLMs para criar golpes mais convincentes | IA generativa é a nova ferramenta para criar páginas falsas (ilustração: Vitor Pádua/Tecnoblog)
O melhor da tecnologia está no nosso canal no WhatsApp
Entre Agora Resumo
Hackers estão usando LLMs para criar páginas de phishing em tempo real... |
| 27.01.2026 | Январский «В тренде VM»: уязвимости в Windows, React и MongoDB | Хабр, привет! На связи Александр Леонов, ведущий эксперт PT Expert Security Center и дежурный по самым опасным уязвимостям месяца. Мы с командой аналитиков Positive Technologies регулярно исследуем информацию об уязвимостях из баз и бюллете... |
| 14.01.2026 | The 11 runtime attacks breaking AI security — and how CISOs are stopping them | Enterprise security teams are losing ground to AI-enabled attacks — not because defenses are weak, but because the threat model has shifted. As AI agents move into production, attackers are exploiting runtime weaknesses where breakout times... |
| 08.01.2026 | Identity Fraud Set to Explode in 2026, Warn Security Pros | Deepfake fraud, sophisticated social engineering, and hiring scams are set to explode this year, according to a new report from Nametag, which argues that traditional approaches to identity security are leaving gaps for attackers to slip in... |
| 14.12.2025 | В GitHub Actions, пожалуй, худший пакетный менеджер | Когда я закончил работать над проектом ecosyste-ms/package-manager-resolvers, мне стало интересно, какой алгоритм разрешения зависимостей использует сервис GitHub Actions. Когда вы записываете в файл рабочего потока (workflow) инструкцию us... |
| 08.11.2025 | New Landfall spyware used images to hack Samsung Galaxy phones for nearly a year | What’s happened? Security researchers at Palo Alto Networks’ Unit 42 have uncovered an Android spyware campaign called Landfall. The malware exploited a zero-day vulnerability in Samsung Galaxy phones that could be triggered by a malicious ... |
| 04.08.2025 | Social Engineering Attacks Surge in 2025, Becoming Top Cybersecurity Threat | Image: VisualWonders/Adobe Stock
A new report from Palo Alto Networks’ Unit 42 highlights how attackers are shifting away from technical vulnerabilities and turning instead to manipulating people, making social engineering the most frequent... |
| 07.07.2025 | FBI Warning: Scattered Spider Hackers Are Targeting Airlines, Too | Image: iStockphoto/domoyega
The FBI has issued a public advisory warning about a rising wave of cyberattacks targeting the airline sector: The notorious hacking group known as Scattered Spider is expanding its focus beyond its previous vict... |
| 12.06.2025 | Enterprise GenAI Adoption: What’s Trending in 2025? | In its State of Generative AI 2025 report, Palo Alto Networks details the rising adoption of genAI tools across enterprise, based on observations from tens of thousands of customer tenants.
The report reveals a sharp increase in genAI use –... |
| 19.05.2025 | Fighting AI with AI in cybersecurity | Listen
8 min
New: You can now listen to articles.
This audio is generated by an AI tool.
Artificial intelligence (AI) is revolutionising industries, boosting efficiency and transforming workflows. But as AI becomes more integrated in daily ... |
| 28.04.2025 | Intezer Unveils Integrations with Leading Cloud Companies to Deliver Cloud Security Alert Triage and Investigation | Intezer - Leave the SOC grunt work to technology. Keep noise, false positives, and alerts from overwhelming your security team. NEW YORK, NY, UNITED STATES, April 28, 2025 /EINPresswire.com/ -- Intezer, the leader in AI SOC solutions, today... |
| 22.04.2025 | ‘Fake’ IT Workers Using Real-Time Deepfakes to Fool Interviewers | The North Korean ‘fake’ IT worker saga has taken another twist with fresh research from Palo Alto Networks threat research lab, Unit 42, suggesting these hostile cyber-actors are using real-time deepfake technology in face-to-face interview... |
| 05.04.2025 | DeepSeek jolts AI industry: Why AI’s next leap may not come from more data, but more compute at inference | Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More
The AI landscape continues to evolve at a rapid pace, with recent developments challenging established paradigms.... |
| 26.02.2025 | Как мы взломали цепочку поставок и получили 50 тысяч долларов | В 2021 году я только начинал свой путь в наступательной безопасности. Я уже взломал довольно много компаний и получал стабильный доход охотой за баг-баунти — практикой этичного хакинга, при которой исследователи безопасности находят уязвимо... |
| 26.02.2025 | Report: Cyber-attackers Seeking Chaos To Get More Cash | Financially motivated cyber-attackers have changed their tactics, and now aim for deliberate disruption and sabotage to inflict maximum damage, hoping to coerce organisations into paying ever higher ransom demands.
