China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across Regions

A sophisticated China-nexus advanced persistent threat (APT) group has been attributed to attacks targeting government entities in South America since at least late 2024 and government agencies in southeastern Europe in 2025.
The activity is being trac… Continue reading China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across Regions

Posted in Uncategorized

The Back Door Attackers Know About — and Most Security Teams Still Haven’t Closed

Every AI tool, workflow automation, and productivity app your employees connected to Google or Microsoft this year left something behind: a persistent OAuth token with no expiration date, no automatic cleanup, and in most organizations, no one watching… Continue reading The Back Door Attackers Know About — and Most Security Teams Still Haven’t Closed

Posted in Uncategorized

We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is

While the software industry has made genuine strides over the past few decades to deliver products securely, the furious pace of AI adoption is putting that progress at risk. Businesses are moving fast to self-host LLM infrastructure, drawn by the prom… Continue reading We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is

Posted in Uncategorized

We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is

While the software industry has made genuine strides over the past few decades to deliver products securely, the furious pace of AI adoption is putting that progress at risk. Businesses are moving fast to self-host LLM infrastructure, drawn by the prom… Continue reading We Scanned 1 Million Exposed AI Services. Here’s How Bad the Security Actually Is

Posted in Uncategorized

ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows

The North Korea-aligned state-sponsored hacking group known as ScarCruft has compromised a video game platform in a supply chain espionage attack, trojanizing its components with a backdoor called BirdCallto likely target ethnic Koreans residing in Chi… Continue reading ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows

Posted in Uncategorized