FreshRSS

πŸ”’
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ β˜† βœ‡ WeLiveSecurity

BladedFeline: Whispering in the dark

β€” June 5th 2025 at 09:00
ESET researchers analyzed a cyberespionage campaign conducted by BladedFeline, an Iran-aligned APT group with likely ties to OilRig
☐ β˜† βœ‡ WeLiveSecurity

Don’t let dormant accounts become a doorway for cybercriminals

β€” June 2nd 2025 at 09:00
Do you have online accounts you haven't used in years? If so, a bit of digital spring cleaning might be in order.
☐ β˜† βœ‡ WeLiveSecurity

This month in security with Tony Anscombe – May 2025 edition

β€” May 30th 2025 at 09:00
From a flurry of attacks targeting UK retailers to campaigns corralling end-of-life routers into botnets, it's a wrap on another month filled with impactful cybersecurity news
☐ β˜† βœ‡ WeLiveSecurity

Word to the wise: Beware of fake Docusign emails

β€” May 27th 2025 at 09:00
Cybercriminals impersonate the trusted e-signature brand and send fake Docusign notifications to trick people into giving away their personal or corporate data
☐ β˜† βœ‡ WeLiveSecurity

Danabot under the microscope

β€” May 23rd 2025 at 11:43
ESET Research has been tracking Danabot’s activity since 2018 as part of a global effort that resulted in a major disruption of the malware’s infrastructure
☐ β˜† βœ‡ WeLiveSecurity

Danabot: Analyzing a fallen empire

β€” May 22nd 2025 at 20:03
ESET Research shares its findings on the workings of Danabot, an infostealer recently disrupted in a multinational law enforcement operation
☐ β˜† βœ‡ WeLiveSecurity

Lumma Stealer: Down for the count

β€” May 22nd 2025 at 14:53
The bustling cybercrime enterprise has been dealt a significant blow in a global operation that relied on the expertise of ESET and other technology companies
☐ β˜† βœ‡ WeLiveSecurity

ESET takes part in global operation to disrupt Lumma Stealer

β€” May 21st 2025 at 16:15
Our intense monitoring of tens of thousands of malicious samples helped this global disruption operation
☐ β˜† βœ‡ WeLiveSecurity

The who, where, and how of APT attacks in Q4 2024–Q1 2025

β€” May 19th 2025 at 17:17
ESET Chief Security Evangelist Tony Anscombe highlights key findings from the latest issue of the ESET APT Activity Report
☐ β˜† βœ‡ WeLiveSecurity

ESET APT Activity Report Q4 2024–Q1 2025

β€” May 19th 2025 at 08:55
An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2024 and Q1 2025
☐ β˜† βœ‡ WeLiveSecurity

Sednit abuses XSS flaws to hit gov't entities, defense companies

β€” May 15th 2025 at 13:15
Operation RoundPress targets webmail software to steal secrets from email accounts belonging mainly to governmental organizations in Ukraine and defense contractors in the EU
☐ β˜† βœ‡ WeLiveSecurity

Operation RoundPress

β€” May 15th 2025 at 07:22
ESET researchers uncover a Russia-aligned espionage operation targeting webmail servers via XSS vulnerabilities
☐ β˜† βœ‡ WeLiveSecurity

How can we counter online disinformation? | Unlocked 403 cybersecurity podcast (S2E2)

β€” May 12th 2025 at 09:00
Ever wondered why a lie can spread faster than the truth? Tune in for an insightful look at disinformation and how we can fight one of the most pressing challenges facing our digital world.
☐ β˜† βœ‡ WeLiveSecurity

Catching a phish with many faces

β€” May 9th 2025 at 09:00
Here’s a brief dive into the murky waters of shape-shifting attacks that leverage dedicated phishing kits to auto-generate customized login pages on the fly
☐ β˜† βœ‡ WeLiveSecurity

Beware of phone scams demanding money for β€˜missed jury duty’

β€” May 7th 2025 at 09:00
When we get the call, it’s our legal responsibility to attend jury service. But sometimes that call won’t come from the courts – it will be a scammer.
☐ β˜† βœ‡ WeLiveSecurity

