Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Manic, Grandoreiro, and ToxicPanda 2.0 Banking Trojans: Detection and Defense Guide for SOC Teams
Threat researchers have put three active banking trojan operations under the microscope this cycle: Manic, a banking trojan with full spywar...
ToxicPanda Android Banking Trojan Abuses VPN Permissions and Blocks Google Play — Detection and Response Guide
ToxicPanda's Evolution: VPN Abuse, Play Protect Blocking, and a 349-App Target List The ToxicPanda Android banking trojan — a family we've t...
CVE-2025-27558: Linux Kernel Wi-Fi Mesh Packet Injection (USN-8661-2) — Detection, Patching, and Hardening Guide
Overview Canonical has published USN-8661-2, a follow-on kernel security update for the Low Latency kernel flavor on supported Ubuntu releas...
Microsoft Classic Outlook Theme for New Outlook: Change Management and Security Implications for M365 Admins
Introduction Microsoft has begun rolling out a Classic Outlook theme for users of Outlook on the web and the New Outlook for Windows, per re...
CVE-2026-41579: SUSE runc Filesystem Integrity Flaw — Detection and Remediation Guide for Container Hosts
Introduction SUSE has released security update 2026-23164-1 for runc, addressing CVE-2026-41579, a low-severity filesystem integrity vulnera...
9,300 Leaked AWS Access Keys Still Active: Detection and Remediation Guide for Exposed IAM Credentials
Introduction Security researchers have confirmed that more than 9,300 Amazon Web Services access keys exposed publicly between August 2022 a...
TikTok's $400 Million COPPA Settlement: What the DoJ Child Privacy Case Teaches Defenders About Data Governance
TikTok Agrees to $400 Million Settlement — and Every Organization Handling User Data Should Pay Attention On Friday, the U.S. Department of ...
Russia-Linked Espionage Clusters Abuse OAuth Device Code Flow and WhatsApp: Detection and Defense Guide
Overview Google's Threat Intelligence Group (GTIG) has disclosed tracking of three separate suspected Russia-linked cyber espionage clusters...
Android Car Malware Hijacks DoFun Head Unit Updaters for Ad Fraud and Proxy Botnet — Detection and Response Guide
Introduction Kaspersky researchers have disclosed a new malware family purpose-built to infect Android-based vehicle head unit firmware deve...