News

DigiCert Support Portal Hacked: Stolen EV Certificates Used to Sign Zhong Stealer Malware

DigiCert revoked 60 EV code signing certificates after attackers breached its support portal via a malicious screensaver file. Eleven certs signed Zhong Stealer.

Read More
Blog

CVE-2024-57727 SimpleHelp RMM: Patch Verification and Detection Checklist

CVE-2024-57727 in SimpleHelp RMM (CVSS 7.5) lets unauthenticated attackers read any file. Step-by-step detection, patch verification, and hardening checklist.

Read More
Blog

DDoS Mitigation Provider Compromise: Vetting and Detecting a Rogue Vendor

Huge Networks ran Mirai attacks against ISPs it claimed to protect. A framework for detecting a DDoS mitigation provider compromise and vetting vendors.

Read More
News

CVE-2024-57727: SimpleHelp RMM Path Traversal Fuels Ransomware Double-Extortion

CVE-2024-57727 is a CVSS 7.5 path traversal in SimpleHelp RMM exploited since January 2025 by ransomware actors. Patch to 5.5.8 immediately or treat

Read More
News

276 Arrested, 9 Crypto Scam Compounds Shut, $701M Seized in FBI-Dubai-China Operation

A US-UAE-China joint operation arrested 276 suspects and dismantled 9 crypto pig-butchering scam centers. FBI's Operation Level Up saved victims an estimated $562M.

Read More
News

Microsoft April 2026 Update Intentionally Blocks psmounterex.sys — Backup Apps Break

Microsoft's April 14, 2026 Windows update deliberately blocks psmounterex.sys due to CVE-2025-11983 and CVE-2025-14276. Acronis, Veeam, Macrium, AOMEI, and EaseUS users are affected.

Read More
News

AI Agent Security: Why Agentic AI Keeps Destroying Production Environments

A Cursor-Claude Opus agent wiped PocketOS's production database in 9 seconds. Security experts explain the real failure point: AI agent access control, not

Read More
News

CVE-2026-4670: Critical MOVEit Automation Authentication Bypass Exposes MFT Servers

CVE-2026-4670 is a CVSS 9.8 authentication bypass in MOVEit Automation affecting versions ≤2025.1.4, ≤2025.0.8, and ≤2024.1.7. Patch to 2025.1.5, 2025.0.9, or 2024.1.8 immediately.

Read More
News

CISA and FBI Warn of Interlock Ransomware Using ClickFix to Hit Critical Infrastructure

CISA and FBI advisory AA25-203A: Interlock ransomware targets critical infrastructure via ClickFix social engineering, fake browser updates, and double extortion with AzCopy exfiltration.

Read More
News

FEMITBOT: Telegram Mini Apps Used for Crypto Scams and Android Malware Delivery

CTM360 uncovers FEMITBOT — a large-scale Telegram Mini App campaign impersonating Apple, Disney, and NVIDIA to run crypto advance-fee scams and distribute malicious

Read More