New Settra Ransomware Variant Deployed in Attacks on Retail and Manufacturing Information Security Magazine 2 days 5 hours ago Huntress researchers highlighted a new ransomware variant, named Settra, and the post-compromise techniques used in two recent attacks
CISA Upgrades Vulnerability Reporting Platform with More Automation Information Security Magazine 2 days 8 hours ago The US cybersecurity agency is moving to a new vulnerability coordination platform called VINCE-NT
Manufacturing Accounts for 22% of all Ransomware Victims Information Security Magazine 2 days 10 hours ago Black Kite has found that manufacturing remained the most targeted sector for ransomware attacks, and saw a big jump in incidents in H1 2026
FamousSparrow Swaps SparrowDoor For New SparroWocky Backdoor Information Security Magazine 3 days 3 hours ago ESET said FamousSparrow has replaced SparrowDoor with SparroWocky
CISA Urges Critical Infrastructure to Plant Decoys Inside Networks Information Security Magazine 3 days 4 hours ago CISA released guidance on using cyber decoys to detect & disrupt malicious activity inside networks
New Chinese-Made ‘RatHat’ Android Malware Leverages AI to Steal Financial Data Information Security Magazine 3 days 5 hours ago Researchers at Zimperium have uncovered a new Android malware strain, dubbed RatHat, with spyware and backdoor capabilities
Cyber Essentials Has Record Year but Takeup Remains Low Information Security Magazine 3 days 6 hours ago New government figures reveal a 20% annual increase in certifications
Cisco Warns of Active Exploitation of Critical ISE Flaw Information Security Magazine 3 days 7 hours ago Cisco urged ISE customers to apply a software update, as well as check for signs of exploitation
AI Agent Carries Out Multi-Stage Data Theft Attack Information Security Magazine 3 days 10 hours ago Spanish data protection agency AEPD reveals the country’s first AI-powered data breach
PHP Webshell Campaign Targets WordPress Through Critical WooCommerce Plugin Bug Information Security Magazine 4 days 3 hours ago Attackers are exploiting a critical flaw in a third-party WooCommerce plugin to upload PHP webshells
CISA and NIST Issue Guidance to Protect Cloud Identity Tokens Information Security Magazine 4 days 4 hours ago CISA and NIST issued final guidance to help protect cloud identity tokens and assertions
Cyber-Attacks Cost Organizations $52,000 on Average Information Security Magazine 4 days 7 hours ago Hiscox highlighted the huge financial and operational costs of cyber-attacks, with the average cost of an incident at $52,000
Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping Information Security Magazine 4 days 8 hours ago OPSWAT researchers find two zero-days in TP-Link cameras
Major Cyber Vendors Turn to New UK Testing Program as MITRE Evaluations Face Changes Information Security Magazine 4 days 9 hours ago A group of cyber threat detection providers, including CrowdStrike, Palo Alto Networks and Sophos, have joined SE Labs’ PIVOT program
NCSC and Allies Warn of Iranian Spyware Campaign Information Security Magazine 4 days 10 hours ago The UK’s National Cyber Security Centre says Iranian Chosen Brick spyware is designed to snoop on dissidents
Most Fraudulent Hires Receive Credentials Before Detection Information Security Magazine 5 days 3 hours ago A new report highlights the vast growth in fraudulent candidates, presenting significant insider threat challenges to organizations
Most Firms Unable to Recover Quickly from Ransomware Information Security Magazine 5 days 4 hours ago Fenix24 found only four of more than 800 clients came close to stated ransomware recovery targets of 24-48 hours
Black Axe Members Extradited to US Over Internet Fraud Claims Information Security Magazine 5 days 5 hours ago Alleged Black Axe leaders extradited to the US over romance scams, BEC and money laundering claims
AI the Top Priority for New Spend as Cyber Budgets Flatline Information Security Magazine 5 days 5 hours ago IANS finds AI is dominating net-new budgets even as overall funding for the function is flat
Microsoft Releases Emergency Patch to Fix RDS Vulnerability Information Security Magazine 5 days 10 hours ago Microsoft has been forced to issue an out-of-band fix for several issues stemming from this month’s Patch Tuesday