Russian-backed hacker group BlueDelta, also known as APT28, Fancy Bear, and Forest Blizzard, has used a small Windows backdoor called HOOKEDGE in spying activities aimed at government, diplomatic, and defense-making groups in Europe. The team at PolySwarm recorded an action that aimed at groups in Romania, Spain, and Turkey from late …
Read More »Claude, DeepSeek, and Qwen AI agents combinedly used to hit gov.t across Asia
Chinese-speaking hackers have added Claude, Qwen, and DeepSeek to their hacking system to automate cyberattacks on governments and other targets in Asia, according to a report from the threat intelligence company Hunt.io. Hunt.io says this operation is different from the campaign seen in July, where a Chinese-speaking operator used Claude …
Read More »India: C-DOT Launches 14 Local Quantum-Safe Technologies
India is making its communication systems safer and stronger by launching 14 local quantum products. These products were made by the Centre for Development of Telematics (C-DOT), which is the research and development part of the Department of Telecommunications (DoT) in the Ministry of Communications. The products were shown at …
Read More »
Gartner
70% of SOCs Will Pilot AI Agents: Only 15% Will See Results
The market for AI SOC agents is early, crowded, and full of claims that haven’t been tested in production. This Gartner research arms security operations leaders with a list of specific questions to ask vendors across seven critical areas before committing to a solution. Key criteria and questions: Seven evaluation categories …
Read More »Singapore Approves 200MW Data-Centre Expansion Under Second Call
Singapore has picked four data-centre plans for a total of 200MW of power in its second Data Centre Call for Application (DC-CFA2). This helps improve the country’s digital infrastructure and meet the rising need for data-centre services. The selection was announced by the Infocomm Media Development Authority (IMDA) and the …
Read More »NIST to Modernize NVDÂ in the Age of Artificial Intelligence
National Institute of Standards and Technology (NIST) demands feedback from industry and the government on how to update the National Vulnerability Database (NVD) since artificial intelligence is changing how groups find, evaluate, and fix cybersecurity problems. NIST has asked for information (RFI) about the future of the NVD. They want …
Read More »Around 800 Malicious npm Packages Distribute Cross-Platform RAT and Infostealer
A group of almost 800 harmful packages was added to the npm registry in a new effort to spread malware that works on Windows, Mac, and Linux. “These packages appear to use AI slop squatted, or randomly generated typo-squatting package names, but all of them deliver a powerful RAT and infostealer …
Read More »OWASP Unveils GenAI LLM Top 10 2026 For Modern AI APPS
The Open Web Application Security Project (OWASP) has published the Top 10 for LLM Applications 2026. This guide focuses on the main security risks in current AI apps and self-driving agents. The new version sets a clear guideline for developers, architects, and CISOs working with fast-changing enterprise GenAI systems, based on …
Read More »Thousands of data centers are at risk of compromise due to a 22-year-old flaw
Thousands of data centers are in danger because of a 22-year-old problem in Baseboard Management Controller (BMC) processors, says the security company Lava. BMCs are found in many server platforms. They allow server management even if the operating system is not working. They are usually very important control points in a …
Read More »“PentesterFlow” AI Automation Tool for Penetration Testers and Bug Hunters
PentesterFlow is a new open-source AI tool for command lines. It is made for penetration testers and bug bounty hunters. It helps automate the work from finding problems to reporting them, while still allowing analysts to oversee the process. Most AI security tools have fake findings, weak context memory, and …
Read More »
InfoSecBulletin Cybersecurity for mankind