A large-scale credential theft campaign targeting senior executives has been linked to a previously unknown automated phishing platform called Venom
Security & IT News
LiveReal-time news from 13+ trusted sources — BleepingComputer, The Hacker News, Krebs on Security, Dark Reading & more.
101 results in General
E2e-assure says 80% of critical infrastructure providers could face millions in downtime from cyber-attacks
Android requires dev identity verification for sideloaded apps; phased global rollout from September
Venom Stealer malware-as-a-service automates ClickFix social engineering, credential and crypto exfiltration
Most UK manufacturers compromised last year suffered financial loss, says ESET
OpenAI has patched vulnerability, which Check Point said was because of a DNS loophole
The UK Information Commissioner’s Office has handed a £100,000 fine to Birmingham-based TMAC
Push Security has uncovered a new AiTM phishing campaign targeting TikTok for Business accounts using Google and TikTok themed login pages
Socket and Endor Labs discovered a new TeamPCP campaign leading to the delivery of credential-stealing malware
‘Q-Day’ and the cybersecurity problems it brings could come as early as 2029 as Google accelerates its post-quantum cryptography migration
The UK government has sanctioned Xinbi, described as “the second-largest illicit online marketplace ever”
EtherRAT hides C2 in Ethereum smart contracts via EtherHiding, steals wallets and credentials
OpenAI’s Safety Bug Bounty program seeks to address AI safety vulnerabilities beyond traditional security flaws
The National Crime Agency has warned construction firms about surging invoice fraud
Cloud Android phones fuel financial fraud, evading detection and enabling dropper accounts
The US Federal Communications Commission has placed all “consumer-grade” internet routers produced outside the US on its “covered list”
Python package LiteLLM compromised with credential-stealing malware linked to TeamPCP threat group
Expel has warned of malicious Chrome extensions stealing users’ AI conversations
UK police trumpet success of Operation Henhouse as they seize and freeze over £27m in suspected fraud proceeds
The head of the UK’s NCSC is calling the cybersecurity industry to “seize the disruptive vibe coding opportunity” to make software more secure