‘BlackSanta’ Malware Activates EDR and AV Killer Before Detonating Payload

The malware disables antivirus and EDR protections at the kernel level, clearing the path for credential harvesting, system reconnaissance, and eventual data exfiltration.
The post ‘BlackSanta’ Malware Activates EDR and AV Killer Before Det… Continue reading ‘BlackSanta’ Malware Activates EDR and AV Killer Before Detonating Payload

Nation-State iOS Exploit Kit ‘Coruna’ Found Powering Global Attacks

Google and iVerify analysis reveals a powerful exploit kit originally used by Russian state actors that is now appearing in broader criminal campaigns.
The post Nation-State iOS Exploit Kit ‘Coruna’ Found Powering Global Attacks appeared first on Secur… Continue reading Nation-State iOS Exploit Kit ‘Coruna’ Found Powering Global Attacks

Hacker Conversations: Inti De Ceukelaire, Raging Against the Machine Creatively

A Belgian national, De Ceukelaire’ did not set out to be a hacker. Like many hackers he was born with the potential to become one and only gradually realized he is one.
The post Hacker Conversations: Inti De Ceukelaire, Raging Against the Machine Creat… Continue reading Hacker Conversations: Inti De Ceukelaire, Raging Against the Machine Creatively

How Pirated Software Turns Helpful Employees Into Malware Delivery Agents

Employees seeking free versions of paid software may unknowingly install malware-laced “cracked” apps that can steal credentials, deploy cryptominers, or open the door to ransomware.
The post How Pirated Software Turns Helpful Employees Into Malware De… Continue reading How Pirated Software Turns Helpful Employees Into Malware Delivery Agents

Quantum Decryption of RSA is Much Closer than Expected

For decades, the quantum threat to RSA and ECC encryption has been tied to Shor’s algorithm and the assumption that we would need million-qubit quantum computers to make it practical. A newly announced algorithm challenges that assumption and suggests … Continue reading Quantum Decryption of RSA is Much Closer than Expected

New ‘AirSnitch’ Attack Shows Wi-Fi Client Isolation Could be a False Sense of Security

Researchers have uncovered a Wi-Fi vulnerability that allows nearby attackers to intercept sensitive data and execute machine-in-the-middle attacks against connected devices.
The post New ‘AirSnitch’ Attack Shows Wi-Fi Client Isolation Coul… Continue reading New ‘AirSnitch’ Attack Shows Wi-Fi Client Isolation Could be a False Sense of Security

The Blast Radius Problem: Stolen Credentials are Weaponizing Agentic AI

More than half (56%) of the 400,000 vulnerabilities IBM X-Force tracked in 2025 required no authentication before exploitation.
The post The Blast Radius Problem: Stolen Credentials are Weaponizing Agentic AI appeared first on SecurityWeek.
Continue reading The Blast Radius Problem: Stolen Credentials are Weaponizing Agentic AI