Security news

Latest security news

70 of 1,256 storiesTopic: Nation StateClear all

Fri, 14 Aug 2026

  1. Researchers Link 'Jewelbug' Chinese APT to Hack-for-Hire Operations

    Threat intelligence researchers from Broadcom revealed that a known Chinese APT group may be linked to a lucrative crypto fraud operation

    Infosecurity Magazine

Thu, 13 Aug 2026

  1. Armored Likho expands its cyber-espionage toolkit

    Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.

    Securelist

Wed, 12 Aug 2026

  1. Lazarus Used Post-Quantum Key Exchange to Deliver Zero-Day

    Lazarus malware used post-quantum key exchange to protect delivery of a Windows zero-day exploit

    Infosecurity MagazineWindows, Exchange

Tue, 11 Aug 2026

  1. Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants

    Kaspersky experts have discovered malicious TrueConf software installers. The Head Mare APT group uses them to deliver the PhantomCore and PhantomGraph backdoors to target systems by exploiting vulnerabilities in an unpatched TrueConf server.

    Securelist

Wed, 5 Aug 2026

  1. Smashing Security podcast #479: How a fake police officer nearly stole Graham’s cryptocurrency

    Graham gets a phone call from the police. Well, someone who sounds convincingly like the police. There's just one small problem: what they really want is the 24-word seed key to Graham's cryptocurrency wallet. Meanwhile, if you've stayed in a hotel recently, the free Wi-Fi you connected to might have come with an unexpected extra: an all-you-can-eat buffet of "Captive Crunch" for a Russian intelligence-linked hacking group. And a group calling itself the "ExFilSquad" has walked off with 600,000 records of the UK's teachers and head teachers from the Department for Education — sending an unusually polite ransom demand. All this and more in episode 479 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Danny Palmer.

    Graham Cluley

Mon, 3 Aug 2026

  1. Midnight Blizzard Targets Travelers via Captive Portals

    Russian actor Storm-2945 hijacked hotel captive portals to push fake updates and steal tokens

    Infosecurity Magazine

Fri, 31 Jul 2026

  1. AWS Blames North Korean Group for Axios and Other npm Supply Chain Attacks

    AWS has linked North Korea to the axios campaign to other attacks on npm libraries

    Infosecurity MagazineAWS

Fri, 24 Jul 2026

About this news

1,256
Stories
39
Added in the last 24 hours
19
Critical in the last 7 days
4
Reported by several outlets