
Nation state spies are using AI to create fake identities and realistic job applications, infiltrating organizations to steal intelligence.
Multiple scams targeting Celine Dion fans have already surfaced – it looks like this scam will go on (and on).
No, LastPass’ security policies have not been updated, and neither have Bitwarden’s – it’s a scam.
Russian hackers are trying to sneak infostealers onto people’s devices to grab passwords, crypto, and more.
Almost a dozen vulnerable UEFI shim bootloaders discovered and revoked.
Microsoft shipped three times more fixes than usual in its latest Patch Tuesday update.

‘Gold Eagle’ scheme looks to centralize vulnerability identification and remediation for maximum efficiency.
Visited domains were being exfiltrated to a third-party server, seemingly under a Chinese actor’s control.
Greater visibility, better detection, and stronger governance over OAuth-connected applications should mitigate ShinyHunters attacks.
Russians are targeting misconfigured routers running in critical infrastructure firms.