Aggregator
Inside Mistic, the New Stealth Backdoor in Ransomware Intrusions
[译苑雅集vol. 11]程序员开始焦虑失业,哲学家却被 AI 公司抢人
Bluekit phishing kit adopts browser-in-the-middle for login theft
Russia uses Cellebrite to break into human rights activist’s phone, even after cancellation of contract
The phone-cracking firm broke off from its deal with Russia, but Citizen Lab said that didn’t stop authorities from surveilling Andrey Pivovarov.
The post Russia uses Cellebrite to break into human rights activist’s phone, even after cancellation of contract appeared first on CyberScoop.
Another Russian dairy company reportedly disrupted by cyberattack
为什么大型人工智能实验室会招聘哲学家
CISO застряли между серверной и советом директоров. Их научат говорить с бизнесом
苹果产品正式涨价
CVE-2026-12245 | NLnet Labs NSD up to 4.14.2 TLS Connection use after free (EUVD-2026-39183)
CVE-2026-5305 | Email Address Encoder Plugin up to 1.0.24 on WordPress cross site scripting (EUVD-2026-39187)
CVE-2026-9702 | InPost PL Plugin up to 1.9.0 on WordPress Destination access control (EUVD-2026-39188)
CVE-2026-41566 | Apache Kvrocks up to 2.15.0 permission (EUVD-2026-39335)
Minnesota man known as ‘Snoopy’ sentenced in DraftKings hack
Nathan Austad, who sold access to compromised accounts through a criminal storefront, is the third and final defendant sentenced in the 2022 breach
The post Minnesota man known as ‘Snoopy’ sentenced in DraftKings hack appeared first on CyberScoop.
Cisco Vulnerability Exploited Months Before Disclosure, Google Warns
Chrome Ad Blocker with 10M+ Installs Found with Dormant Script Injection Capability
Свершилось: физики запустили ядерные часы — и заодно создали первый реальный инструмент для охоты за тёмной материей
Stealthy new backdoor surfaces in attacks on multiple sectors
A relatively new backdoor called Mistic has been deployed in multiple attacks since April 2026 targeting organizations in the insurance, education, IT, and professional services sectors, according to Symantec. The malware appears to be associated with Woodgnat, also known as KongTuke, a financially motivated initial access broker (IAB) active since at least May 2024 that has been connected to ransomware operations including Qilin, Interlock, Rhysida, Akira, 8Base, and Black Basta. “Woodgnat reportedly functions primarily as … More →
The post Stealthy new backdoor surfaces in attacks on multiple sectors appeared first on Help Net Security.