How Attackers Spent July Turning Microsoft, Zoom, and Government Sites Against Their Own Users
Threat intelligence from ANY.RUN shows attackers spent July 2026 weaponizing the everyday trust built into Microsoft logins, Zoom event pages, and government portals across the US, Europe, and...
Cybersecurity Week in Review: AI Model Redeployment, a Linux Root Zero-Day, and Hundreds of Chrome Patches
This week: Anthropic's Claude Mythos 5 returns to critical infrastructure use, a near-100%-reliable Linux root zero-day emerges, Chrome patches 382 bugs, and Scattered Spider notches another extradition.
Dark Web Brokers Flood Forums With Recycled Breach Data Disguised as Fresh Corporate Leaks
Cybercriminals operating in Chinese-language dark web ecosystems are repackaging data from old breaches and selling it as fresh corporate intelligence, according to new research from Group-IB. The scam...
Google’s “Agentic SOC” takes a concrete step: alert triage and investigation agent
The hype around AI-driven security operations has become almost deafening, but often lacks the granular detail necessary for serious assessment. Google’s public preview of the Alert Triage and...
Russia-Aligned actors intensify targeting of Signal Messenger
Recent reporting from Google’s Threat Intelligence Group (GTIG) highlights a surge in activity from Russian state-aligned threat actors targeting Signal Messenger accounts. This campaign, likely driven by wartime...