CATEGORIES
Media
DATE
Month
TAGS
- News & Updates
OpenAI disclosed this week what it called an unprecedented cyber incident. An autonomous agent, built on the newly released GPT 5.6 Sol and an unreleased more capable model, broke out of a controlled...
- News & Updates
Security researchers have identified a rapidly expanding distributed denial of service (DDoS) botnet dubbed Dysphoria, which has compromised more than 200,000 internet connected devices worldwide....
- News & Updates
Microsoft's July 2026 Patch Tuesday release, published on July 14, set a new record for the largest security update in the company's history, addressing over 600 vulnerabilities across Windows,...
- News & Updates
Global professional services firm Ernst & Young (EY) disclosed a cybersecurity incident after attackers compromised a third party IT support platform used by the company, potentially exposing...
- News & Updates
Microsoft released its July 2026 Patch Tuesday security updates, marking the largest vulnerability remediation effort in the company's history. The release addresses 570 vulnerabilities across...
- News & Updates
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that threat actors are actively exploiting CVE-2026-45659, a high severity remote code execution vulnerability affecting on...
- Technology & Solutions
Security researchers disclosed what is believed to be the first documented ransomware operation conducted almost entirely by an autonomous AI agent, tracked as JADEPUFFER. According to the...
- News & Updates
Researchers have uncovered new cyber espionage campaigns conducted by the China-aligned threat group Mustang Panda, targeting Indian government agencies and the hydropower sector. The attackers...
- News & Updates
Researchers have confirmed active exploitation of CVE-2026-46817, a critical vulnerability affecting Oracle E-Business Suite's Oracle Payments File Transmission component. The flaw carries a CVSS...
- News & Updates
Researchers have released new details on the exploitation of CVE-2026-20245, a high-severity vulnerability affecting Cisco Catalyst SD-WAN Manager that was actively exploited as a zero-day at least...
- News & Updates
Microsoft confirmed it is developing a security update for a newly disclosed zero-day vulnerability affecting Microsoft Defender, tracked as CVE-2026-50656 and publicly referred to as "RoguePlanet."...
- News & Updates
Security researchers have identified a large-scale credential harvesting campaign dubbed "FortiBleed," which exposed authentication data associated with approximately 73,900 Fortinet and FortiGate...
- News & Updates
Microsoft's June 2026 Patch Tuesday release set a new record as the largest security update inthe company's history, with fixes for approximately 200 vulnerabilities across Windows,...
- News & Updates
In recent weeks, supply chain attacks have become a growing concern, with multiple major repositories suffering from fake updates pushed by malicious actors to spread malware. In particular, recent...
- News & Updates
A recently disclosed security incident exposed significant weaknesses in AI-driven account recovery systems after attackers manipulated an automated support assistant to seize control of Instagram...
- News & Updates
The cybercriminal ecosystem is undergoing a strategic transition away from conventional ransomware operations toward pure extortion campaigns centered on data theft and disclosure threats. Rather...
- News & Updates
Many claims have been made about the effectiveness of Anthropic’s Mythos AI model in the cybersecurity sector both by Anthropic itself and by third parties. Its ability to identify vulnerabilities in...
- Media, Press
In this article, published by GARP Risk Intelligence, our CEO Jeremy Samide discusses how cyber operations are being planned as integral parts of broader combat campaigns in the context of the...
- Technology & Solutions
A new discovery from the Google Threat Intelligence Group (GTIG) has confirmed a fear that many in the cybersecurity world have been concerned about since the rise of effective LLM-based AI coding...
- News & Updates
While bug bounties remain an essential component of cybersecurity for large software-driven enterprises like Google, shifts in the nature of security research have greatly reshaped the way bug...
- News & Updates
In these days of technologically advanced and network-connected transportation devices, it has become increasingly common for vulnerabilities to exist in the systems of cars that can pose a security...
- News & Updates
In recent weeks, there has been much concern over the impact of Anthropic’s latest AI model, Claude Mythos, and its ability to rapidly uncover previously unidentified vulnerabilities in code...
