Cyber Security News

Hackers Target Hotels With Fake Guest Complaints to Deploy Blockchain-Based RAT Malware

Hackers are targeting hotels with fabricated guest complaints and negative reviews to distribute EtherRAT and TONResolver, two malware families that…

7 hours ago

Critical Splunk Enterprise Vulnerability Lets Unauthenticated Attackers Execute OS Commands

Splunk has addressed a critical vulnerability in Splunk Enterprise that allows unauthenticated attackers to execute operating system commands through the…

8 hours ago

ChainDrop and PolinRider Use Blockchain C2 to Steal Cloud and CI/CD Credentials

Threat actors are increasingly using blockchain networks as resilient command-and-control infrastructure to steal cloud credentials from developer endpoints and CI/CD…

8 hours ago

Attackers Hijack .gh, .sl, and .as Domains to Obtain Unauthorized SSL Certificates

Attackers compromised the infrastructure of third-party country-code top-level domains (ccTLDs) for Ghana (.gh), Sierra Leone (.sl), and American Samoa (.as).…

9 hours ago

12 Best ASPM Platforms Compared (2026): Features & Pricing

Apiiro leads risk-graph depth, ArmorCode aggregation breadth, and the acquisition wave (Dazz into Wiz, Bionic into CrowdStrike, Enso into Snyk)…

9 hours ago

12 Best SCA Tools Compared (2026): Features & Pricing

Snyk is the best developer-platform SCA, Sonatype the repository-firewall powerhouse, and Socket the malicious-package specialist the CVE-scanners aren’t. Twelve options…

9 hours ago

Discord Security Bot Double Counter Hacked, Exposing Data of Millions of Users

The Discord security bot Double Counter experienced a targeted infrastructure breach that compromised personal information linked to millions of accounts.…

9 hours ago

9 Best IAST Tools Compared (2026): Features & Pricing

Contrast Security remains the dedicated IAST anchor, Black Duck’s Seeker the QA-leverage specialist, and Dynatrace/Datadog prove the category’s future is…

9 hours ago

12 Best DAST Tools Compared (2026): Features & Pricing

PortSwigger’s Burp Suite anchors practitioner testing at published prices, Invicti leads proof-based fleet automation, and Bright Security heads the developer-CI…

9 hours ago

U.S. Offers $10 Million Reward for Chinese Hacker Behind Alleged COVID-19 Research Cyberattacks

The U.S. Department of State is offering a reward of up to $10 million for information regarding Zhang Yu, a…

10 hours ago