Blog
-
Iranian “Hacktivist” Group Likely Behind Cyber Attack on Stryker Medtech Firm
A Iran-linked “hacktivist” group that has been active since at least 2023 has struck again, this time the cyber attack caused damage to the business operations of major medtech firm Stryker.
-
Signal & WhatsApp Phishing Campaign by Russian Spies Targets Government Sources and Journalists
The Dutch Ministry of Defence is warning that a likely state-backed Russian group is trawling Signal and WhatsApp with a phishing campaign targeting a broad range of government sources and sometimes journalists.
-
Trump “Cyber Strategy for America” Promises Enhanced Aggression Against Broad Range of Internet-Based Threat Actors
Rather than pushing technology developers and platforms to boost their defenses, the new Trump “Cyber Strategy for America” vision lays out a sort of “Donroe Doctrine” for the internet. The paper is short and not heavy on specific details, but the tone makes clear the focus is on increasing federal aggression against bad actors in…
-
FortiGate Device Breach Using Known Vulnerability Gave Attackers Unrestricted Access
A group of seemingly profit-minded criminal hackers has been spotted seeking out known FortiGate vulnerabilities and exploiting them to sell ongoing access to other threat actors, in at least one case setting up a fake administrator account with full access to all zones.
-
New Evidence Indicates North Korean Hackers Were Behind the Polyfill.io Supply Chain Attack
A 2024 cyber attack involving Polyfill.io was long assumed to be the work of Chinese hackers, but new evidence indicates it was more likely North Korea’s state-sponsored hacking teams making use of a Chinese front company.
-
FBI Surveillance Systems the Latest Target of Security Breach by State-Backed Chinese Hackers
State-backed Chinese threat actors have once again been linked to a high-profile security breach, this time of FBI surveillance systems used for foreign intelligence interception orders.
-
Time to Check Up on Old Google API Keys: New Gemini AI Exploit Could Cause Major Financial Damage
Most of the impacted Google API keys were put into place years ago (and prior to Gemini AI), when they were not at all the same sort of risk. Scans by security researchers have since found thousands of these exposed keys in webpage and app code that anyone can view.
-
New Vulnerability Can Compromise Openclaw AI Agent via a Malicious Webpage
OpenClaw is everyone’s favorite AI agent of the moment and can enable some very helpful productivity hacks, but the last few weeks have also demonstrated it has a long way to go in terms of security.
-
Another Tentacle of China’s Cyber Espionage Program Disrupted as Google Takes Down GRIDTIDE Infrastructure
Google and Mandiant bring news of yet another group that was operating largely below the radar, yet having great success compromising government and telecoms victims throughout the world since at least 2017. In total the gang racked up suspected intrusions in about 70 nations, with 53 confirmed breaches during operations running from 2018 to last…
-
“Agentic” AI Tools Continue to Struggle as Copilot Helps Itself to Confidential Emails
Another day, another story about agentic AI tools overstepping their bounds. This time it’s Microsoft’s Copilot for 365 business customers, which has been found accessing confidential emails it is not supposed to and creating summaries of them.