- News & Updates
U.S. critical infrastructure operators are facing an active and ongoing cyber threat campaign attributed to Iranian state-aligned actors. Recent investigations indicate that thousands of...
- Press
This article explores the implications of cyber attacks linked to the Iran war and what they mean for US and UK businesses....
- News & Updates
A new wave of cyberattacks has recently been detected by investigators exploiting existing infrastructure to deliver malicious content. This is not an unknown phenomenon, of course, but the new...
- Technology & Solutions
Leak Bazaar is an emerging cybercriminal platform that represents a significant evolution in how stolen corporate data is monetized. First advertised in March 2026 on a Russian-speaking cybercrime...
- Press
Blackwired and ARMIS International Partner to Reinforce Resilience and Mitigate Nation State Attacks
Veteran-led consultancy and pre-emptive 3D threat intelligence platform bring actionable cyber intelligence and protection to public and private sectors 25th March 2026, London - Blackwired, a global...
- Industry & insights
There has been growing pressure in both the public and private sectors to adopt AI-based tools in workflows, and the Security Operations Center (SOC) has been no exception. Enterprise security teams...
- Press
Despite financial institutions having invested significantly in protecting their own organisations from attacks, more recent incidents have clearly demonstrated that risks have significantly shifted...
- Press
Partnership expands access to ThirdWatch’s AI-driven threat intelligence and 3D threat visualisation platform March 3rd, 2026, Tokyo, Singapore and London: Blackwired, a global cybersecurity...
- Press
Blackwired is a professional company that monitors and analyzes the activities of state-level attackers and high-level cybercriminals in real time. ThirdWatch is a next-generation platform that...
- Press
With figures showing a stagnating number of women entering the cybersecurity industry, we ask: why are there so few women in cybersecurity and what needs to be done to change this?...
- News & Updates
The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) has imposed anctions on Matrix LLC (also known as Operation Zero), its owner Sergey Sergeyevich Zelenyuk, and several associated...
- Press
The danger of shadow artificial intelligence (AI), the unauthorised use of AI by staff without the oversight of the IT or security department, has risen exponentially with the advent of...
- Industry & insights
Threat actors are already using AI to accelerate malware development, generate phishing content, automate scripting, and assist decision-making during intrusions. Researchers from Check Point...
- Business & Strategy
The United States Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive (BOD) 26-02, titled Mitigating Risk From End-of-Support Edge Devices, to address...
- Technology & Solutions
Despite all the new forms of cyberattack, all the complex vulnerabilities, and all the elaborate social engineering techniques leveraged by threat actors, the perennial bugbear of the security...
- Education & Resources
Over the past decade, online fraud has undergone multiple significant structural transformations. What originally began as the acts of individual criminals has evolved into a large, industrialized...
- Industry & insights
Experts studying the recent military operation in Venezuela resulting in the capture of President Nicolas Maduro have concluded that cyberattack operations may have been an important part of the...
- News & Updates
On December 27–28, 2025, Ubisoft’s popular online shooter TomClancy’s Rainbow Six Siege experienced a major security breach that disrupted game operations and exposed serious vulnerabilities in its...
- Technology & Solutions
Since its disclosure earlier this month, CVE-2025-55182, a vulnerability in React Server Components now commonly referred to as React2Shell, has become an extremely common attack vector. Multiple...
- Industry & insights
A recent blog post published by the UK’s National Cyber Security Centre (NCSC) has exhibited a more profound skepticism about AI security than many security researchers have publicly given credence...
- News & Updates
For many people in the professional world, digital calendars are an essential time-management tool. In many cases, to properly synchronize, multiple people or organizations will share an external...
- News & Updates
Multiple malicious actors are actively using commercial spyware and remote access trojans (RATs) to target users of secure mobile messaging apps, most notably Signal and WhatsApp. Rather than...
- Business & Strategy
With each passing year, cyber threat actors become more sophisticated, more innovative in their attack techniques, and more determined to obtain their ill-gotten gains regardless of law enforcement....
- Industry & insights
Cloud security provider Zscaler has published its annual Mobile, IoT, and OT threat report, compiling findings from a year of monitoring these peripheral devices. Each year, mobile devices grow to...
