APT28: Ongoing Router Attacks by Russia’s Fancy Bear Targeting Credentials

The UK's National Cyber Security Centre warns of continued router attacks by the Russian group APT28, affecting over 200 organizations and 5,000 devices.
Ciberseguridad, vulnerabilidades y privacidad

The UK's National Cyber Security Centre warns of continued router attacks by the Russian group APT28, affecting over 200 organizations and 5,000 devices.

Recent findings reveal two vulnerabilities in the CUPS printing system that could allow unauthenticated remote code execution and root access.

A password-spraying campaign attributed to an Iranian threat actor has targeted Microsoft 365 environments in Israel and the U.A.E., affecting numerous organizations across various sectors.

As hybrid work becomes the norm, organizations face significant security challenges. This article examines the evolving threat landscape and the need for updated security strategies.

In a bid to demystify cybercriminals, Trellix's John Fokker advocates for a shift in how the industry perceives and discusses these actors.

Anthropic's recent accidental release of the Claude Code source code raises significant security concerns and operational challenges.

Microsoft's findings reveal a new method where threat actors utilize HTTP cookies to control PHP-based web shells, enabling remote code execution on Linux servers.

A China-aligned threat actor, TA416, has intensified its targeting of European government and diplomatic organizations since mid-2025, employing sophisticated phishing techniques and malware delivery methods.

President Trump's budget proposal for fiscal year 2027 seeks to cut $707 million from the Cybersecurity and Infrastructure Security Agency, raising alarms about potential impacts on national cybersecurity.

A corporate client's data breach was traced back to an unsecured internet-connected coffee machine, highlighting vulnerabilities in connected devices.