SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 78

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Evasive Panda APT poisons DNS requests to deliver MgBot   Spearphishing Campaign Abuses npm Registry to Target U.S. and Allied Manufacturing and Healthcare Organizations   EmEditor Supply Chain Incident Details Disclosed: Distribution of Information-Stealing Malware Sweeps […]

January 4, 2026
Read More >>

Security Affairs newsletter Round 557 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. French authorities investigate AI ‘undressing’ deepfakes on X Thousands of ColdFusion exploit attempts spotted during Christmas […]

January 4, 2026
Read More >>

President Trump blocks $2.9M Emcore chip sale over security concerns

Trump ordered the divestment of a $2.9M chip deal, citing U.S. national security risks if HieFo retained control of Emcore ’s technology. President Trump ordered the divestment of a $2.9 million chips deal, citing national security risks tied to HieFo Corp.’s control of Emcore ’s chip technology. HieFo (short for High Efficiency Photonics) is a […]

January 4, 2026
Read More >>

End of darkforums?

What happened to darkforums? They got down by law enforcment? 502 Bad Gateway https://preview.redd.it/g6leqxl2wabg1.png?width=433&format=png&auto=webp&s=3f3771ba8f48ad1f936a5206e5e26909d62701a6 submitted by /u/locarnos …

January 4, 2026
Read More >>

What is your hack related EDC?

Apart from dual booting Kali on my laptop i carry:

Sandisk duo flash drive on my keyring with “pendrive linux” multiboot and a ton of ISOs.

A jack knife (set of lockpicks -legal in uk).

I played with the Flipper device but it’s a bit limited nowadays so it stays at home most of the time.

VPN and gps spoofer on my android. (Do you know any other interesting apps?).

submitted by /u/Matt_Bigmonster
[link] [comments]

January 4, 2026
Read More >>

HardBit 4.0 Ransomware Evolution

The HardBit ransomware family’s fourth iteration exhibits elevated operational security with mandatory operator-supplied runtime authorization, blurring forensic attribution. Its dual interface models, leveraging legacy infection deployment alongside c…

January 4, 2026
Read More >>

Two U.S. cybersecurity professionals plead guilty in BlackCat/Alphv ransomware case

Two U.S. cybersecurity professionals pleaded guilty to charges tied to their roles in BlackCat/Alphv ransomware attacks. The U.S. cybersecurity professionals Ryan Goldberg and Kevin Martin pleaded guilty to charges tied to their roles in BlackCat/Alphv ransomware attacks that occurred in 2023. Court records show Ryan Goldberg, Kevin Martin, and a co-conspirator deployed ALPHV BlackCat ransomware […]

January 3, 2026
Read More >>

Iceman at SaintCon – World record RFID relay attack!

My talk at SaintCon 2025 was just released, I break down RFID security vulnerabilities, covering HID’s Secure Identity Object (SIO) technology and how relay attacks actually work.

But here’s what made this different – I didn’t just explain the theory. I attempted a world record relay attack across the globe using a HID SEOS card, demonstrating in real-time why physical security is far more fragile than most organizations realize.

The presentation challenges fundamental assumptions about RFID and proximity card security. Whether you’re defending these systems or want to understand the real threats, this is the kind of technical breakdown that changes how you think about physical security.

Check it out: https://www.youtube.com/watch?v=psit0UBhV28

Subscribe to my channel when you at it, https://www.youtube.com/@iceman1001/

submitted by /u/iceman2001
[link] [comments]

January 2, 2026
Read More >>

Covenant Health data breach after ransomware attack impacted over 478,000 people

Covenant Health suffered a ransomware attack by the Qilin group in May 2025, compromising data of over 478,000 individuals. Covenant Health, Inc., based in Andover, Massachusetts, is a healthcare organization that provides medical services and patient care. Covenant Health operates hospitals, clinics, or related healthcare facilities in multiple states, including Massachusetts, Maine, New Hampshire, Pennsylvania, […]

January 2, 2026
Read More >>

Phishing campaign abuses Google Cloud Application to impersonate legitimate Google emails

Researchers uncovered a phishing campaign abusing Google Cloud Application Integration to send emails posing as legitimate Google messages. Check Point researchers have revealed a phishing campaign that abuses Google Cloud Application Integration to send emails impersonating legitimate Google messages. The attack uses layered redirection with trusted cloud services, user validation checks, and brand impersonation to […]

January 2, 2026
Read More >>