A state-sponsored espionage campaign is targeting foreign embassies in South Korea to deploy XenoRAT malware from malicious GitHub repositories. According to Trellix researchers, the campaign has been running since March and is ongoing, having launched at least 19 spearphishing attacks against high-value targets. Although infrastructure and techniques match the pllaybook of North Korean actor Kimsuky (APT43), there are signs that
U.S. seizes $2.8 million in crypto from Zeppelin ransomware operator
The U.S. Department of Justice (DoJ) announced the seizure of more than $2.8 million in cryptocurrency from suspected ransomware operator Ianis Aleksandrovich Antropenko. Antropenko, indicted in Texas for computer fraud and money laundering, was linked to Zeppelin ransomware, a now-defunct extortion operation that ran between 2019 and 2022. Apart from the digital asset seizure, the authorities
Researcher to release exploit for full auth bypass on FortiWeb
A security researcher has released a partial proof of concept exploit for a vulnerability in the FortiWeb web application firewall that allows a remote attacker to bypass authentication. The flaw was reported responsibly to Fortinet and is now tracked as CVE-2025-52970. Fortinet released a fix on August 12. Security researcher Aviv Y named the vulnerability FortMajeure and describes
US Army readies to release new missile defense strategy soon
The U.S. Army is about three months away from releasing its air and missile defense strategy for 2040, officials said. Here, 10th Army Air and Missile Defense Command soldiers stand next to a Patriot missile battery during a NATO multinational exercise in Vilnius, Lithuania. (Mindaugas Kulbis/AP) HUNTSVILLE, Ala. — The U.S. Army is about three
Colt Telecom attack claimed by WarLock ransomware, data up for sale
UK-based telecommunications company Colt Technology Services is dealing with a cyberattack that has caused a multi-day outage of some of the company’s operations, including hosting and porting services, Colt Online, and Voice API platforms. The British telecommunications and network services provider disclosed that the attack started on August 12 and the disruption continues as its IT staff
Over $300 million in cybercrime crypto seized in anti-fraud effort
More than $300 million worth of cryptocurrency linked to cybercrime and fraud schemes has been frozen due to two separate initiatives involving law enforcement and private companies. One initiative is the T3+ Global Collaborator Program launched by the T3 Financial Crime Unit (T3 FCU), a joint effort deployed almost a year ago by intelligence firm TRM
Army poised to expand role in homeland defense, commander says
Alaska National Guard members operate the ground-based midcourse defense portion of the Ballistic Missile Defense System at Fort Greely, Alaska. (Sgt. Jack W. Carlson III/Alaska Army National Guard) HUNTSVILLE, Ala. — The U.S. Army will soon assume a broader mission in defending the U.S. homeland, expanding from a focus on countering intercontinental ballistic missiles to
Fortinet warns of FortiSIEM pre-auth RCE flaw with exploit in the wild
Fortinet is warning about a remote unauthenticated command injection flaw in FortiSIEM that has in-the-wild exploit code, making it critical for admins to apply the latest security updates. FortiSIEM is a central security monitoring and analytics system used for logging, network telemetry, and security incident alerts, serving as an integral part of security operation centers, where
Hackers leak Allianz Life data stolen in Salesforce attacks
Hackers have released stolen data belonging to US insurance giant Allianz Life, exposing 2.8 million records with sensitive information on business partners and customers in ongoing Salesforce data theft attacks. Last month, Allianz Life disclosed that it suffered a data breach when the personal information for the “majority” of its 1.4 million customers was stolen from
Michigan bids to become America’s arsenal of rapid defense innovation
Instead of welding tank treads by the thousands, the Detroit Arsenal in Warren, Michigan, is now 3D printing Patriot missile parts in weeks, advancing robotics and strapping virtual reality headsets on Army leadership to simulate how future weapons are being developed. In World War II, Detroit, Michigan, became the “Arsenal of Democracy,” churning out tanks