A sophisticated backdoor malware named Firestarter has been discovered on Cisco Firepower devices, attributed to the state-sponsored threat actor UAT-4356. The malware exploits two vulnerabilities, CVE-2025-20333 and…
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
Iran-linked APT42 has intensified its cyber espionage efforts by utilizing AI-assisted phishing techniques and an upgraded version of its TAMECAT malware. The group is now targeting high-profile government and defense…
On March 27, 2026, the Iranian-linked hacking group Handala claimed to have breached FBI Director Kash Patel's personal email account, releasing over 300 emails and personal photographs online. The FBI confirmed the…
Following the outbreak of fighting involving Iran, there has been a significant increase in cyber espionage activities targeting governments and diplomatic missions across the Middle East. Research from Proofpoint…
Following U.S. military strikes on Iran, there is an anticipated increase in cyber warfare activities targeting U.S. operational technology and critical infrastructure. Iran is expected to retaliate with cyber attacks…
Google's Threat Intelligence Group has discovered at least five new malware families that utilize artificial intelligence for self-modification during execution. This technique, referred to as 'just-in-time'…
Nation-state actors and cybercrime groups are utilizing Gemini AI to create a 'Thinking Robot' malware module capable of rewriting its own code to evade detection. This development also includes an AI agent designed to…
State-backed hackers from China, Iran, North Korea, and Russia are utilizing Google's Gemini AI model to facilitate various stages of cyberattacks, including reconnaissance and post-compromise actions. Notably, the…
Google's Threat Intelligence Group (GTIG) reports an increase in attempts to extract and replicate AI model logic, with state-backed and financially motivated attackers leveraging generative AI for reconnaissance,…