Chinese Hackers Use HTML Smuggling to Infiltrate European Ministries with PlugX

A Chinese nation-state group has been observed targeting Foreign Affairs ministries and embassies in Europe using HTML smuggling techniques to deliver the PlugX remote access trojan on compromised systems. Cybersecurity firm Check Point said the activity, dubbed SmugX, has been ongoing since at least December 2022, adding it’s part of a broader trend of Chinese […]

Continue reading


GOP-led House panel accuses cybersecurity agency of violating citizens’ civil liberties

The federal government agency charged with protecting critical infrastructure and guarding against cybersecurity threats is accused of “exceeding its statutory authority” in its post-2016-election efforts to monitor domestic social media for evidence of misinformation, disinformation and malinformation, according to a House Republican-led committee’s interim report. The House Judiciary Committee and Subcommittee on Weaponization of the […]

Continue reading


EncroChat Bust Leads to 6,558 Criminals’ Arrests and €900 Million Seizure

Europol on Tuesday announced that the takedown of EncroChat in July 2020 led to 6,558 arrests worldwide and the seizure of €900 million in illicit criminal proceeds. The law enforcement agency said that a subsequent joint investigation initiated by French and Dutch authorities intercepted and analyzed over 115 million conversations that took place over the encrypted messaging platform between […]

Continue reading


5 ways generative AI will help bring greater precision to cybersecurity

Every cybersecurity vendor has a different vision of how generative AI will serve its customers, yet they all share a common direction. Generative AI brings a new focus on data accuracy, precision and real-time insights. DevOps, product engineering and product management are delivering new generative AI-based products in record time, looking to capitalize on the […]

Continue reading


Fake Researcher Profiles Spread Malware through GitHub Repositories as PoC Exploits

At least half of dozen GitHub accounts from fake researchers associated with a fraudulent cybersecurity company have been observed pushing malicious repositories on the code hosting service. All seven repositories, which are still available as of writing, claim to be a proof-of-concept (PoC) exploit for purported zero-day flaws in Discord, Google Chrome, and Microsoft Exchange. […]

Continue reading


NCSC joins partners to issue warning about China state-sponsored cyber activity targeting CNI networks

The UK and agencies in the US, Australia, Canada and New Zealand have issued new advice today (Wednesday) to help organisations detect China state-sponsored activity being carried out against critical national infrastructure networks. In the new joint advisory the National Cyber Security Centre – a part of GCHQ – alongside international partners highlight how recent […]

Continue reading


ChatGPT is about to revolutionize cybersecurity

Unless you purposely avoid social media or the internet completely, you’ve likely heard about a new AI model called ChatGPT, which is currently open to the public for testing. This allows cybersecurity professionals like me to see how it might be useful to our industry. The widely available use of machine learning/artificial intelligence (ML/AI) for cybersecurity practitioners is relatively […]

Continue reading