AI Coding Assistant Now a Ransomware Weapon
Aurora ransomware actors use Cursor Agent AI to automate post-exploitation tasks, per Gambit Security research.
20 results for “threat intelligence”
Aurora ransomware actors use Cursor Agent AI to automate post-exploitation tasks, per Gambit Security research.
DeadLock uses Polygon smart contracts to make extortion infrastructure harder to disrupt, Microsoft reports.
Microsoft tracks Storm-1175's shift to StormEncryptor, following exploitation of an N-central flaw.
Recent investigations reveal how attackers leverage legitimate accounts and blockchain data to execute sophisticated financial fraud.
Google Threat Intelligence Group links the retired BlackFile extortion brand to the active Redact group through shared infrastructure.
New data indicates a sharp rise in ransomware incidents throughout July 2026, breaking a multi-month period of lower activity.
The Linux Foundation and the Open Secure AI Alliance have proposed the SAFE framework to collect and analyze agentic AI incident data.
Security professionals must prioritize technical substance over corporate spectacle to address evolving AI and APT threat vectors.
New research details how threat actors are ditching delayed credential harvesting for live, session-based account hijacking.
A centralized portal upgrade aims to standardize affiliate workflows and tighten operational management for the DevMan ransomware group.
A rivalry between major threat actors is escalating, with data showing a surge in attacks targeting small businesses and large enterprises.
Anthropic's frontier AI is changing vulnerability discovery, forcing a rapid shift in how organizations prioritize defense.
A newly identified backdoor is enabling long-term espionage against Southeast Asian government and diplomatic networks.
A threat actor successfully leveraged Google's Gemini CLI to manage a botnet by manipulating the AI into performing malicious tasks.
A legacy rootkit reappears in Taiwan alongside a sophisticated new backdoor that executes commands from the Windows logon screen.
A deep dive into the operational identity and recruitment tactics driving one of the fastest-growing ransomware-as-a-service groups.
New research highlights how generative AI enables low-skilled attackers to craft custom, evasive malware payloads on demand.
A single exposed directory reveals how multiple threat actors leverage AiTM tools and OAuth abuse to compromise corporate accounts.
Threat actors are leveraging AI to refine and accelerate traditional attack chains, lowering the barrier to entry for complex operations.
Sustained cyber espionage campaigns weaponize local law enforcement systems to harvest sensitive citizen data and security records.