Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Hewlett Packard Enterprise (HPE) has patched a critical vulnerability in the ArubaOS-CX network operating system that could lead to remote code execution.
The worst part is how normal these attacks look. A call from IT.
Welcome to this week's edition of the Threat Source newsletter. Our goal is to get accurate threat intelligence to our audience as quickly as possible, with all the context you need to ask the right questions of your own environment: How at risk are we from this threat?
The recent AI warning letter is right about the "window," but it omits naming who is coming through it or, critically, who will close it.
A malicious advertising campaign promoting a fake free TV-streaming service reached roughly 570,000 Meta users. The researchers who discovered the campaign found that its streaming-themed ads were aimed at Spanish-speaking users, with most observed victims located in Spain.
In this article What is ASCII smuggling? Writing a practical ASCII-smuggling signature What we observed: ASCII smuggling repurposed for phishing What is known and what is new Is there a detection gap?