Tag

#nation-state

22 stories taggednation-state.

Illustration: a glowing server room corridor at night
Threat Intelligence

ShinyHunters Claims FBI Hack Exploiting Oracle Flaw

The cybercrime group says it breached FBI systems using a critical Oracle software vulnerability. The FBI is investigating the claim.

3 min read
A laptop screen displaying a login form overlaid with transparent code and data structures, suggesting layers of legitimate services being repurposed for decept
Threat Intelligence

Phishing Pages Built Inside Your Browser: How Attackers Are Using Microsoft's Own Tools Against You

A new phishing technique assembles fake login pages directly inside the victim's browser, using legitimate Microsoft services so there is no suspicious website for security tools to find and block.

3 min read
A computer server room with glowing neural network visualizations on displays, an open access panel revealing circuitry, and a shadowy figure's hand reaching to
Threat Intelligence

Spies and Criminals Are Stealing AI Systems, Not Just Data

Google's threat research team says nation-state hackers and extortion gangs are now going after the AI models, cloud accounts, and secret access keys that companies use to run artificial intelligence, turning those stolen assets into weapons for their own attacks.

4 min read
A security operations center split into two separate divisions—one team monitoring digital threats on screens, another team on a different floor reviewing physi
AI Security

Your Security Team Is Split in Two. Criminals Are Not.

Deepfakes and AI-powered scams now cross physical and digital boundaries at the same time. Most company security programs aren't built to follow.

4 min read
A smartphone screen displaying the Telegram messaging app interface, with surveillance camera icons and technical monitoring overlays visible in the background,
Threat Intelligence

Iran's Spy Malware Runs on Telegram, Western Agencies Warn

US, UK and Dutch cyber agencies say Iranian intelligence uses a Windows tool controlled through Telegram to watch dissidents and activists abroad.

3 min read
A split-screen view: on one side, the Telegram messaging app interface on a mobile device; on the other, data packets and command signals flowing through digita
Threat Intelligence

US, UK and Dutch Agencies Reveal Iranian Surveillance Tool That Hides Inside Telegram

A joint government report names 'Chosen Brick', a spying program linked to Iranian operators that uses Telegram to receive stolen data and issue commands.

3 min read
A UK government policy document or legislative chamber setting with cybersecurity infrastructure and technology supply chain diagrams displayed on screens behin
Policy & Regulation

UK Government Moves to Cut High-Risk Tech Suppliers Out of Critical Infrastructure

Late additions to a new cybersecurity law would give ministers the power to remove or restrict technology providers judged to pose a national security risk, as attacks on supply chains grow more frequent.

3 min read
A Las Vegas conference panel stage with four cybersecurity experts at a discussion table, with AI safety guidelines and security limitations displayed on screen
AI Security

AI Models Are Breaking Their Own Rules. Security Experts Are Alarmed.

At a Las Vegas panel, four cybersecurity professionals debated whether safety limits built into AI slow down defenders more than attackers. One expert changed his mind live.

5 min read
An FBI field office with law enforcement and cyber agents gathered around seized server equipment, network diagrams showing connections to targeted government a
Threat Intelligence

The US just seized the servers behind China's hacking-for-hire empire

A private Chinese company quietly ran shared attack tools for state hackers targeting NASA, the Federal Reserve, and US hospitals. The FBI just pulled the plug.

5 min read
A corporate employee at a desk receiving a phishing message, overlaid with technical analysis showing malware code structure and ransomware preparation modules
Threat Intelligence

New 'SynkLoader' Malware Could Be the Opening Move in Future Ransomware Attacks

Researchers at Expel found a modular malicious program that tricks employees into handing over their passwords, hides from security tools, and looks built to prepare corporate networks for ransomware.

5 min read
A modern office building lobby or conference room with a polished desk, corporate security certifications on the walls, and city views through floor-to-ceiling
Policy & Regulation

Former NSA Director Paul Nakasone Opens Private Security Advisory Firm

The retired four-star general who ran America's signals intelligence agency for six years is now taking his expertise to paying clients in government, business, and beyond.

3 min read
A computer screen displaying lines of code and network diagrams in the dark, with cascading error messages and system alerts visible, suggesting automated intru
Threat Intelligence

AI Agents Ran a Four-Day Hacking Campaign Against Taiwan's Government Systems

Researchers say a cluster of AI programs worked in near-total automation to steal credentials, map government networks, and probe a nuclear safety agency, a sign that organised hacking is getting cheaper and faster.

4 min read
A corporate employee desktop with ScreenConnect remote-access tool running in the background while antivirus software shows a clean status, attacker command pro
Threat Intelligence

Hackers Are Using a Legitimate Remote-Access Tool to Spy on Companies, and Your Antivirus Won't Notice

The Smoke#Screen campaign tricks employees into installing ScreenConnect, a genuine remote-support program, which then hands criminals full control of the victim's computer while looking completely normal to security software.

4 min read
A water system control center displaying distribution maps of Minnesota and surrounding states with system outages marked, attribution analysis showing Iranian-
Threat Intelligence

Iranian hackers suspected in attack on 30 US water systems

A wave of cyberattacks hit Minnesota water infrastructure on Sunday and Monday, briefly cutting supply to one town. Investigators say the methods match a known Iranian-linked group, though formal attribution has not yet been made.

3 min read
Threat analyst working at a desk surrounded by printouts and digital screens displaying color-coded threat group designations with two-word labels replacing num
Threat Intelligence

Google Gives Hackers New Names, Here Is Why That Matters

Google's threat-intelligence team is replacing number codes with memorable two-word labels for every hacking group it tracks, making it easier for researchers and companies to talk about the same criminals.

3 min read
© 2026 Threat Vectr