News
Malicious password-protected files - Blog
18+ hour, 40+ min ago (198+ words) The password-protected files attackers use most often to deliver their malicious payloads include Microsoft Word and Excel (which is more common now since Microsoft disabled macros in Word documents), PDF files, and ZIP files." Attackers are constantly crafting new ways…...
Malicious password-protected files - Blog | Menlo Security
3+ hour, 52+ min ago (76+ words) Discover the rising threat of malicious password-protected files, evading defenses via encryption and alternative channels. The post Malicious password-protected files " Blog | Menlo Security appeared first on Security Boulevard. Discover the rising threat of malicious password-protected files, evading defenses via encryption…...
Chevin pulls the handbrake on Fleet Wave after security scare
7+ hour, 20+ min ago (292+ words) A cybersecurity incident has knocked Fleet Wave into a "major outage" across the UK and US after Chevin Fleet Solutions pulled parts of its Saa S platform offline and left customers scrambling for answers. Fleet Wave, for those not steeped…...
Microsoft is making a "major" compliance change in Teams
4+ hour, 22+ min ago (209+ words) Usama Jawad Neowin @Usama Jawad96 " Apr 9, 2026 18: 18 EDT with 2 comments Starting from next month, organizations will be able to generate AI meeting recaps without accompanying recordings or saved transcripts. This is tagged as a "major change" as it supports the compliance requirements…...
New VENOM phishing attacks steal senior executives' Microsoft logins
5+ hour, 3+ min ago (473+ words) The operation has been active since at least last November and appears to target specific individuals who serve as CEOs, CFOs, or VPs at their companies. VENOM also seems to be closed access, as it has not been promoted on…...
Kasada Partners with the Retail and Hospitality ISAC as Title Sponsor of 2026 Cybersecurity Summit
4+ hour, 32+ min ago (344+ words) NEW YORK, NY " April 9, 2026 Kasada, a leader in protecting digital businesses from automated and human-driven fraud and abuse, today announced it will serve as the title sponsor of the 2026 RH-ISAC Cybersecurity Summit, taking place April 13-15 in Austin, Texas. Hosted by…...
Sri Lanka in 2025: Kaspersky detects 14 million local malware incidents
2+ hour, 40+ min ago (435+ words) Sri Lanka experienced 14, 960, 244 local malware incidents on user computers during 2025, with 37. 4% of users in the country attacked by threats spread through removable USB drives, CDs, DVDs, and other offline methods, according to the latest Kaspersky Security Bulletin." This places Sri…...
New "Lucid Rook" malware used in targeted attacks on NGOs, universities
4+ hour, 36+ min ago (626+ words) 13-year-old bug in Active MQ lets hackers remotely execute commands Microsoft rolls out fix for broken Windows Start Menu search Hackers use pixel-large SVG trick to hide credit card stealer New "Lucid Rook" malware used in targeted attacks on NGOs,…...
French email provider accidentally leaked 40 million records " L'Oreal, Renault, French government data exposed
14+ hour, 15+ min ago (320+ words) A French email solutions provider kept an Elasticsearch cluster open on the internet, leaking email addresses and location details on millions of people, as well as large corporations and government entities, experts have warned. The cluster contained 40 million Simple Mail…...
Privacy Tip #486 " "Stolen Credentials Are a Major Threat
4+ hour, 14+ min ago (78+ words) The National Law Review According to Security Week's recent article, "Stolen Logins Are Fueling Everything from Ransomware to Nation-State Cyberattacks, cybersecurity firm Ontinue's 2 H 2025 Threat Intelligence Report, showcases that "Attackers aren't breaking in anymore, they're logging in. Credential theft is…...