In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
Between June and August 2025, a previously unidentified Iranian cyber actor, dubbed UNK_SmudgedSerpent, conducted targeted phishing attacks against US academics and foreign policy experts. The campaign aimed to steal…
A security vulnerability (CVE-2025-64740) has been identified in the Zoom Workplace VDI Client for Windows, enabling attackers to escalate their privileges on affected systems. The flaw arises from improper verification…
Between June and August 2025, the Iranian-linked APT UNK_SmudgedSerpent conducted targeted phishing campaigns against US academics and foreign policy experts. The group employed techniques such as credential theft and…
Between June and August 2025, a cyber group identified as UNK_SmudgedSerpent targeted U.S. academics and foreign policy experts focused on Iran. The attackers initiated contact through seemingly benign conversations to…
A study by Wiz Security revealed that 65% of the Forbes AI 50 companies have leaked sensitive information, including API keys and tokens, on GitHub. The affected companies, valued collectively at over $400 billion, are…