threat-intel Out of the Crypt: The Evolving Cyber Extortion Economy This report from Palo Alto Unit 42 highlights a significant shift in the cyber extortion landscape, moving away from ransomware-based pressure towards pure data theft and extortion. The trend is driven by factors like ad… Palo Alto Unit 42 · May 27, 2026 High USdata theftextortionsupply chain
threat-intel Ransomware Actors Show Up In Person to Steal Law Firm Data The Silent Ransom Group (SRG), also known as Luna Moth and UNC3753, is targeting law firms through sophisticated social engineering tactics, including impersonating IT personnel and conducting in-person visits to gain ac… Dark Reading · May 27, 2026 High RUsocial engineeringdata theftlaw firms
threat-intel UK Cyberspying Chief Calls AI ‘an Unstoppable Force’ and Warns About Russia British intelligence chief Anne Keast-Butler warned of the escalating threat posed by Russia’s cyber activities, particularly the weaponization of artificial intelligence, and emphasized the urgent need for increased cyb… SecurityWeek · May 27, 2026 High UKRUCHartificial intelligencecybersecurityrussia
threat-intel AI-Assisted Exploit Development Outpaces Scanner Detection Research from Cogent indicates that AI-assisted exploit development is dramatically accelerating, reducing exploit creation time from 125 days to just 0.5 days using large language models. This creates significant ‘visib… Dark Reading · May 27, 2026 Critical USaiexploitvulnerability
threat-intel Rudd orders Cyber Command reviews as Pentagon presses reform agenda U.S. Cyber Command is undergoing a comprehensive review commissioned by newly appointed head Gen. Joshua Rudd to modernize the military’s digital warfare arm. The review, led by MITRE, will examine acquisition processes… The Record · May 27, 2026 Medium UNcybersecuritymodernizationacquisition
threat-intel Can you enforce strong Active Directory password rules without frustrating users? This article discusses the challenges of enforcing strong Active Directory (AD) password policies without frustrating users. It highlights the importance of using passphrases over complex passwords, blocking weak or comp… BleepingComputer · May 27, 2026 Medium active directorypassword policypassphrases
threat-intel Cybersecurity Evolution: How We Went From Perimeter Defense to AI-Native Security This Dark Reading article reflects on the evolution of the cybersecurity industry over the past 20 years, highlighting a shift from traditional perimeter defenses focused on antivirus and firewalls to a more complex land… Dark Reading · May 27, 2026 Medium cybersecuritycloud securityiot security
threat-intel FBI warns of in-person data theft attacks from extortion gang The FBI has issued a warning about the Silent Ransom Group (SRG), an extortion gang now employing in-person data theft tactics targeting U.S. law firms. This shift involves social engineering, including phishing and impe… BleepingComputer · May 27, 2026 High USsocial engineeringphishingdata theft
threat-intel GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure CrowdStrike, in collaboration with Google and Shadowserver Foundation, successfully disrupted the command-and-control infrastructure of the GlassWorm malware campaign, which targeted software developers through compromis… The Hacker News · May 27, 2026 High RUCIsupply chaindeveloperc2
threat-intel 3 SOC Steps that Shut Down Incident Risks Early This article from The Hacker News discusses three key steps for modern Security Operations Centers (SOCs) to proactively reduce incident risks. It emphasizes the shift from perimeter defense to minimizing operational deb… The Hacker News · May 27, 2026 High threat intelligencesocincident response
threat-intel 5 Steps to Managing Shadow AI Tools Without Slowing Down Employees This article discusses the growing ‘shadow AI’ gap – where employees use unapproved AI tools connected to corporate data without IT oversight. With 69% of organizations acknowledging this issue, it highlights the disconn… The Hacker News · May 27, 2026 Medium aishadow aioauth
threat-intel GlassWorm Botnet Disrupted The GlassWorm botnet, a persistent threat targeting open-source software developers, has been disrupted by a coordinated effort between CrowdStrike, Google, and the Shadowserver Foundation. The botnet utilized a multi-la… SecurityWeek · May 27, 2026 High RUbotnetopen sourcedeveloper
threat-intel Introducing EvidenceForge: Synthetic security logs that don’t look (as) fake Cisco Talos has released EvidenceForge, an open-source synthetic security log generator designed to address the limitations of existing synthetic data solutions. The tool utilizes a canonical event model, causal ordering… Cisco Talos · May 27, 2026 Medium synthetic datalog generationthreat hunting
threat-intel What to consider before asking an AI chatbot for health advice This article warns against relying on AI chatbots for health advice, highlighting significant risks related to inaccurate information, data privacy, and potential misuse of sensitive medical data. The piece emphasizes th… WeLiveSecurity · May 27, 2026 Medium aihealthcareprivacy
threat-intel Windows 11 KB5089573 update released with performance improvements This article reports on the release of Windows 11 KB5089573, a non-security preview update for Windows 11 versions 25H2 and 24H2. The update focuses on performance improvements and reliability enhancements, including sha… BleepingComputer · May 27, 2026 Low windows 11performancereliability
threat-intel FBI: Hackers Sending Operatives in Person to Insert USB Drives and Steal Data The FBI has issued an alert regarding a new tactic employed by the Silent Ransom Group (SRG) involving physical intrusion to steal data from law firms and other organizations. SRG is impersonating IT support personnel,… SecurityWeek · May 27, 2026 High social engineeringremote accessusb drive
threat-intel ISC Stormcast For Wednesday, May 27th, 2026 https://isc.sans.edu/podcastdetail/9946, (Wed, May 27th) The SANS Internet Storm Center's Stormcast for May 27th, 2026 highlighted a concerning increase in several active threats across the internet landscape. The broadcast detailed ongoing campaigns involving phishing attacks… SANS Internet Storm Center · May 27, 2026 Medium phishingmalwareemail
threat-intel State Cyber Leaders Beg Congress for More Funding, Support This article reports on a congressional hearing where state cyber leaders urgently requested increased funding and support from the federal government, citing significant cuts to cybersecurity initiatives and a rise in s… Dark Reading · May 26, 2026 High UScybersecurityfundingthreat intelligence
threat-intel The Hackers Behind Shai-Hulud: Lucky or Skilled? The cybercrime group TeamPCP has been identified as a primary driver behind the Shai-Hulud worm, causing significant damage to the open-source ecosystem through exploiting vulnerabilities like React2Shell and misconfigur… Dark Reading · May 26, 2026 High USsupply-chainopen-sourcedeveloper-tooling
threat-intel For Enterprises, Security Remains Agentic AI's Biggest Challenge This article discusses the rapid adoption of OpenClaw, an agentic AI assistant, and the significant security challenges it presents to enterprises. Despite its popularity and endorsement from Nvidia, the software has bee… Dark Reading · May 26, 2026 High USagentic aiai securityopen source