Classical reactive security logic no longer works when AI-powered attacks treat each victim as a new Patient Zero – transparency in attack infrastructure, not just internal networks, is required.
Exploit-buying firm IRIS C2 is run by two repeatedly convicted conspiracy theorists involved in disinformation campaigns and illegal robocall operations.
A residential proxy network comprising two million infected devices was destroyed by Google and the FBI after being used for mass infiltration by 316 different threat clusters per week.
For the first time, a complete ransomware campaign has been documented in which a large language model autonomously carried out all stages from initial access to extortion.
Anubis attackers leverage legitimate IT tools and predictable attack patterns to infiltrate networks and prepare ransomware execution, but thereby provide organizations with detection opportunities through behavioral monitoring before encryption occurs.
Ransomware groups collaborate through partnerships and shared infrastructure, increasing their attack capacity and intensifying threats to critical sectors.
A fake Perplexity extension on the Chrome Web Store was discovered intercepting search queries and browsing data, transmitting them to attackers’ servers.