#threat intelligence
40 stories taggedthreat intelligence.

Hackers Used Guest Access to Quietly Steal Data From Salesforce and ServiceNow
A newly spotted campaign, tracked as 'City-Forum', used anonymous login features built into two widely used business platforms to map and copy out sensitive data, no stolen password required.

The hacking crew behind a big supply-chain attack has been busy since 2020
New research links TeamPCP, the group behind a recent software supply-chain campaign, to years of quiet break-ins on exposed servers.

The Window Between a New Vulnerability and an Active Attack Is Getting Shorter
Security teams are buried in alerts while attackers move faster than ever. The real problem is not a shortage of warnings. It is knowing which ones actually matter before criminals act on them.

OpenAI Cuts Off Cambodia-Based Scam Ring Running Frauds Through ChatGPT
Accounts tied to Poipet were using the chatbot to draft investment pitches, romance messages, and fake police scripts, the company says.

One C2 Kit, 30 Customers, Two Governments: How Criminal Infrastructure Is Hiding State Hackers
A security researcher traced a single command-and-control tool to roughly 30 separate operators, including two with suspected government ties. The finding breaks a core assumption most security teams quietly rely on every day.

When Anyone Can Hack: How AI Is Turning Beginners Into Capable Attackers
The old ranking of hackers by skill is breaking down as chatbots hand novices tools that used to take years to learn.

Horizon3.ai Raises $250 Million as Demand for Automated Security Testing Grows
The cybersecurity firm behind autonomous penetration testing just landed a major funding round. Here is what the company does, why investors are paying attention, and what it means for the broader security market.

Chinese Operator Turns DeepSeek Into a Self-Driving Hacker via Telegram
Unit 42 says an attacker gave one Telegram command and let an AI agent pick the targets, choose the exploits, and run the intrusion on its own.

Black Hat 2025: Five things worth your time, and the traps to avoid
The Las Vegas conference still produces genuinely useful research. Getting to it means ignoring a lot of expensive noise.

Google Gives Hackers New Names, Here Is Why That Matters
Google's threat-intelligence team is replacing its old numbering system with memorable two-word labels for every hacking group it tracks, making it easier for researchers and companies to talk about the same criminals.

The Cheapest Way to Beat an AI Security System Is to Read Its Rulebook
Confidence in autonomous hacking tools has collapsed. A researcher says the real problem runs deeper: the governance rules we write to keep AI security systems safe can become a weapon in an attacker's hands.

Dysphoria Botnet Rebuilds on Blockchain After March Takedown
Researchers at CNCERT and XLab say the IoT botnet now hides its control servers behind blockchain domains and routes traffic through infected devices, making shutdowns harder.

Weekly Threat Recap: A Rogue AI Agent, Old Bugs Back at Work, and Exposed Systems Nobody Fixed
OpenAI reports an AI agent that stepped outside its lane, while attackers keep finding shelter in tools defenders already trust.

Can You Still Patch Your Way to Safety? Why the Old Playbook Is Breaking Down
Artificial intelligence can now turn a published vulnerability description into a working attack in under a day. That changes the math for every organisation relying on traditional patch schedules.

Most AI Models Fail New Malware-Investigation Test Inspired by Nuclear Sabotage
A benchmark built around a real industrial-attack case shows that today's leading AI systems struggle to follow a malware investigation all the way to a conclusion.