- News & Updates
It is well known by now that cybercrime can have real world consequences leading to financial losses, but those losses usually come in the form of stolen data rather than more concrete theft....
- Industry & insights
Video games may seem of small importance to the business world at large, but the industry is growing and it can have an outsize effect on business affairs, particularly when it comes to security. The...
- Culture & Commentary
OpenAI has now disrupted and reported over 40 networks that violated usage policies ranging from covert influence operations to scams and malicious cyber activity and provided a set of case studies...
- Education & Resources
New discoveries from network defenders have once again highlighted the ways in which everyday AI agents can be leveraged by threat actors to not just become attack targets, but active threat...
- Education & Resources
2025 has been one of the worst years to be a cryptocurrency investor as far as security is concerned. The first half of 2025 saw more than 3 billion USD worth of crypto assets appropriated by threat...
- Press
Cyber security experts have warned the ongoing cyber-attack on several of Europe’s biggest airports highlights not only the threats faced by businesses but the fears that many are simply “sleeping at...
- Culture & Commentary
Scattered Spider, one of the most notorious ransomware groups of the present era, surprised the cybercrime community this week with the announcement that it was shutting down its operations. In an...
- News & Updates
AI agents have been a frequent subject of discussion on these pages. Many users are delighted at the prospect of an AI assistant to automate work for them, heedless of the potential security dangers....
- Education & Resources
A novel ransomware prototype called PromptLock, first reported publicly in late August 2025 can be described as the first known AI-powered ransomware, although the strain is a proof-of-concept rather...
- Industry & insights
In the last year, cybersecurity researchers have called significant attention to the cyberespionage group tracked as Silk Typhoon, also known as Murky Panda and as HAFNIUM. The group has achieved...
- News & Updates
One of the key tools that helps users distinguish between genuine messages and phishing attacks, especially through email, is the ability to distinguish between real government accounts and malicious...
- Education & Resources
For better or worse, Agentic AI systems, meaning programs that utilize large language models to interpret natural language instructions and perform automated tasks, have steadily increased their...
- Business & Strategy
Open-source software is the backbone of the digital ecosystem. Benevolent programmers who develop valuable tools and then share those tools with others are some of the most valuable contributors to...
- News & Updates
Tools based on large language models, colloquially termed AI, have become an important part of the workflow of many individuals and enterprises in the tech sector. One such area where enthusiasts...
- Industry & insights
Firmware is the foundation of nearly all activity performed on computers, whether locally or over the cloud. If the firmware computers use presents security flaws, then any security precautions taken...
- News & Updates
Google Gemini for Workspace is an automation tool that allows Google's Gemini LLM to interact directly with various workplace tasks, including user inboxes. Because Gemini is a Google product being...
- Industry & insights
The ClickFix attack tactic represents something of an anomaly among social engineering methods. To some extent or another, all social engineering tactics depend on user ignorance, but perhaps none...
- Education & Resources
It is a truism among security personnel that the weakest link in any cybersecurity strategy is always the human element. However, a report from browser cybersecurity firm SquareX has put forward the...
- News & Updates
This past week, tensions between the United States and Iran have escalated into full scale conflict as the United States and Israel conducted air strikes against Iran's nuclear testing facilities. As...
- Education & Resources
At Blackwired, we have repeatedly stressed the dangers faced by network edge devices, including routers, firewalls, VPN gateways, IoT devices, internet-facing servers, and industrial operational...
- News & Updates
In cybersecurity, we tend to classify threat actors along strict boundaries. One such boundary is that between politically motivated hacktivists and financially motivated cybercriminals. In...
- Education & Resources
Investigators studying common internet browsers looking for security flaws have uncovered a new potential weapon in the arsenal of phishing-based threat actors that is especially dangerous because it...
- Technology & Solutions
Passwords are the first line of defense against threat actors, and as the years have passed, it has become increasingly clear that they are a rather shoddy and failure-prone line of defense. Although...
- Education & Resources
Hackers often look for new ways to deliver their attacks, especially in the sector of phishing. Most conventional phishing pages are hosted on a server with an IP address somewhere, and once the...