Toll road scams are in overdrive: Here’s how to protect yourself

β€” May 6th 2025 at 09:00
Have you received a text message about an unpaid road toll? Make sure you’re not the next victim of a smishing scam.
☐ β˜† βœ‡ WeLiveSecurity

RSAC 2025 wrap-up – Week in security with Tony Anscombe

β€” May 2nd 2025 at 14:16
From the power of collaborative defense to identity security and AI, catch up on the event's key themes and discussions
☐ β˜† βœ‡ WeLiveSecurity

TheWizards APT group uses SLAAC spoofing to perform adversary-in-the-middle attacks

β€” April 30th 2025 at 09:00
ESET researchers analyzed Spellbinder, a lateral movement tool used to perform adversary-in-the-middle attacks
☐ β˜† βœ‡ WeLiveSecurity

This month in security with Tony Anscombe – April 2025 edition

β€” April 29th 2025 at 11:43
From the near-demise of MITRE's CVE program to a report showing that AI outperforms elite red teamers in spearphishing, April 2025 was another whirlwind month in cybersecurity
☐ β˜† βœ‡ WeLiveSecurity

How safe and secure is your iPhone really?

β€” April 28th 2025 at 09:47
Your iPhone isn't necessarily as invulnerable to security threats as you may think. Here are the key dangers to watch out for and how to harden your device against bad actors.
☐ β˜† βœ‡ WeLiveSecurity

Deepfake 'doctors' take to TikTok to peddle bogus cures

β€” April 25th 2025 at 09:00
Look out for AI-generated 'TikDocs' who exploit the public's trust in the medical profession to drive sales of sketchy supplements
☐ β˜† βœ‡ WeLiveSecurity

How fraudsters abuse Google Forms to spread scams

β€” April 23rd 2025 at 09:00
The form and quiz-building tool is a popular vector for social engineering and malware. Here’s how to stay safe.
☐ β˜† βœ‡ WeLiveSecurity

Will super-smart AI be attacking us anytime soon?

β€” April 22nd 2025 at 09:00
What practical AI attacks exist today? β€œMore than zero” is the answer – and they’re getting better.
☐ β˜† βœ‡ WeLiveSecurity

CapCut copycats are on the prowl

β€” April 17th 2025 at 09:00
Cybercriminals lure content creators with promises of cutting-edge AI wizardry, only to attempt to steal their data or hijack their devices instead
☐ β˜† βœ‡ WeLiveSecurity

They’re coming for your data: What are infostealers and how do I stay safe?

β€” April 16th 2025 at 09:00
Here's what to know about malware that raids email accounts, web browsers, crypto wallets, and more – all in a quest for your sensitive data
☐ β˜† βœ‡ WeLiveSecurity

Attacks on the education sector are surging: How can cyber-defenders respond?

β€” April 14th 2025 at 09:00
Academic institutions have a unique set of characteristics that makes them attractive to bad actors. What's the right antidote to cyber-risk?
☐ β˜† βœ‡ WeLiveSecurity

Watch out for these traps lurking in search results

β€” April 10th 2025 at 09:00
Here’s how to avoid being hit by fraudulent websites that scammers can catapult directly to the top of your search results
☐ β˜† βœ‡ WeLiveSecurity

So your friend has been hacked: Could you be next?

β€” April 9th 2025 at 09:00
When a ruse puts on a familiar face, your guard might drop, making you an easy mark. Learn how to tell a friend apart from a foe.
☐ β˜† βœ‡ WeLiveSecurity

1 billion reasons to protect your identity online

β€” April 8th 2025 at 09:00
Corporate data breaches are a gateway to identity fraud, but they’re not the only one. Here’s a lowdown on how your personal data could be stolen – and how to make sure it isn’t.
☐ β˜† βœ‡ WeLiveSecurity

The good, the bad and the unknown of AI: A Q&A with MΓ‘ria BielikovΓ‘

β€” April 3rd 2025 at 09:00
The computer scientist and AI researcher shares her thoughts on the technology’s potential and pitfalls – and what may lie ahead for us
☐ β˜† βœ‡ WeLiveSecurity

This month in security with Tony Anscombe – March 2025 edition

β€” March 31st 2025 at 10:46
From an exploited vulnerability in a third-party ChatGPT tool to a bizarre twist on ransomware demands, it's a wrap on another month filled with impactful cybersecurity news
☐ β˜† βœ‡ WeLiveSecurity

