My Courses
-

Pro-Russian hackers probably sabotaged Norwegian dam
In April, a significant cybersecurity incident occurred when hackers infiltrated a digital system responsible for remotely controlling a dam’s valve. The attackers successfully opened the valve, resulting in an increased water flow that raised concerns about potential sabotage. Norwegian authorities have indicated that pro-Russian hackers are likely behind this alarming breach, highlighting the growing threat…
-

Charon Ransomware targets Middle East businesses with advanced evasion strategies
Cybersecurity researchers have identified a new campaign utilising a previously undocumented ransomware family named Charon, which specifically targets the public sector and aviation industry in the Middle East. According to Trend Micro, the threat actor behind this campaign employs tactics reminiscent of advanced persistent threat (APT) groups, including DLL side-loading, process injection, and evasion of…
-

Microsoft addresses 111 new vulnerabilities including Kerberos zero-day flaw
On Tuesday, Microsoft announced the rollout of fixes for a significant set of 111 security vulnerabilities across its software portfolio. Among these vulnerabilities, 16 are classified as Critical, 92 as Important, two as Moderate, and one as Low in severity. The vulnerabilities primarily involve privilege escalation, with 44 cases, followed by remote code execution (35),…
-

Investigators have identified XZ Utils backdoor embedded in Docker Hub images
Recent research has revealed the presence of Docker images on Docker Hub that contain the notorious XZ Utils backdoor, more than a year after the initial discovery of the incident. Binarly Research reported that 35 images were found to ship with the backdoor, raising concerns about the risks associated with the software supply chain. The…
-

Global brute-force attack targeting Fortinet SSL VPNs
Cybersecurity researchers have issued a warning regarding a “significant spike” in brute-force traffic targeting Fortinet SSL VPN devices. This coordinated activity, identified by threat intelligence firm GreyNoise, was first observed on August 3, 2025, involving over 780 unique IP addresses, with 56 of these classified as malicious within the last 24 hours. The malicious IPs…
-

Exploring the Dark Web’s Economy: How Cybercriminals Market Access to Business Networks
Rapid7’s analysis of dark web forums uncovers a burgeoning market where elite hackers are actively selling access to corporate networks. This thriving access economy transforms cybercrime into a highly organised business model, allowing buyers to acquire the keys to enterprise networks with relative ease. The findings highlight a concerning trend, as sophisticated cybercriminals leverage their…
-

Trend Micro enhances SIEM efficiency through the use of agent-based AI.
Trend Micro has announced its new Agentic AI technology, designed to address the longstanding challenges associated with Security Information and Event Management (SIEM). This innovative solution, known as Trend Vision One Agentic SIEM, leverages Agentic AI from the ground up to enhance speed, performance, and provide risk-driven, contextual insights for rapid threat mitigation. As the…
-

Rubrik Agent Rewind allows businesses to reverse errors caused by autonomous AI
Rubrik has launched Agent Rewind, a new solution developed following its acquisition of Predibase. This innovative tool, powered by Predibase’s AI infrastructure, allows organisations to reverse mistakes made by agentic AI. By providing enhanced visibility into the actions of AI agents, Agent Rewind enables enterprises to trace, audit, and safely revert changes made to applications…
-

New APT group ‘Curly COMrades’ targeting Georgia and Moldova
A previously undocumented threat actor, dubbed Curly COMrades, has been observed targeting entities in Georgia and Moldova as part of a cyber espionage campaign aimed at facilitating long-term access to target networks. They have repeatedly attempted to extract the NTDS database from domain controllers, which serve as the primary repository for user password hashes and…
-

SAP has addressed a significant vulnerability in S/4HANA by releasing patches.
SAP has announced the release of 15 new security notes as part of the August 2025 Patch Tuesday, addressing several critical vulnerabilities. Among these updates, a significant patch targets a critical vulnerability within S/4HANA, underscoring the importance of maintaining robust security measures for enterprise resource planning systems. These security notes are essential for organisations relying…
