Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
The Hacker News reports suspected Chinese-speaking hackers are targeting Central Asian governments with OctLurk backdoor malware. The malware enables persistent remote access and data exfiltration from government networks.
A suspected Chinese-speaking threat actor has been targeting government organizations in Central Asia since January 2025 using two new backdoors called OctLurk and SilkLurk. These backdoors are capable of downloading and injecting plugins for various malicious activities including command execution, credential dumping, and remote access.
Dark Reading examines CISA's updated SBOM guidance and questions whether it adequately addresses industry needs. Industry experts debate the practicality of expanded software supply chain requirements.
CISA has issued updated SBOM guidance with several dozen changes to SBOM fields to make them more comprehensive. However, some critics argue that the framework still lacks real risk-management improvements.
CISA has issued updated SBOM guidance with several dozen changes to SBOM fields to make them more comprehensive. However, some critics argue that the framework still lacks real risk-management improvements.
Dark Reading examines CISA's updated SBOM guidance and questions whether it adequately addresses industry needs. Industry experts debate the practicality of expanded software supply chain requirements.