Resilience in the face of ransomware: A key to business survival

β€” March 31st 2025 at 09:00
Your company’s ability to tackle the ransomware threat head-on can ultimately be a competitive advantage
☐ β˜† βœ‡ WeLiveSecurity

Making it stick: How to get the most out of cybersecurity training

β€” March 28th 2025 at 10:00
Security awareness training doesn’t have to be a snoozefest – games and stories can help instill β€˜sticky’ habits that will kick in when a danger is near
☐ β˜† βœ‡ WeLiveSecurity

RansomHub affiliates linked to rival RaaS gangs

β€” March 27th 2025 at 13:10
ESET researchers also examine the growing threat posed by tools that ransomware affiliates deploy in an attempt to disrupt EDR security solutions
☐ β˜† βœ‡ WeLiveSecurity

FamousSparrow resurfaces to spy on targets in the US, Latin America

β€” March 27th 2025 at 10:42
Once thought to be dormant, the China-aligned group has also been observed using the privately-sold ShadowPad backdoor for the first time
☐ β˜† βœ‡ WeLiveSecurity

Shifting the sands of RansomHub’s EDRKillShifter

β€” March 26th 2025 at 14:58
ESET researchers discover new ties between affiliates of RansomHub and of rival gangs Medusa, BianLian, and Play
☐ β˜† βœ‡ WeLiveSecurity

You will always remember this as the day you finally caught FamousSparrow

β€” March 26th 2025 at 14:45
ESET researchers uncover the toolset used by the FamousSparrow APT group, including two undocumented versions of the group’s signature backdoor, SparrowDoor
☐ β˜† βœ‡ WeLiveSecurity

Operation FishMedley

β€” March 20th 2025 at 10:00
ESET researchers detail a global espionage operation by FishMonger, the APT group run by I‑SOON
☐ β˜† βœ‡ WeLiveSecurity

MirrorFace updates toolset, expands targeting to Europe

β€” March 18th 2025 at 15:45
The group's Operation AkaiRyΕ« begins with targeted spearphishing emails that use the upcoming World Expo 2025 in Osaka, Japan, as a lure
☐ β˜† βœ‡ WeLiveSecurity

Operation AkaiRyΕ«: MirrorFace invites Europe to Expo 2025 and revives ANEL backdoor

β€” March 18th 2025 at 10:00
ESET researchers uncovered MirrorFace activity that expanded beyond its usual focus on Japan and targeted a Central European diplomatic institute with the ANEL backdoor
☐ β˜† βœ‡ WeLiveSecurity

AI's biggest surprises of 2024 | Unlocked 403 cybersecurity podcast (S2E1)

β€” March 17th 2025 at 10:00
Here's what's been hot on the AI scene over the past 12 months, how it's changing the face of warfare, and how you can fight AI-powered scams
☐ β˜† βœ‡ WeLiveSecurity

When IT meets OT: Cybersecurity for the physical world

β€” March 14th 2025 at 10:00
While relatively rare, real-world incidents impacting operational technology highlight that organizations in critical infrastructure can’t afford to dismiss the OT threat
☐ β˜† βœ‡ WeLiveSecurity

Don’t let cybercriminals steal your Spotify account

β€” March 11th 2025 at 10:00
Listen up, this is sure to be music to your ears – a few minutes spent securing your account today can save you a ton of trouble tomorrow
☐ β˜† βœ‡ WeLiveSecurity

AI-driven deception: A new face of corporate fraud

β€” March 10th 2025 at 10:00
Malicious use of AI is reshaping the fraud landscape, creating major new risks for businesses
☐ β˜† βœ‡ WeLiveSecurity

Kids behaving badly online? Here's what parents can do

β€” March 5th 2025 at 10:00
By taking time to understand and communicate the impact of undesirable online behavior, you can teach your kids an invaluable set of life lessons for a new digital age
☐ β˜† βœ‡ WeLiveSecurity

Martin Rees: Post-human intelligence – a cosmic perspective | Starmus highlights

β€” March 3rd 2025 at 10:00
Take a moment to think beyond our current capabilities and consider what might come next in the grand story of evolution
☐ β˜† βœ‡ WeLiveSecurity

