Veeam has disclosed a critical vulnerability (CVE-2026-44963) affecting its Backup & Replication software, allowing authenticated domain users to execute remote code on domain-joined backup servers. This flaw impacts…
TriZetto has confirmed that a cyberattack in 2024 resulted in the theft of personal and health information of over 3.4 million individuals. The breach, which went undetected for nearly a year, affects patients of…
Insikt Group identified GrayAlpha, a threat actor linked to FIN7, utilizing a custom loader named MaskBat to deploy NetSupport RAT through various infection vectors. These include fake browser update pages, fake 7-Zip…
The FBI has seized the RAMP cybercrime forum, a key platform for ransomware operations and other digital crimes. Both the forum's dark web and clearnet domains now display a seizure notice attributed to the FBI,…
Veeam has issued security updates to address multiple vulnerabilities in its Backup & Replication software, including a critical remote code execution (RCE) flaw tracked as CVE-2025-59470. This vulnerability affects…
The ATT&CK framework has released version 19, which includes significant updates to its structure and coverage. Notably, the Defense Evasion Tactic has been split into two distinct categories: Stealth and Defense…