My Courses
-

GodRAT Trojan with Gh0st RAT code uses steganography to target brokerage firms
Financial institutions, particularly trading and brokerage firms, are currently facing a new threat from a remote access trojan known as GodRAT. This malware campaign involves the distribution of malicious .SCR (screen saver) files disguised as financial documents through Skype messenger, as reported by Kaspersky researcher Saurabh Sharma. The attacks have been active as recently as…
-

The United States imposes sanctions on Garantex and Grinex due to ransomware involvement
The U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) has renewed sanctions against the Russian cryptocurrency exchange platform Garantex for facilitating ransomware actors and other cybercriminals. Since 2019, Garantex has processed over $100 million in transactions linked to illicit activities. The Treasury has also imposed sanctions on Garantex’s successor, Grinex, along with…
-

Cyber insurance sector showing signs of maturity
The cyber insurance market is evolving and showing early signs of maturity, as highlighted by recent research from Arctic Wolf. Brokers and carriers are assuming distinct yet interconnected roles to assist customers in obtaining policies. Brokers provide advice and arrange coverage, while carriers focus on evaluating and managing risk behind the scenes. Currently, only 47%…
-

Vulnerabilities addressed in Rockwell’s FactoryTalk, Micro800, and ControlLogix products
Rockwell Automation has issued multiple advisories highlighting critical and high-severity vulnerabilities that impact its product line. These vulnerabilities affect key systems, including Rockwell FactoryTalk, Micro800, and ControlLogix products, posing significant security risks to users. The company has taken proactive measures to address these issues by releasing patches aimed at mitigating potential threats. Users are strongly…
-

Open-Source Obot MCP Gateway for secure MCP server management
The Obot MCP Gateway is a free, open-source solution designed to help IT organisations securely manage and scale the adoption of Model Context Protocol (MCP) servers. As MCPs become the standard for AI agents interfacing with real-world systems, the absence of a control layer poses risks such as shadow infrastructure, data exposure, and fragmented adoption.…
-

Taiwan Web Servers Breached by UAT-7237 using Open-Source Hacking Tools
A Chinese-speaking advanced persistent threat (APT) actor, tracked by Cisco Talos as UAT-7237, has been observed targeting web infrastructure entities in Taiwan. This group has been active since at least 2022 and is considered a sub-group of UAT-5918, which has been attacking critical infrastructure in Taiwan since 2023. UAT-7237 employs customised versions of open-sourced tools…
-

Employee-Created personalized AI applications pose security dangers
The latest findings from Netskope indicate a significant 50% increase in the usage of Generative AI (GenAI) platforms among enterprise end-users. This surge is primarily driven by the growing demand from employees for tools that facilitate the development of custom AI applications and agents. Despite efforts to safely enable Software as a Service (SaaS) GenAI…
-

Google announces Android pKVM framework SESIP Level 5 certification
Google has reached a significant milestone in mobile security with the announcement that Android’s Protected KVM (pKVM) hypervisor has officially received SESIP Level 5 certification. This achievement marks pKVM as the first software security system designed for large-scale consumer electronics deployment to attain this prestigious assurance level. The certification process involved rigorous evaluation by Dekra,…


