“Cyber warfare is as much about psychological strategy as technical prowess.”
― James Scott
-

China-Linked Amaranth-Dragon Exploits WinRAR Flaw in Espionage Campaigns [email protected] (The Hacker News)
Threat actors affiliated with China have been attributed to a fresh set of cyber espionage campaigns targeting government and law enforcement agencies across Southeast Asia throughout 2025. Check Point Research is tracking the previously undocumented activity cluster under the moniker Amaranth-Dragon, which it said shares links to the APT 41 ecosystem. Targeted countries include Cambodia,Read…
-
Top open source and commercial threat intelligence feeds
Cybersecurity threat intelligence feeds provide critical data on attacks, including IPs, domains and malware hashes, helping teams detect and respond to threats effectively.Read More
-

Orchid Security Introduces Continuous Identity Observability for Enterprise Applications [email protected] (The Hacker News)
An innovative approach to discovering, analyzing, and governing identity usage beyond traditional IAM controls. The Challenge: Identity Lives Outside the Identity Stack Identity and access management tools were built to govern users and directories. Modern enterprises run on applications. Over time, identity logic has moved into application code, APIs, service accounts, and custom authenticationRead More
-

The First 90 Seconds: How Early Decisions Shape Incident Response Investigations [email protected] (The Hacker News)
Many incident response failures do not come from a lack of tools, intelligence, or technical skills. They come from what happens immediately after detection, when pressure is high, and information is incomplete. I have seen IR teams recover from sophisticated intrusions with limited telemetry. I have also seen teams lose control of investigations they should…
-

Microsoft Warns Python Infostealers Target macOS via Fake Ads and Installers [email protected] (The Hacker News)
Microsoft has warned that information-stealing attacks are “rapidly expanding” beyond Windows to target Apple macOS environments by leveraging cross-platform languages like Python and abusing trusted platforms for distribution at scale. The tech giant’s Defender Security Research Team said it observed macOS-targeted infostealer campaigns using social engineering techniques such as ClickFix sinceRead More
-

Eclipse Foundation Mandates Pre-Publish Security Checks for Open VSX Extensions [email protected] (The Hacker News)
The Eclipse Foundation, which maintains the Open VSX Registry, has announced plans to enforce security checks before Microsoft Visual Studio Code (VS Code) extensions are published to the open-source repository to combat supply chain threats. The move marks a shift from a reactive to a proactive approach to ensure that malicious extensions don’t end up…
-

CISA Adds Actively Exploited SolarWinds Web Help Desk RCE to KEV Catalog [email protected] (The Hacker News)
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a critical security flaw impacting SolarWinds Web Help Desk (WHD) to its Known Exploited Vulnerabilities (KEV) catalog, flagging it as actively exploited in attacks. The vulnerability, tracked as CVE-2025-40551 (CVSS score: 9.8), is a untrusted data deserialization vulnerability that could pave the way for…
-

Docker Fixes Critical Ask Gordon AI Flaw Allowing Code Execution via Image Metadata [email protected] (The Hacker News)
Cybersecurity researchers have disclosed details of a now-patched security flaw impacting Ask Gordon, an artificial intelligence (AI) assistant built into Docker Desktop and the Docker Command-Line Interface (CLI), that could be exploited to execute code and exfiltrate sensitive data. The critical vulnerability has been codenamed DockerDash by cybersecurity company Noma Labs. It was addressed byRead…
-
![[Webinar] The Smarter SOC Blueprint: Learn What to Build, Buy, and Automate info@thehackernews.com (The Hacker News)](https://sekuritasit.com/wp-content/uploads/2026/02/soc-pz9iz0.jpg)
[Webinar] The Smarter SOC Blueprint: Learn What to Build, Buy, and Automate [email protected] (The Hacker News)
Most security teams today are buried under tools. Too many dashboards. Too much noise. Not enough real progress. Every vendor promises “complete coverage” or “AI-powered automation,” but inside most SOCs, teams are still overwhelmed, stretched thin, and unsure which tools are truly pulling their weight. The result? Bloated stacks, missed signals, and mounting pressure to…
-

Hackers Exploit Metro4Shell RCE Flaw in React Native CLI npm Package [email protected] (The Hacker News)
Threat actors have been observed exploiting a critical security flaw impacting the Metro Development Server in the popular “@react-native-community/cli” npm package. Cybersecurity company VulnCheck said it first observed exploitation of CVE-2025-11953 (aka Metro4Shell) on December 21, 2025. With a CVSS score of 9.8, the vulnerability allows remote unauthenticated attackers to execute arbitraryRead More
“Security used to be an inconvenience sometimes, but now it’s a necessity all the time.”
― Martina Navratilova
