threat-intel As breakout time accelerates, prevention-first cybersecurity takes center stage This article highlights the accelerating pace of cyberattacks, driven largely by the increasing use of AI and automation by threat actors. The ‘breakout time’ – the period between initial access and lateral movement – ha… WeLiveSecurity · Apr 7, 2026 High USaiautomationlateral movement
threat-intel Digital assets after death: Managing risks to your loved one’s digital estate This article discusses the growing problem of managing a person's digital assets after death, highlighting the significant challenges posed by the lack of legal frameworks and the vulnerability of digital accounts to fra… WeLiveSecurity · Apr 1, 2026 High USGBEUdigital estateestate planningfraud
threat-intel A cunning predator: How Silver Fox preys on Japanese firms this tax season A targeted spearphishing campaign, dubbed ‘Silver Fox’, is actively exploiting the Japanese tax filing season to compromise businesses. The campaign utilizes convincing lures related to tax compliance, salary adjustments… WeLiveSecurity · Mar 27, 2026 High JPspearphishingjapantax season
threat-intel Virtual machines, virtually everywhere – and with real security gaps This article discusses the growing problem of virtual machine (VM) sprawl in cloud environments, particularly within multi-cloud setups utilizing AWS, Azure, and GCP. The ease with which new VMs can be provisioned, coupl… WeLiveSecurity · Mar 25, 2026 High USvm sprawlcloud securitymulti-cloud
threat-intel Cloud workload security: Mind the gaps This article highlights the significant cybersecurity challenges organizations face due to the increasing complexity of cloud environments. The report emphasizes that misconfigurations and credential compromise remain pr… WeLiveSecurity · Mar 24, 2026 High cloud securitymisconfigurationcredential compromise
threat-intel ‘CanisterWorm’ Springs Wiper Attack Targeting Iran A financially motivated cybercrime group, TeamPCP, is deploying a wiper attack targeting Iran, leveraging a self-propagating worm that exploits vulnerabilities in cloud services like Azure and AWS. The group gained initi… Krebs on Security · Mar 23, 2026 High IRcloud securitysupply chain attackwiper
vulnerability Feds Disrupt IoT Botnets Behind Huge DDoS Attacks The U.S. Justice Department joined authorities in Canada and Germany in dismantling the online infrastructure behind four highly disruptive botnets that compromised more than three million hacked Internet of Things (IoT)… Krebs on Security · Mar 20, 2026 High
malware EDR killers explained: Beyond the drivers This article analyzes the increasing use of "EDR killers" in modern ransomware attacks. These tools, often based on vulnerable drivers or custom scripts, are deployed by affiliates to disrupt endpoint detection and respo… WeLiveSecurity · Mar 19, 2026 High USransomwareedrdrivers
threat-intel Inside Olympic Cybersecurity: Lessons From Paris 2024 to Milan Cortina 2026 This article discusses cybersecurity challenges faced by the Paris 2024 Olympics and Milan Cortina 2026, focusing on lessons learned from Franz Regul, former CISO for the Paris 2024 Games. The piece highlights the immens… Dark Reading · Mar 16, 2026 High FRITBRcybersecurityolympicsthreat intelligence
vulnerability On the Effectiveness of Mutational Grammar Fuzzing This blog post discusses the limitations of mutational grammar fuzzing, a technique used to find bugs in structured languages like XSLT. The primary issue is that while it increases coverage, it doesn't necessarily lead… Google Project Zero · Mar 5, 2026 High
threat-intel Bypassing Administrator Protection by Abusing UI Access Google Project Zero researchers have identified a significant bypass in Windows' Administrator Protection feature, a security enhancement designed to prevent privilege escalation. The core issue stems from the UI Access… Google Project Zero · Feb 12, 2026 High uacprivilege escalationsecurity vulnerability
threat-intel Bypassing Windows Administrator Protection Microsoft has introduced Administrator Protection in Windows 11 to replace UAC, aiming to create a more secure boundary for administrator privileges. However, research by Google Project Zero revealed nine separate vulner… Google Project Zero · Jan 26, 2026 High uacadministratorbypass
vulnerability A 0-click exploit chain for the Pixel 9 Part 3: Where do we go from here? Project Zero researchers discovered a 0-click exploit chain targeting the Pixel 9 and other Android devices, leveraging a vulnerability in the Dolby UDC audio codec. The exploit chain, requiring only two software defects… Google Project Zero · Jan 14, 2026 High CVE-2025-54957CVE-2025-369340-clickaudiodriver
vulnerability A 0-click exploit chain for the Pixel 9 Part 1: Decoding Dolby Google Project Zero discovered a 0-click exploit chain targeting the Dolby Unified Decoder (UDC) within the Google Messages app on Pixel 9 devices. The vulnerability stems from a buffer overrun and a memory leak, allowin… Google Project Zero · Jan 14, 2026 High CVE-2025-49415CVE-2025-54957CVE-2025-369340-clickbuffer overflowmemory leak