Threat Report H2 2024: Infostealer shakeup, new attack vector for mobile, and Nomani

β€” February 28th 2025 at 10:00
Big shifts in the infostealer scene, novel attack vector against iOS and Android, and a massive surge in investment scams on social media
☐ β˜† βœ‡ WeLiveSecurity

Bernhard Schölkopf: Is AI intelligent? | Starmus highlights

β€” February 27th 2025 at 10:00
With AI's pattern recognition capabilities well-established, Mr. SchΓΆlkopf's talk shifts the focus to a pressing question: what will be the next great leap for AI?
☐ β˜† βœ‡ WeLiveSecurity

This month in security with Tony Anscombe – February 2025 edition

β€” February 26th 2025 at 10:00
Ransomware payments trending down, the cyber-resilience gap facing SMBs, and APT groups embracing generative AI – it's a wrap on another month filled with impactful security news
☐ β˜† βœ‡ WeLiveSecurity

Laurie Anderson: Building an ARK | Starmus highlights

β€” February 24th 2025 at 10:00
The pioneering multi-media artist reveals the creative process behind her stage show called ARK, which challenges audiences to reflect on some of the most pressing issues of our times
β˜‘ β˜† βœ‡ WeLiveSecurity

7 tasks that waste your IT team’s time

β€” March 20th 2015 at 14:54
IT teams' time is always limited, and it doesn't help when other things get in the way. Here's seven things that waste your IT team's time.
β˜‘ β˜† βœ‡ WeLiveSecurity

Will Windows 10 leave enterprises vulnerable to zero-days?

β€” March 13th 2015 at 11:24
One thing Microsoft has been very public about is Windows 10's new strategy of releasing patches to update the operating system at different times for consumer and enterprise versions.
β˜‘ β˜† βœ‡ WeLiveSecurity

Hackers phish for data with fake Apple Watch giveaway

β€” March 12th 2015 at 14:13
Apple fans keen to get their hands on the Apple Watch are advised to think before they click, after hackers exploited a wave of enthusiasm around the launch with a phishing scam linked to a fake giveaway.
β˜‘ β˜† βœ‡ WeLiveSecurity

Operating System Vulnerabilities, Exploits and Insecurity

β€” March 10th 2015 at 13:40
iOS and OS X the most vulnerable operating systems? Don't confuse vulnerabilities with exploits, or patch frequency with insecurity.
β˜‘ β˜† βœ‡ WeLiveSecurity

CryptoFortress mimics TorrentLocker but is a different ransomware

β€” March 9th 2015 at 17:25
ESET assess the differences between CryptoFortress and TorrentLocker: two very different strains of ransomware.
β˜‘ β˜† βœ‡ WeLiveSecurity

FBI investigating apparent ISIS attacks on Western websites

β€” March 9th 2015 at 12:26
A number of seemingly unconnected Western websites were hacked over the weekend, with messages claiming Islamic State as the perpetrator.
β˜‘ β˜† βœ‡ WeLiveSecurity

DDoS attack on feminist blog backfires on International Women's Day

β€” March 9th 2015 at 11:04
An attempt to silence feminism blog Femsplain backfires on DDoS attackers, as they only help to raise its profile.
β˜‘ β˜† βœ‡ WeLiveSecurity

Lysa Myers: "There are still only a handful of women in the security field"

β€” March 6th 2015 at 13:34
There are many female researchers and computer experts who contribute to the field, helping everyone enjoy safer technology. We spoke to one of the most prominent: Lysa Myers, a member of our research team in the US.
β˜‘ β˜† βœ‡ WeLiveSecurity

Casper Malware: After Babar and Bunny, Another Espionage Cartoon

β€” March 5th 2015 at 13:55
In this post, we lift the veil on Casper - another piece of software that we believe to have been created by the same organization that is behind Babar and Bunny.
β˜‘ β˜† βœ‡ WeLiveSecurity

FREAK attack: security vulnerability breaks HTTPS protection

β€” March 4th 2015 at 14:14
A widespread, long-standing security flaw that allows attackers to decrypt HTTPS-protected traffic between certain device and potentially millions of websites has been uncovered by security researchers, reports Ars Technica.
❌