Cybersecurity

New tool: convert-ts-bash-history.py – SANS ISC

In SANS FOR577, we talk about timelines on day 5, both filesystem and super-timelines. but sometimes, I want something quick and dirty and rather...

Feds Tie ‘Scattered Spider’ Duo to $115M in Ransoms – Krebs on Security

U.S. prosecutors last week levied criminal hacking charges against 19-year-old U.K. national Thalha Jubair for allegedly being a core member of Scattered Spider, a...

The €600,000 gold heist, powered by ransomware • Graham Cluley

Ransomware doesn’t just freeze computers – it can silence alarms too. And when the Natural History...

Kingpin – Darknet Diaries

Full Transcript In this episode, we delve into the multifaceted career of Joe Grand, also known as “Kingpin.” A renowned hardware...

Gamaredon X Turla collab

In this blogpost, we uncover the first known cases of collaboration between Gamaredon and Turla, in Ukraine. Key points of this...

Troy Hunt: Weekly Update 470

Imagine jumping on board a class action after your precious datas have...

GOLD SALEM’s Warlock operation joins busy ransomware landscape – Sophos News

Counter Threat Unit™ (CTU) researchers are monitoring a threat group that refers to itself as Warlock Group. The group, which CTU™ researchers track as...

LastPass Warns of Fake Repositories Infecting macOS with Atomic Infostealer

Sep 20, 2025Ravie LakshmananSoftware Security / Malware LastPass is warning of an ongoing, widespread information stealer campaign targeting Apple macOS users through fake GitHub repositories...

NICKEL TAPESTRY expands fraudulent worker operations – Sophos News

With this post, the X-Ops blog is thrilled to present research from our Sophos siblings newly joining us from Secureworks, of which CTU (the...

A new RevengeHotels campaign targets Latin America

Background RevengeHotels, also known as TA558, is a threat group that has been active since 2015, stealing credit card data from hotel guests and travelers....

CTRL-Z DLL Hooking – SANS Internet Storm Center

When you’re debugging a malware sample, you probably run it into a debugger and define some breakpoints. The idea is to take over the program control before...

Self-Replicating Worm Hits 180+ Software Packages – Krebs on Security

At least 187 code packages made available through the JavaScript repository NPM have been infected with a self-replicating worm that steals credentials from developers...

Recent articles