Topic: threat hunting

  • Top Cybersecurity Jobs Open This Week (May 26, 2026)

    Top Cybersecurity Jobs Open This Week (May 26, 2026)

    The article lists 10 diverse cybersecurity job openings worldwide, including roles like Application Security Engineer, CISO, Red Team Operator, and Fraud Investigations Manager, spanning offensive security, governance, and digital forensics. Key positions include IG Group's Application Security E...

    Read More »
  • 35 Must-Have Open-Source Security Tools for Red Teams & SOCs

    35 Must-Have Open-Source Security Tools for Red Teams & SOCs

    The article highlights 35 essential open-source security tools for various domains like cloud security, threat hunting, and vulnerability management, aiding red teams and SOC analysts. Key tools include Autorize for authorization testing, BadDNS for DNS security, and Beelzebub for...

    Read More »
  • 4 Time-Saving Strategies to Boost Security Monitoring

    4 Time-Saving Strategies to Boost Security Monitoring

    Traditional SIEM systems face challenges with data latency, storage costs, and processing overhead, making it difficult to balance comprehensive security visibility with budget constraints. Time series data approaches enable faster anomaly detection and long-term threat hunting by providing immed...

    Read More »
  • Building Cyber Defenses: How Nations Secure Their Digital Borders

    Building Cyber Defenses: How Nations Secure Their Digital Borders

    Cyberspace is now recognized as the fifth domain of warfare, with nations integrating cyber operations into military and intelligence activities, yet accurately attributing attacks remains a major challenge. Active cyber defense strategies, such as threat hunting, are essential for resilience, en...

    Read More »
  • Hiring Now: Cybersecurity Jobs in October 2025

    Hiring Now: Cybersecurity Jobs in October 2025

    A variety of cybersecurity roles are available globally in October 2025, including positions for analysts, engineers, consultants, and leadership, with options for remote, on-site, or hybrid work arrangements. Key leadership positions like Chief Information Security Officer (CISO) involve develop...

    Read More »
  • The Complete AI SOC Platform: End-to-End Security

    The Complete AI SOC Platform: End-to-End Security

    Modern security operations centers struggle with excessive alerts, detection gaps, and a shortage of skilled staff, leading to inefficiencies and vulnerabilities. Exaforce addresses these issues with a unified platform using multi-model AI and automation for enhanced threat detection, intelligent...

    Read More »
  • Australia's Cyber Crisis: A Call to Action for Businesses

    Australia's Cyber Crisis: A Call to Action for Businesses

    Australian businesses face sophisticated cyber campaigns aimed at crippling economic stability and critical national functions, moving beyond simple data theft to cause national paralysis. The conflict in Ukraine demonstrated that cyber warfare is synchronized with military operations, targeting ...

    Read More »
  • Intel 471 Launches Verity471: Next-Gen Cyber Threat Intel Platform

    Intel 471 Launches Verity471: Next-Gen Cyber Threat Intel Platform

    Intel 471 launched Verity471, a unified cyber threat intelligence platform that integrates intelligence offerings into a single interface to enhance security operations and threat response. Verity471 provides actionable insights through three portfolios: Cyber Threat Exposure (identifies vulnerab...

    Read More »
  • Audit AI Actions, Not Its Thoughts

    Audit AI Actions, Not Its Thoughts

    AI presents a dual challenge for CISOs, offering defensive capabilities like fraud detection while adversaries use it for malicious purposes, requiring organizations to defend both with and against it. Ensuring AI tools are auditable, explainable, and resilient is difficult due to their complex d...

    Read More »
  • Vectra AI: Defend Against AI-Powered Cyberattacks

    Vectra AI: Defend Against AI-Powered Cyberattacks

    Vectra AI has launched an enhanced security platform designed to protect modern, AI-driven enterprises from sophisticated, AI-powered cyber threats by providing preemptive protection and proactive defense. The platform offers unified observability across the entire enterprise network, merging flo...

