Topic: threat intelligence sharing
-
Google Analyst Infiltrates Notorious Supply Chain Hacking Gang
Google’s Threat Intelligence Group infiltrated TeamPCP, a supply chain hacking collective, allowing the company to monitor attacks from within and assist in disrupting their operations. This covert operation culminated in the arrest of two alleged leaders in Australia, supported by intelligence g...
Read More » -
Questions to Ask AI Vendors Before Signing a Contract
The most significant threats to professional services firms are often silent, stemming from over-privileged access and weak workflow controls that erode data protection and create openings for threats. Effective defense requires centralized data governance, proactive identity management, and bala...
Read More » -
Adobe Acrobat Reader Zero-Day Exploited Since Last Year
A critical, actively exploited zero-day vulnerability in Adobe Acrobat Reader uses malicious PDFs to execute code, gather sensitive system information, and fetch additional payloads for potential remote code execution. The attack, discovered in late 2025, uses Russian-language document decoys, st...
Read More » -
CISA warns of cyberattacks on U.S. water utilities
CISA issued an urgent warning about a sharp rise in attacks on internet-exposed programmable logic controllers (PLCs) in the water sector, following a coordinated assault that disrupted over 30 community water systems in Minnesota. Threat actors are locking out operators by changing passwords, al...
Read More » -
Trump Opens Offensive Cyber Ops to Private Sector
The White House authorized federal law enforcement to collaborate with private companies on offensive cyber operations against foreign adversaries, expanding on a March executive order and addressing the underutilization of private sector capabilities. The Homeland Security Task Force's National ...
Read More » -
US States Boost Cyber Defenses for Local Communities
State governments are launching initiatives like cybersecurity clinics, regional security operations centers (RSOCs), and state cyber corps to protect local communities from cyber threats, with financial returns ranging from $12,000 to $7.5 million annually per program. A new guidebook from UC Be...
Read More » -
Elastic Defend expands to 800+ vulnerable drivers with ARM support
Elastic Security Labs now automatically generates and deploys detection rules for known vulnerable Windows drivers by cross-referencing VirusTotal, the LOLDrivers catalog, and Microsoft's Vulnerable Driver Block List, expanding coverage from 65 rules in 2023 to over 800 today. The "bring your own...
Read More »