Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
WindRelay NFC Relay Malware Paired with SpyNote RAT: Real-Time Android Credit Card Theft — Detection and Response Guide
Introduction A newly documented Android malware campaign pairs two highly complementary payloads: WindRelay, an NFC relay implant that captu...
Polish CHP Plant Breach via Private Cellular Network: OT Defense, Detection, and Remediation Guide
Polish CHP Plant Breach via Private Cellular Network: What Defenders Must Do Now Attackers breached a Polish combined heat and power (CHP) p...
Change Healthcare Breach Aftermath: Court-Imposed Data Handling Rules and What Defenders Must Do to Protect PHI Now
Introduction The legal aftershocks of the February 2024 Change Healthcare intrusion continue to define how healthcare breach fallout is hand...
DeadLock Ransomware Uses Blockchain Smart Contracts to Survive Takedowns — Detection and Disruption Playbook
Introduction Ransomware operators have spent the last decade fighting a losing war against infrastructure takedowns. Law enforcement seizes ...
Wesco Data Theft Extortion: ExfilSquad Breach — Detection and Response Guide for Supply-Chain Defenders
Wesco Confirms Security Incident After ExfilSquad Claims Data Theft Wesco — a Fortune-level global supply chain and distribution company ser...
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws: Detection and Hardening Guide for Critical Infrastructure Defenders
Introduction Cybersecurity and intelligence agencies from South Korea and the United States have issued a joint warning on Gunra, an encrypt...
StormEncryptor Ransomware: Detection and Response Guide for the Former Medusa Affiliate Campaign
Introduction A financially motivated threat actor previously operating as an affiliate of the Medusa ransomware-as-a-service (RaaS) operatio...
Kimsuky's Offline AI Stack: Defending Against North Korea's AI-Automated Social Engineering and Malware Development
Kimsuky Moves AI In-House — and What That Means for Your SOC North Korean state-sponsored threat actors have spent the past two years experi...
Go-Based macOS Infostealer Targets Crypto Wallets and Credentials — Detection and Response Guide
A Cross-Platform Language Is Now a Cross-Platform Problem Security researchers have identified a new macOS malware variant written in Go tha...