News & updates
On this page we will regularly post content about market intelligence, our own news and updates or major cyber related events which took place in the world. Please let us know if you want us to elaborate on certain topics.
A new breed of cybercriminal: Unmasking the gentlemen ransomware threat
The Gentlemen Ransomware: An Overview of an Emerging Threat TL;DR The Gentlemen ransomware, a Ransomware-as-a-Service, demonstrates significant growth since its transformation into a full operational model in September 2025. The threat appears to be a versatile…
Mastering the odds: Achieving a 54% success rate in cybersecurity strategies
UAT-7810 Expands Operations with Custom Malware Targeting Routers The latest findings from Cisco Talos highlight the activities of the threat actor group UAT-7810, associated with China, which is developing new custom malware and enhancing its Operational Relay Box…
Unraveling the risks: Exploring vulnerabilities in WolfSSL, GeoVision, and VTK
Three Critical Vulnerabilities Discovered in Popular Software Solutions Cisco Talos has reported critical vulnerabilities affecting multiple widely-used software solutions. The findings include three vulnerabilities in WolfSSL, fourteen in GeoVision, and one in…
Navigating AI authority drift: Unapproved permissions and their cybersecurity implications
Understanding Authority Drift in AI Agent Permissions AI agents are becoming integral to enterprise operations but present risks through authority drift, a term describing how an agent’s permissions can expand beyond their initial scope. This issue was…
Unveiling the ESET Threat Report: Insights into H1 2026 cybersecurity challenges
Evolving Threat Landscape: Insights from ESET Research’s H1 2026 Report TL;DR ESET Research’s analysis highlights a surge in sophisticated cyber threats, including AI-powered malware and advanced phishing techniques in the first half of 2026. The report…
Q1 2026: Unveiling the latest industrial cybersecurity threats and vulnerabilities
Diminishing Malicious Activity in Industrial Control Systems In Q1 2026, Kaspersky reports a significant decline in blocked malicious objects across Industrial Control Systems (ICS), dropping to 19.6%, the lowest in three years. This decline reflects a broader trend…
Unveiling Vidar Stealer: Exploiting code signing, Go Loaders, and the art of file inflation
Advanced Vidar Stealer and XMRig Campaign Targets Consumers and SMBs TL;DR A recent campaign delivering Vidar stealer and the XMRig cryptocurrency miner has been identified, affecting consumers and small to medium-sized businesses, particularly in the U.S. and EU….
Exploring the evolution of ORB networks: UAT-7810 unleashes innovative malware tactics
Tracking UAT-7810: Advanced Persistent Threat Actor and Its Malware Arsenal TL;DR Cisco Talos has identified UAT-7810, an advanced persistent threat actor linked to the development of a sophisticated malware suite, including new variants SHORTLEASH and LONGLEASH….
Why CISOs should embrace a culture of affirmative security
AI Adoption Challenges for CISOs in Cybersecurity Context TL;DR: The rise of artificial intelligence in organizational strategies is forcing Chief Information Security Officers to evolve from a traditional protective stance into enabling frameworks that support secure…
Unveiling Cavern Manticore: Insights into Iran’s sophisticated modular C2 framework
Cavern Manticore: A Modular C2 Framework Targeting Israeli Sectors Cavern Manticore is an Iranian APT group focusing on Israeli government and IT sector targets, as tracked by Check Point Research. The group utilizes a sophisticated modular command-and-control…
Beyond URL checks: Unmasking phishing threats in the Microsoft identity platform
Rising Threat of Device Code Phishing Exploiting OAuth 2.0 Recent research from Kaspersky highlights a new phishing campaign that leverages the Device Authorization Grant of the Microsoft Identity Platform, a legitimate OAuth 2.0 specification. Attackers are…
Exploring the CVE-2024-2658 vulnerability in Schneider Electric software: implications for industrial control system security
CVE-2024-2658: Critical Uncontrolled Search Path Vulnerability in Schneider Electric Floating License Manager TL;DR CVE-2024-2658 is a significant vulnerability affecting the FlexNet Publisher within the Schneider Electric Floating License Manager, allowing local…