That’s according to new r... |
| 25.12.2024 | Исследование: LLM можно использовать для генерации вредоносного JavaScript-кода и сокрытия малвари | Исследование Palo Alto Networks показало, что большие языковые модели (LLM) можно использовать для массовой генерации новых вариантов вредоносного JavaScript-кода, и это позволяет малвари лучше избегать обнаружения.
«Хотя с помощью LLM слож... |
| 13.12.2024 | В тренде VM: под прицелом продукты Windows, Ubuntu Server, Zyxel и другие | Хабр, привет! Я Александр Леонов, ведущий эксперт PT Expert Security Center. Мы с командой аналитиков Positive Technologies каждый месяц исследуем информацию об уязвимостях, полученную из баз и бюллетеней безопасности вендоров, социальных с... |
| 25.11.2024 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — уязвимости в утилите needrestart для Ubuntu, новый скрытый загрузчик BabbleLoader, атака на брандмауэров Palo Alto Networks, вредоносное ПО Infostealer в пакетах PyPI и 0-day уязвимости в VINTEO, найденные Positive Technol... |
| 22.11.2024 | Хакеры скомпрометировали две тысячи межсетевых экранов Palo Alto Networks | Хакеры смогли скомпрометировать тысячи межсетевых экранов Palo Alto Networks в ходе атак, использующих две недавно исправленные уязвимости нулевого дня.
Первая использует обход аутентификации (CVE-2024-0012) в веб-интерфейсе управления PAN-... |
| 05.11.2024 | Самые горячие новости инфобеза за октябрь 2024 года | Всем привет! Разбираем в нашем ежемесячном дайджесте ключевые новости октября. Так, взлому дважды подвергся The Internet Archive, нанеся серьёзный удар по проекту. Инфраструктура инфостилеров RedLine и Meta была перехвачена, а члены группир... |
| 07.09.2024 | The Cybersecurity Landscape: A Tidal Wave of Data Breaches and Legislative Shifts | In the digital age, data is the new gold. But as we’ve seen in recent months, it’s a goldmine that’s increasingly vulnerable to theft. The cybersecurity landscape is shifting, with alarming data breaches and legislative responses emerging a... |
| 05.09.2024 | Самые горячие новости инфобеза за август 2024 года | Всем привет! Подводим итоги месяца нашим традиционным дайджестом самых интересных новостей. Август принёс страсти по Цукербринам: Дуров, Маск и Цукерберг дружно попали в громкие заголовки. В России же готовят проект о сборах с компаний за и... |
| 09.08.2024 | Цифровое Бали, или Как киберпреступники атакуют организации в Юго-Восточной Азии | Страны Юго-Восточной Азии с их вечным летом, теплыми морями и быстрорастущими экономиками привлекают не только туристов и цифровых кочевников со всего мира, но и организованных киберпреступников. Это регион разительных контрастов: ультрасов... |
| 07.06.2024 | МТС RED ART: обзор перспективных security-исследований | Всем привет! Меня зовут Денис Макрушин, я отвечаю за создание технологий кибербезопасности в MTC RED и возглавляю команду перспективных исследований МТС RED ART (Advanced Research Team).
Сегодня проведу разбор самых интересных исследований ... |
| 08.05.2024 | Трендовые уязвимости апреля: до пяти лет скрытой эксплуатации | Хабр, привет! Я Александр Леонов, ведущий эксперт лаборатории PT Expert Security Center. Мы с командой аналитиков Positive Technologies каждый месяц анализируем информацию об уязвимостях из баз и бюллетеней безопасности вендоров, социальных... |
| 03.05.2024 | Top 5 Global Cyber Security Trends of 2023, According to Google Report | It is taking less time for organisations to detect attackers in their environment, a report by Mandiant Consulting, a part of Google Cloud, has found. This suggests that companies are strengthening their security posture.