    Read More »
  • ScreenConnect Flaws Exploited in Network Breaches

    ScreenConnect Flaws Exploited in Network Breaches

    Cyber-attacks are increasingly using legitimate remote monitoring and management (RMM) tools like ConnectWise ScreenConnect for initial network access through phishing, providing stealthy unauthorized control. Attackers exploit ScreenConnect's features such as unattended access and VPN functional...

    Read More »
  • Akira Ransomware Hijacks Victim's Remote Management Tool

    Akira Ransomware Hijacks Victim's Remote Management Tool

    Hackers used the trusted Datto RMM tool and a Living Off The Land strategy to deploy Akira ransomware, disguising their actions as normal IT operations to avoid detection. The attack was halted by Barracuda Managed XDR, which detected the encryption activity and immediately isolated the compromis...

    Read More »
  • Conifers launches AI-driven SOC for unified security and automated response

    Conifers launches AI-driven SOC for unified security and automated response

    Conifers launched an AI-driven agentic SOC platform built on its CognitiveSOC system to unify threat intelligence, hunting, detection, investigation, and remediation into a single operational framework, designed to defend against machine-speed cyber threats. The launch responds to a rapidly evolv...

    Read More »
  • Top Cybersecurity Jobs Hiring Now: January 2026

    Top Cybersecurity Jobs Hiring Now: January 2026

    The global cybersecurity job market is experiencing high demand for specialized roles, with key positions including Chief Information Security Officers (CISOs), Cyber Defence Specialists, and various types of Security Engineers and Analysts across countries like Australia, France, and the UAE. Sp...

    Read More »
  • Patch Alert: CitrixBleed 2 Still a Threat (CVE-2025-5777)

    Patch Alert: CitrixBleed 2 Still a Threat (CVE-2025-5777)

    A critical vulnerability (CVE-2025-5777) in Citrix NetScaler systems is being exploited, enabling session hijacking and unauthorized access despite Citrix's denial of confirmed attacks. The flaw allows attackers to extract session tokens via manipulated login requests, potentially compromising ad...

    Read More »
  • Top Cybersecurity Jobs Hiring Now: December 2025

    Top Cybersecurity Jobs Hiring Now: December 2025

    The cybersecurity field offers diverse, in-demand career paths globally, with organizations actively seeking talent for roles ranging from threat intelligence to cloud security architecture. Specific high-demand roles include threat intelligence analysts, security managers, architects, and engine...

    Read More »
  • Patch Critical F5 BIG-IP Bug, NCSC Warns

    Patch Critical F5 BIG-IP Bug, NCSC Warns

    The UK's NCSC warns of active attacks exploiting a critical RCE vulnerability (CVE-2025-53521) in F5's BIG-IP APM, urging immediate patching. U.S. CISA has mandated federal agencies to patch by March 30, 2026, as the flaw is a frequent, high-risk attack vector for malicious actors. Guidance from ...

    Read More »
  • China's Salt Typhoon Hackers Target European Telecoms

    China's Salt Typhoon Hackers Target European Telecoms

    A China-linked cyber espionage group known as Salt Typhoon is targeting European telecommunications providers to infiltrate critical infrastructure for intelligence gathering and surveillance. The attackers exploited a Citrix NetScaler Gateway vulnerability, deployed the SNAPPYBEE backdoor via DL...

    Read More »
  • Active Attacks Target Unpatched SolarWinds WHD Systems

    Active Attacks Target Unpatched SolarWinds WHD Systems

    Attackers are exploiting unpatched SolarWinds Web Help Desk systems to gain network access, using "living-off-the-land" techniques like legitimate remote access tools to avoid detection. Once inside, they deploy a weaponized version of the Velociraptor forensics tool for command-and-control, enab...

    Read More »
  • Over 266,000 F5 BIG-IP Systems Vulnerable to Remote Hacks

    Over 266,000 F5 BIG-IP Systems Vulnerable to Remote Hacks

    Over 266,000 F5 BIG-IP systems are exposed online and vulnerable to remote attacks following a security breach by nation-state hackers who stole source code and details about undisclosed flaws. F5 has released patches for 44 vulnerabilities and strongly urges immediate updates, while CISA mandate...

    Read More »