top of page


Enterprise Security Tech
A cybersecurity resource for CxOs
Search


China-Linked Hackers Target University Physics Departments in Roundcube Espionage Campaign
A previously unknown espionage group believed to be operating on behalf of China is targeting physics and engineering departments at universities in the United States and Canada, with a particular focus on research tied to national security, astrophysics, and particle physics. Security researchers at Proofpoint are tracking the activity as UNK_MassTraction. The group is exploiting a chain of vulnerabilities in Roundcube, a widely used open-source webmail platform, to steal cr
Jul 7


CrySome RAT Campaign Turns a Fake Freight Document Into a Full Remote Access Breach
A logistics-themed phishing campaign recently pushed the CrySome remote access trojan through a multi-stage Windows infection chain, showing how attackers are blending believable business lures, native system tools, open-source security-disabling utilities, and modular malware to gain persistent control of victim machines. Researchers with LevelBlue’s SpiderLabs said the incident began with a targeted spear-phishing email disguised as a freight rate confirmation. The message
Jul 6


Russian Hackers Bypass Signal and WhatsApp Encryption by Targeting Backup Keys
Russian military-linked hackers are intensifying phishing campaigns against Signal and WhatsApp users, not by breaking encryption, but by convincing targets to hand over account recovery details that can unlock private messages and group chats. A new alert from the FBI and the U.S. Cybersecurity and Infrastructure Security Agency warns that Russian intelligence services are posing as automated support bots for commercial messaging apps. The campaigns are aimed at high-value t
Jun 29


OpenAI Expands GPT-5.5-Cyber as AI Pushes Vulnerability Patching Into a New Era
OpenAI is expanding access to an improved version of GPT-5.5-Cyber, giving trusted defenders a more powerful AI model for finding, validating, and helping patch software vulnerabilities. The release is part of OpenAI’s Daybreak initiative and comes as AI is rapidly changing vulnerability research. The company says GPT-5.5-Cyber can analyze large codebases, identify security issues, validate findings in controlled environments, and generate patches for human review. OpenAI is
Jun 24


NCC Group Warns Ransomware, State Hackers, and AI Fraud Tools Are Colliding
Ransomware activity in May 2026 remained stuck at historically high levels, even as attacks dipped slightly month over month, according to a new cyber threat intelligence report from NCC Group and Fox-IT. The report recorded 749 ransomware victim listings in May, a 4 percent decline from the previous month but still part of an elevated 2026 baseline. Industrial organizations were hit hardest, accounting for 29 percent of ransomware attacks. Qilin remained the most active rans
Jun 24


Klue Breach Exposes Salesforce Data Across Cybersecurity Vendors as Icarus Claims Attack
A breach at Klue has turned a market intelligence platform into the latest pressure point in a widening wave of SaaS supply chain attacks, after hackers used a compromised legacy credential to access customer-connected cloud environments and steal data from some of the cybersecurity industry’s most recognizable names. The Vancouver-based company, which provides competitive intelligence and market research tools, disclosed that attackers accessed its systems in June and obtain
Jun 24
bottom of page