Defending the future: Our commitment to responsible AI in cybersecurity
Combining advanced technologies with human expertise to defend against evolving threats.
Unpatched TP-Link Archer routers have become the target of a new botnet campaign dubbed Ballista, according to new findings from the Cato CTRL team. “The botnet exploits a remote code execution (RCE) vulnerability in TP-Link Archer routers (CVE-2023-1389) to spread itself automatically over the Internet,” security researchers Ofek Vardi and Matan Mittelman said in a…
In what’s an instance of hacking the hackers, threat hunters have managed to infiltrate the online infrastructure associated with a ransomware group called BlackLock, uncovering crucial information about their modus operandi in the process. Resecurity said it identified a security vulnerability in the data leak site (DLS) operated by the e-crime group that made it…
Cybersecurity researchers have discovered a new phishing campaign undertaken by the North Korea-linked hacking group called ScarCruft (aka APT37) to deliver a malware known as RokRAT. The activity has been codenamed Operation HanKook Phantom by Seqrite Labs, stating the attacks appear to target individuals associated with the National Intelligence Research Association, including academic figures
John Beauge reports: The man accused of downloading protected information of more than 1.2 million Geisinger Health System patients in 2023 will defend himself at his criminal trial. U.S. Middle District Judge Matthew W. Brann granted the motion of Max Vance to proceed pro se but assigned assistant public defender Gerald A. Lord as standby…
ERR News reports: The European Union on Monday (January 27) imposed sanctions on three members of Russia’s military intelligence (GRU), who conducted a cyberattack against Estonia in May 2020. Estonia named the three GRU members – Yuri Denisov, Nikolay Korchagin and Vitali Shevchenko – last autumn after an investigation. It then declared them international fugitives….
The ransomware group known as Qilin (aka Agenda, Gold Feather, and Water Galura) has claimed more than 40 victims every month since the start of 2025, barring January, with the number of postings on its data leak site touching a high of 100 cases in June. The development comes as the ransomware-as-a-service (RaaS) operation has…