CISA CI Fortify: Critical Infrastructure Must Survive Weeks of Isolation
CISA's CI Fortify initiative requires critical infrastructure operators to sustain operations for weeks to months in isolation from IT networks and third-party vendors,
CISA's CI Fortify initiative requires critical infrastructure operators to sustain operations for weeks to months in isolation from IT networks and third-party vendors,
Hackers trojanized DAEMON Tools versions 12.5.0.2421–12.5.0.2434 since April 8, 2026, deploying a multi-stage QUIC RAT backdoor to thousands of systems in 100+ countries.
India's SEBI ordered 19 classes of regulated entities to overhaul cybersecurity posture immediately, citing Anthropic's Mythos AI vulnerability-discovery capabilities.
Trend Micro discovered QLNX, a stealthy Linux RAT with LD_PRELOAD rootkit, kernel eBPF component, and PAM backdoor that steals AWS, npm, PyPI, and
A student used a $30 SDR to spoof TETRA emergency signals and halt four Taiwan High Speed Rail trains for 48 minutes. Full
Kaspersky found DAEMON Tools versions 12.5.0.2421–12.5.0.2434 compromised with a signed backdoor and QUIC RAT since April 8, 2026. Attack is ongoing.
CISA AA25-239a: PRC actors compromise telecom backbone routers for persistence. Detection commands, MITRE TTPs, and eviction steps for ISPs.
The FTC has banned data broker Kochava and subsidiary CDS from selling precise location data without explicit consent, settling a 2022 lawsuit over
Deniss Zolotarjovs, 35, sentenced to 102 months for his role in the Conti/Karakurt/Akira ransomware ecosystem — leaking children's health records to extort victims.
DPRK accounts for 76% of all crypto stolen in 2026 via two precision attacks on Drift and KelpDAO. Full TTP analysis, laundering chain