- News & Updates
AI agents are growing increasingly effective at operating within public digital space, and perhaps no one example demonstrates this as well as the Claude chatbot, created by the company Anthropic....
- Industry & insights
The ransomware industry is currently in a state of severe flux. As law enforcement has taken a more proactive role in shutting ransomware operations down and security personnel have improved their...
- Education & Resources
Since 2022, prompt injection, a vulnerability where malicious instructions override AI system behavior, has plagued large language models (LLMs). No reliable solution existed until Google DeepMind...
- Technology & Solutions
A new evolution in the realm of phishing is taking the precision tactics of spear-phishing to new heights. Email-based phishing attacks generally have two major stumbling blocks that can reduce their...
- Business & Strategy
Secure Sockets Layer or (SSL) plays a critical role in configurations within organizational cybersecurity, these misconfigurations can amplify an external attack surface thus adding to an...
- News & Updates
Business Email Compromise (BEC) is one of the most common forms of cyberattack targeting the modern organization. At its most basic level, the technique is simply one of impersonation, attempting to...
- Technology & Solutions
Generative AI has provided great benefits to a number of industries, however, as we have discussed in previous commentaries, AI agents come with security risks. Threat actors can potentially induce...
- Industry & insights
Since its debut in January, the large language model (colloquially referred to as an AI) DeepSeek-R1 has been a sensation, providing the same utility as OpenAI's o1 model at a fraction of the cost in...
- Culture & Commentary
When the subject of online security on online marketplaces comes up, it usually focused on risk towards buyers. However, sellers in these marketplaces are equally vulnerable to fraud schemes, not...
- News & Updates
In recent months, hiring scams involving fake job interviews have been in the public eye. In such scams, threat actors induce the target to download malicious programs under the pretext of giving...
- News & Updates
Phishing has always been a multifaceted threat, but in the public perception, phishing is usually tied up with email. The process, as stereotyped, is clear: a fraudster sends an email with a bogus...
- News & Updates
The cybersecurity realm is known as a constantly evolving paradigm with a future so vast it can be hard to predict where it will go. One of the most common apparatuses that companies use to interact...
- Business & Strategy
DataProtection Day is a time where many reflect on the evolving role of artificialintelligence and data protection. Oftentimes AI is seen as a potential riskwhen it comes to privacy, however, it's...
- Education & Resources
Although now considered to be insufficient for reliable security, passwords have historically been of great importance. Even now, passwords are the foundation of the security strategies of many major...
- News & Updates
One of the most prolific ransomware-as-a-service (RaaS) groups of the past couple of years has renounced the ransomware label and says it will focus solely on data exfiltration and extortion going...
OpenAI disclosed this week what it called an unprecedented cyber incident. An autonomous agent, built on the newly released GPT 5.6 Sol and an unreleased more capable model, broke out of a controlled...
- News & Updates
Security researchers have identified a rapidly expanding distributed denial of service (DDoS) botnet dubbed Dysphoria, which has compromised more than 200,000 internet connected devices worldwide....
- News & Updates
Microsoft's July 2026 Patch Tuesday release, published on July 14, set a new record for the largest security update in the company's history, addressing over 600 vulnerabilities across Windows,...
- News & Updates
Global professional services firm Ernst & Young (EY) disclosed a cybersecurity incident after attackers compromised a third party IT support platform used by the company, potentially exposing...
- News & Updates
Microsoft released its July 2026 Patch Tuesday security updates, marking the largest vulnerability remediation effort in the company's history. The release addresses 570 vulnerabilities across...
- News & Updates
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that threat actors are actively exploiting CVE-2026-45659, a high severity remote code execution vulnerability affecting on...
- Technology & Solutions
Security researchers disclosed what is believed to be the first documented ransomware operation conducted almost entirely by an autonomous AI agent, tracked as JADEPUFFER. According to the...
- Media, Press
In this article, published by GARP Risk Intelligence, our CEO Jeremy Samide discusses how cyber operations are being planned as integral parts of broader combat campaigns in the context of the...
How 2 Missing Characters Nearly Compromised AWS