The TA505 threat group known for using the Clop ransomware and Dridex trojan is now using a new P2P RAT.
VirusTotal has added a Collections feature to enable better real-time sharing of IOCs and context around malicious files and URLs.
Researchers warn that a ransomware group's constant rebranding and its small size has allowed for it to fly under the radar.
Casey Ellis, founder, chairman and CTO of Bugcrowd, discusses the future of vulnerability disclosure programs.
Apple has sued NSO Group for allegedly abusing the company's iCloud servers and injuring its customers.
Researchers have uncovered malware samples that are targeting a local privilege escalation flaw in Windows Installer.
Casey Ellis joins Lindsey O'Donnell-Welch to discuss the evolution, adoption and standardization of vulnerability disclosure programs - both in the U.S. and across the globe.
Researchers have observed the BazarLoader information stealer now being spread via compromised versions of VLC and TeamViewer packages.
CloudLinux's Imunify360 security platform has a severe flaw (CVE-2021-21956) that can lead to remote code execution in some circumstances.
Cybercriminals are using the known ProxyLogon and ProxyShell vulnerabilities to hijack email threads in malware attacks.
An APT group is using a suite of tools, including KdcSponge, Godzilla, and NGLite, to exploit a known ManageEngine flaw and move laterally.
This week's Source Code podcast by Decipher takes a look behind the scenes at top news with input from our sources.
A new Federal Deposit Insurance Corporation (FDIC) rule requires banks to notify federal regulators of security incidents within 36 hours.
The FBI is warning about an APT actor that is exploiting a zero day flaw in the FatPipe software on several products, including MPVPN, WARP, and IPVPN.
A recently uncovered attack by a new ransomware group shows how cybercriminals will switch up their tactics on a whim.