Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
At Black Hat USA 2026, Microsoft Security highlighted the evolving threat landscape where attackers increasingly exploit trust in software, services, and AI systems. Threat actors are targeting trusted tools, developer workflows, and supply chains, such as npm (Node package manager), to scale their attacks.
In June 2025, LevelBlue SpiderLabs published Tracing Blind Eagle to Proton66, in which we assessed with high confidence that Blind...
Blind Eagle (APT-C-36, APT-Q-98, TAG-144, AguilaCiega), a threat actor targeting Latin America, continues to evolve its toolkit and infrastructure. In June 2025, LevelBlue SpiderLabs linked the group to Russian bulletproof hosting provider Proton66, where it migrated part of its VBScript delivery infrastructure.
This article updates on the Blind Eagle threat actor's ongoing activities. The group has maintained its use of Russian bulletproof hosting and continues to evolve its toolkit.
The White House launched Gold Eagle, a centralized clearinghouse initiative designed to improve coordination and response to security vulnerabilities across government and critical infrastructure. By providing a single point for vulnerability reporting, prioritization, and response coordination, Gold Eagle aims to close the gap between vulnerability discovery and remediation that has long been a challenge in cybersecurity.
Google Cloud is betting that agentic defense — AI-driven autonomous security systems — can outpace attackers by incorporating capabilities from its Wiz acquisition into an agentic defense platform. The platform uses AI agents to continuously monitor cloud environments, detect misconfigurations, identify threats, and autonomously deploy countermeasures faster than human teams could respond.