The M-Trends 2024 ... |
| 18.04.2024 | 10 из 10: в firewall PAN-OS от Palo Alto Networks найдена критическая 0-day-уязвимость. Что происходит? | В сфере информационной безопасности много неожиданностей, а проблемы часто возникают там, где их и не ждали. Сейчас, например, обнаружилось, что файерволлы PAN-OS содержат 0-day-уязвимость, очень серьёзную. Причём появилась она не вчера, а ... |
| 17.04.2024 | Palo Alto Networks’ firewall bug under attack brings fresh havoc to thousands of companies | Palo Alto Networks urged companies this week to patch against a newly discovered zero-day vulnerability in one of its widely used security products after malicious hackers began exploiting the bug to break into corporate networks.
The vulne... |
| 29.02.2024 | Linux users beware: New Bifrost malware variant poses imminent threat | Security researchers at Palo Alto Networks have uncovered a new variant of the notorious Bifrost malware, now targeting Linux systems with a cunning twist. This latest iteration employs a deceptive domain, download.vmfare[.]com, to masquera... |
| 19.02.2024 | Security Week 2408: уязвимости в Microsoft Exchange и Outlook | 13 февраля компания Microsoft выпустила очередной ежемесячный набор патчей для собственных продуктов. Всего было закрыто более 70 уязвимостей, наиболее опасные относятся к защитным механизмам в Windows, не позволяющим открывать сомнительные... |
| 14.02.2024 | От подрядчика с любовью, или Топ-5 фишинговых тем | Изображение сгенерировано нейросетью Midjourney и дополнено автором статьи
Привет, Хабр! С вами Екатерина Косолапова. Я занимаюсь аналитикой в Positive Technologies и сегодня хочу поговорить с вами про фишинг, или даже так: про влюбленных в... |
| 10.01.2024 | Linux devices are under attack by a never-before-seen worm | Enlarge
Getty Images reader comments 47
For the past year, previously unknown self-replicating malware has been compromising Linux devices around the world and installing cryptomining malware that takes unusual steps to conceal its inner wo... |
| 04.12.2023 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — свежая уязвимость в Apache ActiveMQ, новая атака BLUFF, исправление уязвимости нулевого дня от Google, устранение уязвимостей в продуктах Zyxel NAS и новые инструменты злоумышленников. Новости подготовил аналитик центра ин... |
| 15.11.2023 | US says Royal ransomware gang plans ‘Blacksuit’ rebrand | The U.S. government says Royal, one of the most active ransomware gangs in recent years, is preparing to rebrand or spin off with a new name, Blacksuit.
In an update this week to a previously published joint advisory about the Royal ransomw... |
| 03.11.2023 | EleKtra-Leak Campaign Uses AWS Cloud Keys Found on Public GitHub Repositories to Run Cryptomining Operation | Image: WhataWin
New research from Palo Alto Networks’s Unit 42 exposes an active attack campaign in which a threat actor hunts for Amazon IAM credentials in real time in GitHub repositories and starts using them less than five minutes later... |
| 23.10.2023 | Akamai research finds more sophisticated phishing threats in hospitality industry
Your vote of support is important to us and it helps us keep the content FREE.
One-click below supports our mission ... | New research from Akamai Technologies Inc. shows the increasing level of sophistication that attackers will use on a series of phishing attacks targeting hospitality websites.
The attacks began as early as June 2023 and focused on exploits ... |
| 23.10.2023 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — новая 0-day уязвимость в операционной системе IOS XE, новая кампания трояна XorDDoS, поддельные обновления браузеров, обновленная версия бэкдора MATA и ненадежные пароли IT-администраторов. Новости подготовил аналитик цент... |
| 22.09.2023 | IoT и его криптонит | В одной из предыдущих статей я уже затрагивал тему IoT. В этой статье речь тоже пойдёт об этой концепции. При этом топик опять же затрагивает вопросы безопасности, но в более широком смысле.
