Android Car Head Units Infected with Proxy Botnet Malware via Built-In Software Updaters

Security researchers have uncovered a novel Android malware campaign infecting connected car head units through legitimate software update mechanisms, repurposing automotive infotainment systems into nodes for an ad-fraud and proxy botnet. Kaspersky... Read more »

CISA Orders Urgent Federal Patching of Actively Exploited Zimbra Collaboration Suite Flaw

The U.S. Cybersecurity and Infrastructure Security Agency has ordered federal civilian agencies to remediate an actively exploited command injection vulnerability in the Zimbra Collaboration Suite within a strict three-day timeframe. Tracked as... Read more »

Black Kite Report Shows Ransomware Groups Focusing Heavily on Mid-Market Companies

Mid-sized enterprises across North America and Europe face an overwhelming majority of publicly disclosed ransomware and data-extortion incidents, according to a new report from Black Kite. Data compiled between January 2023 and... Read more »

Proton Releases AI Paper Trail to Quantify Personal Data Exposure in Large Language Model Histories

Proton has launched AI Paper Trail, a free diagnostic utility designed to audit exported user conversation histories from prominent artificial intelligence platforms and calculate individual exposure risks. The software inspects user data... Read more »

Fake Bank Websites Play Dead to Evade Security Scanners via Chameleon SEO Poisoning

A newly tracked phishing technique dubbed Chameleon SEO Poisoning uses advanced cloaking and manipulated search engine results to harvest enterprise credentials while actively evading automated security analysis. Researchers at Fortra Intelligence and... Read more »

Proton Launches AI Paper Trail to Quantify Privacy Risks in Chat History

Proton has introduced AI Paper Trail, a free privacy utility designed to evaluate and expose the extensive personal data gathered during user interactions with major artificial intelligence platforms. The tool functions by... Read more »

Ransomware Attackers Target Mid-Market Companies Amid Patch Management Challenges

Mid-sized enterprises face a disproportionate volume of data-extortion campaigns as ransomware groups leverage unpatched systems and stolen credentials. Mid-sized enterprises accounted for 73 percent of publicly disclosed ransomware and data-extortion incidents with... Read more »

Fake Bank Websites Play Dead to Evade Security Scanners

Researchers have uncovered a sophisticated phishing scheme using cloaked banking portals and manipulated search rankings to bypass security audits. Cybersecurity researchers at Fortra have identified a persistent threat campaign dubbed Chameleon SEO... Read more »

Fake Bank Websites Use Cloaking and SEO Poisoning to Evade Security Scanners

A sophisticated phishing technique known as Chameleon SEO Poisoning leverages manipulated search engine results and cloaked fake banking websites to harvest user credentials while bypassing automated security scanners. Researchers from Fortra’s threat... Read more »

Ransomware Attackers Zeroing In on Mid-Market Companies

Black Kite report reveals that mid-sized organizations accounted for 73% of publicly disclosed ransomware and data-extortion incidents across North America and Europe between January 2023 and June 2026. According to an analysis... Read more »