My Courses

  • GodRAT Trojan with Gh0st RAT code uses steganography to target brokerage firms

    GodRAT Trojan with Gh0st RAT code uses steganography to target brokerage firms

    Financial institutions, particularly trading and brokerage firms, are currently facing a new threat from a remote access trojan known as GodRAT. This malware campaign involves the distribution of malicious .SCR (screen saver) files disguised as financial documents through Skype messenger, as reported by Kaspersky researcher Saurabh Sharma. The attacks have been active as recently as…

  • ERMAC V3.0 Banking Trojan source code reveals complete malware infrastructure

    ERMAC V3.0 Banking Trojan source code reveals complete malware infrastructure

    Cybersecurity researchers have unveiled the intricate workings of an Android banking trojan known as ERMAC 3.0, highlighting significant vulnerabilities within the operators’ infrastructure. The latest version of this malware has evolved considerably, enhancing its form injection and data theft capabilities to target over 700 banking, shopping, and cryptocurrency applications, as reported by Hunt.io. Initially documented…

  • Zero Trust and Artificial Intelligence: Safeguarding Privacy in the Era of Autonomous AI.

    Zero Trust and Artificial Intelligence: Safeguarding Privacy in the Era of Autonomous AI.

    Privacy has traditionally been viewed as a perimeter problem, focused on walls, locks, permissions, and policies. However, in an era where artificial agents are evolving into autonomous actors that interact with data, systems, and humans without constant oversight, privacy has shifted from a matter of control to one of trust. Trust, by its very nature,…

  • The United States imposes sanctions on Garantex and Grinex due to ransomware involvement

    The United States imposes sanctions on Garantex and Grinex due to ransomware involvement

    The U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) has renewed sanctions against the Russian cryptocurrency exchange platform Garantex for facilitating ransomware actors and other cybercriminals. Since 2019, Garantex has processed over $100 million in transactions linked to illicit activities. The Treasury has also imposed sanctions on Garantex’s successor, Grinex, along with…

  • Cyber insurance sector showing signs of maturity

    Cyber insurance sector showing signs of maturity

    The cyber insurance market is evolving and showing early signs of maturity, as highlighted by recent research from Arctic Wolf. Brokers and carriers are assuming distinct yet interconnected roles to assist customers in obtaining policies. Brokers provide advice and arrange coverage, while carriers focus on evaluating and managing risk behind the scenes. Currently, only 47%…

  • Vulnerabilities addressed in Rockwell’s FactoryTalk, Micro800, and ControlLogix products

    Vulnerabilities addressed in Rockwell’s FactoryTalk, Micro800, and ControlLogix products

    Rockwell Automation has issued multiple advisories highlighting critical and high-severity vulnerabilities that impact its product line. These vulnerabilities affect key systems, including Rockwell FactoryTalk, Micro800, and ControlLogix products, posing significant security risks to users. The company has taken proactive measures to address these issues by releasing patches aimed at mitigating potential threats. Users are strongly…

  • Open-Source Obot MCP Gateway for secure MCP server management

    Open-Source Obot MCP Gateway for secure MCP server management

    The Obot MCP Gateway is a free, open-source solution designed to help IT organisations securely manage and scale the adoption of Model Context Protocol (MCP) servers. As MCPs become the standard for AI agents interfacing with real-world systems, the absence of a control layer poses risks such as shadow infrastructure, data exposure, and fragmented adoption.…

  • Taiwan Web Servers Breached by UAT-7237 using Open-Source Hacking Tools

    Taiwan Web Servers Breached by UAT-7237 using Open-Source Hacking Tools

    A Chinese-speaking advanced persistent threat (APT) actor, tracked by Cisco Talos as UAT-7237, has been observed targeting web infrastructure entities in Taiwan. This group has been active since at least 2022 and is considered a sub-group of UAT-5918, which has been attacking critical infrastructure in Taiwan since 2023. UAT-7237 employs customised versions of open-sourced tools…

  • Employee-Created personalized AI applications pose security dangers

    Employee-Created personalized AI applications pose security dangers

    The latest findings from Netskope indicate a significant 50% increase in the usage of Generative AI (GenAI) platforms among enterprise end-users. This surge is primarily driven by the growing demand from employees for tools that facilitate the development of custom AI applications and agents. Despite efforts to safely enable Software as a Service (SaaS) GenAI…

  • Google announces Android pKVM framework SESIP Level 5 certification

    Google announces Android pKVM framework SESIP Level 5 certification

    Google has reached a significant milestone in mobile security with the announcement that Android’s Protected KVM (pKVM) hypervisor has officially received SESIP Level 5 certification. This achievement marks pKVM as the first software security system designed for large-scale consumer electronics deployment to attain this prestigious assurance level. The certification process involved rigorous evaluation by Dekra,…