В общем «интернет вещей» можно представить в виде... |
| 11.08.2023 | How to Prevent Phishing Attacks with Multi-Factor Authentication | Image: weerapat1003/Adobe Stock
Threat actors have been using phishing as an attack vector for nearly 30 years, and they’ll continue to use it until it isn’t effective anymore. A reason for its success is that phishing takes advantage of th... |
| 05.07.2023 | Actively exploited vulnerability threatens hundreds of solar power stations | Enlarge
Getty Images reader comments 18 with
Hundreds of Internet-exposed devices inside solar farms remain unpatched against a critical and actively exploited vulnerability that makes it easy for remote attackers to disrupt operations or g... |
| 26.06.2023 | Wary of a recession? Increase your investment in cybersecurity technologies | Leading organizations in all industries have accelerated their digital transformation and change management over the past three years, and for a good reason. According to Deloitte, meaningful digital transformation initiatives can unlock up... |
| 26.06.2023 | ТОП-5 ИБ-событий по версии Jet CSIRT | Сегодня в ТОП-5 — DDoS-ботнет Tsunami, обзор новых вариантов программы-вымогателя «Big Head», ботнет Mirai для атак на критические уязвимости устройств IoT, взлом ИТ-систем больницы группировкой Camaro Dragon через USB-накопитель, десятки п... |
| 23.06.2023 | Palo Alto Networks CTO Talks Securing ‘Code to Cloud’ | Image: Timon/Adobe Stock
Palo Alto Networks held its annual Code to Cloud Cybersecurity Summit Thursday, focusing on cloud, DevOps and security. Experts discussed trends, opportunities and challenges with coding and the cloud.
Recently, Pal... |
| 15.05.2023 | Cybercriminals who targeted Ukraine are actually Russian government hackers, researchers say | For years, Russian government hackers have used several made-up personas to hide their tracks and try to trick security researchers and government agencies into pointing the blame in the wrong direction.
They have pretended to be a lone Rom... |
| 02.05.2023 | At RSA, Akamai put focus on fake sites, API vulnerabilities | Image: Ar_TH/Adobe Stock
Last year, attacks using vulnerabilities in applications and application protocol interfaces reached record highs, according to security company Akamai in its new State of the Internet report. The firm said several ... |
| 18.04.2023 | Report: Security teams take an average of 6 days to resolve alerts | Join top executives in San Francisco on July 11-12, to hear how leaders are integrating and optimizing AI investments for success. Learn More
Today, Palo Alto Networks released the Unit 42 Cloud Threat Report Volume 7, which examined over 1... |
| 07.04.2023 | Cyberespionage threat actor APT43 targets US, Europe, Japan and South Korea | Image: Getty Images/iStockphoto/bluebay2014
Security research from Mandiant and Google indicates that targeting by APT43 and its subset Archipelago aligns with North Korean interests.
Jump to:
Who is APT43?
Who does APT43 target?
APT43’s sp... |
| 21.03.2023 | Ransomware surges as threat actors get more aggressive | Ransomware and extortion actors are utilizing more aggressive tactics to pressure organizations, with harassment being involved 20 times more often than in 2021, according to a new report.
The study, from Palo Alto Networks' Unit 42 threat ... |
| 06.01.2023 | Vice Society Cyberhacker Group Leaks Documents in Gloucestershire School | Andi C., Tech Times 06 January 2023, 12:01 pm
The Vice Society ransomware group, a hacker collective, exposed a significant amount of Personally Identifiable Information (PII) on students and staff at 14 UK universities and schools.
This in... |
| 28.12.2022 | Smart Toys Are Still Hackable (We Just Don’t Talk About It) | In recent years, stories about “hackable toys” became something of a mainstay of the holiday season - almost as predictable as showings of It’s a Wonderful Life or Die Hard ( |
| 20.12.2022 | Kremlin-backed hackers targeted a “large” petroleum refinery in a NATO nation | Enlarge / Fawley Oil Refinery on a bright day.
