Analysis of recent high-severity vulnerabilities in GitLab and Atlassian products
Both GitLab and Atlassian have recently released critical security patches addressing a series of high-severity vulnerabilities across their core product lines. This coordinated disclosure and remediation effort underscores...
Adidas customer data breaches in Turkey and Korea
Recently, Adidas disclosed two separate data breaches affecting its customer bases in Turkey and Korea. These incidents underscore persistent challenges global brands face in securing personal data across...
Dero miner container infection campaign
The recent campaign uncovered by Kaspersky, involving the Dero cryptocurrency miner spreading through containerized Linux environments by exploiting exposed Docker APIs, represents a sophisticated and highly automated threat...
Unmasking FrigidStealer: advanced macOS malware analysis and detection
FrigidStealer represents a sophisticated evolution in macOS-targeted malware, combining social engineering with technical evasion tactics to compromise sensitive data. First observed in January 2025, this information stealer masquerades...
Alabama man sentenced to 14 months in SEC X account hack
Eric Council Jr., a 26-year-old from Alabama, has been sentenced to 14 months in prison for his role in the January 2024 hack of the U.S. Securities and...
Katz Stealer: infostealers targets 78+ Chromium and Gecko-based browsers
A newly uncovered information stealer, dubbed Katz Stealer, has rapidly emerged as a formidable threat to both enterprise and individual users by targeting an unprecedented range of over...
Trojanized KeePass campaign: novel loader and credential theft in ransomware operations
A recent investigation by WithSecure’s Threat Intelligence team has uncovered a sophisticated malware campaign leveraging a trojanized version of the open-source password manager KeePass. This operation, active for...
China-Linked APTs exploit critical SAP NetWeaver vulnerability to breach over 580 systems globally
In a significant escalation of cyber-espionage activities, multiple China-affiliated advanced persistent threat (APT) groups have been found actively exploiting a recently disclosed critical vulnerability in SAP NetWeaver, identified...