Content Paint

Mandiant

Oracle zero-day exploited for nearly two weeks by Shiny Hunters

Google Mandiant researchers tracked activity linked to the PeopleSoft vuln over 13 days.

Hackers turned a compromised npm package into full AWS admin access in 72 hours

Hackers "enumerated and accessed objects within S3 buckets, terminated production EC2 and RDS instances, and decrypted application keys."

A fox stalks through a forest. Gladinet's Triofox platform has seen three zero-day vulnerabilities in 2025.

File-sharing platforms continue to be a threat actor favourite.

Recyled keys exploited in Fortune 500-serving Sitecore attacks

The threat actor has been moving laterally, stealing user tokens and maintaining persistence via a range of techniques.

vmware persistence hackers

"The core vulnerability is a help desk process that lacks robust, non-transferable identity verification for password resets..."

Mandiant warns of 'sustained campaign' by China's ATP41 threat group

Threat actor decrypts malicious payloads and executes them in memory, leaving 'minimal forensic traces.'

Cozy Bear takes a German holiday for political attacks

Russia's Cozy Bear hacking operation is changing up its tactics to go after political parties in Germany

Over 200,000 unique malware samples found in 12 weeks, amid AI threat warnings

Signature-based detection is dying hard.

Bolster your VMware ESXi security: Novel malware ecosystem identified

Malware avoids EDR, attains persistence, is highly stealthy

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.