Getty Images reader comments 62 with 0 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
One of the Kremlin’s most active hacking groups targeting Ukrain... |
| 06.12.2022 | Ransomware group Vice Society targeted dozens of schools in 2022, new report finds | More than 40 educational organizations, including 15 in the United States, suffered ransomware attacks launched by the cybercriminal group known as Vice Society, researchers at cybersecurity firm Palo Alto Networks revealed in a report publ... |
| 22.11.2022 | Fake Invoice Scam Worries Experts; Hacking Technique Proven Successful Even Without Malware Infection | Griffin Davis , Tech Times 22 November 2022, 03:11 pm
A new fake invoice scam technique alarms cybersecurity experts.
(Photo : Photo by GABRIEL BOUYS/AFP via Getty Images)
A guest takes a selfie with her smartphone during the Mercedes Benz ... |
| 19.10.2022 | История веб-хостинга. От пузыря доткомов и блейд-серверов до гибридного облака и контейнеризации | Как холодная война между США и СССР породила современный интернет, запустила эволюцию серверов и раскрутила рынок вычислительных мощностей.
Согласно данным Hootsuite за апрель 2022 года, в мире насчитывается свыше 5 миллиардов пользователей... |
| 30.09.2022 | ТОП-3 ИБ-событий недели по версии Jet CSIRT | Специалисты Kaspersky обнаружили новые способы применения ВПО Prilex
«Лаборатория Касперского» обнаружила новые версии ВПО Prilex, нацеленного на PoS-терминалы. Вредоносная программа Prilex была создана в 2014 году для банкоматов, а в 2016 ... |
| 28.07.2022 | 15 minutes: the gap between CVE disclosures and first hacker scans | Threat actors now begin scanning for newly-discovered vulnerabilities within 15 minutes of a disclosure in order to quickly attack high-profile zero-day flaws.
That's according to Palo Alto Networks' annual Unit 42 incident response report ... |
| 27.07.2022 | Newly found Lightning Framework offers a plethora of Linux hacking capabilities | Enlarge
Getty Images reader comments 31 with 28 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
The software framework has become essential to developing almost all complex software these days. The ... |
| 24.07.2022 | Безопасная разработка приложений — на что обратить внимание при работе с открытым кодом | Мы в T1 Cloud продолжаем рассказывать о процессах безопасной разработки приложений Secure SDLC. Сегодня подробнее поговорим о потенциальных уязвимостях в компонентах open source и как от них защититься./ Unsplash.com / Chris Barbalis
Подавл... |
| 20.07.2022 | Pro-Russia hacking campaigns are running rampant in Ukraine | Enlarge
Getty Images reader comments 26 with 22 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Pro-Russian threat actors are continuing their unrelenting pursuit of Ukrainian targets, with an array... |
| 20.07.2022 | Russian hackers behind SolarWinds are now hiding malware in Google Drive | The Russia-linked hacking group behind the infamous SolarWinds espionage campaign is now using Google Drive to stealthily deliver malware to its latest victims.
That’s according to researchers at Palo Alto Networks’ Unit 42 threat intellige... |
| 18.07.2022 | Servers running Digium Phones VoiP software are getting backdoored | Enlarge
Getty Images reader comments 31 with 21 posters participating
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Servers running the open source Asterisk communication software for Digium VoiP services are under att... |
| 12.07.2022 | The Cyberlaw Podcast: “The First Thing We Do, Let’s Hack All the Lawyers” | Dave Aitel introduces a deliciously shocking story about lawyers as victims and—maybe—co-conspirators in the hacking of adversaries’ counsel to win legal disputes. The trick, it turns out, is figuring out how to benefit from hacked document... |
| 07.07.2022 | Russia's Cozy Bear linked to nearly undetectable malware | The Unit 42 threat intelligence team at Palo Alto Networks has found a new malware sample that can evade detection by more than 50 commercially available antivirus programmes.
The researchers spotted the strain in May and found that it incl... |
| 07.07.2022 | Stealthy malware shows why you shouldn’t open unknown emails | A new kind of malware was recently discovered that managed to slip past 56 separate antivirus products before finally getting caught.
The malware, when executed, can cause some serious damage to your device — and it seems to be so well made... |