Mars Security Automates Threat Intel to Detection in Minutes
Mars Security launches a new capability that automatically converts threat intelligence into validated, deployable detection rules, drastically reducing the time from advisory to defense.
Stories cluster related articles into a single narrative, linked to the underlying CVEs and affected products. 6,139 stories synthesized.
Mars Security launches a new capability that automatically converts threat intelligence into validated, deployable detection rules, drastically reducing the time from advisory to defense.
Check Point Research has discovered a critical vulnerability in ChatGPT that enables attackers to create a covert command channel between isolated code-execution environments, potentially exfiltrating user data and accessing connected applications.
Law enforcement has arrested multiple individuals in connection with a sophisticated social engineering attack that resulted in the theft of over $240 million in Bitcoin, leading to a month-long spending spree on luxury assets.
An 18-year-old suspected member of the ZeroBytes hacking group has been arrested in France in connection with cyberattacks targeting the national tax authority and other organizations.
A sophisticated intrusion campaign targeting a US organization has been uncovered, utilizing the Sliver C2 framework and custom scripts to disable endpoint protection, steal credentials, and establish persistent access within a Windows domain.
Google warns that threat actors are increasingly targeting AI-assisted coding tools, introducing a new vector for software supply chain compromises.
Stadtwerke Landsberg, a municipal utility in Bavaria, Germany, has confirmed its internal IT systems were encrypted in a cyberattack that began on September 1, disrupting operations but not essential services.
Google's Mandiant reports that extortion gangs are increasingly targeting proprietary AI data, including models and research, with threats of public leaks for ransom.
A proof-of-concept zero-click worm, dubbed WeWorm, can spread via WeChat voice calls, compromising accounts on both iOS and Android without user interaction.
A critical vulnerability chain in FreeIPA, combined with a flaw in its underlying 389 Directory Server, allows unauthenticated clients to create their own administrator credentials.
SAP's September 2026 Security Patch Day addresses 19 vulnerabilities, including critical flaws in NetWeaver, Extended Passport Processing, and Cloud Application Programming Model.
A sophisticated Android RAT, dubbed THost9, employs a packed loader to conceal its payload and an ADB worm to spread laterally across vulnerable devices and containers.
A novel vulnerability in proprietary LLM APIs allows attackers to extract sensitive reasoning traces by exploiting the interchangeability of encrypted data blocks across different models.
A sophisticated ClearFake infection chain leverages WebDAV and Cloudflare Workers to distribute Amatera stealer, ZigCryptoStealer, and NetSupport Manager, targeting users with fake CAPTCHA prompts.
Attackers are leveraging the Google Visualization API to serve malicious JavaScript for cryptocurrency theft, tricking users into injecting code into their browsers.
Recent cyberattacks on water utilities exploited operational technology systems connected through public cellular networks, bypassing traditional IT security and highlighting critical gaps in asset visibility and network segmentation.
The Panzer ransomware-as-a-service (RaaS) operation is targeting Italian manufacturers and telecom firms, offering tools compatible with Windows, Linux, FreeBSD, and VMware ESXi for widespread disruption.
Britain has unveiled a comprehensive new space strategy backed by £7.8 billion in funding, aiming to enhance national security, drive economic growth, and secure its position in the evolving global space domain through 2030.
New research reveals AI-powered customer service bots can be manipulated through prompt injection and email spoofing to leak sensitive data or execute unauthorized actions.
Jellyfin 12.0 introduces critical security fixes, patching vulnerabilities related to file access, setup, plugins, parental controls, and the web interface, while also deprecating legacy client logins.
The BigBear 2.0 phishing operation, a rebranded Evilginx2 framework, targets Microsoft 365 accounts by stealing session cookies post-MFA, enabling account takeover.
Palo Alto Cortex XDR has been named the top Extended Detection and Response (XDR) platform for 2026, according to a new evaluation that scored solutions on data coverage, correlation quality, response automation, openness, and operability.
A new report ranks the top 10 Firewall-as-a-Service (FWaaS) providers for 2026, with Zscaler leading due to its extensive security cloud and zero-trust architecture.
An unidentified threat actor compromised Coder's Terraform module registry, redirecting traffic to malicious servers and injecting credential-stealing code into Terraform modules.