- Сrimeware and financial cyberthreats in 2025by GReAT on November 14, 2024 at 9:00 am
Kaspersky’s GReAT looks back on the 2024 predictions about financial and crimeware threats, and explores potential cybercrime trends for 2025.
- Threats in space (or rather, on Earth): internet-exposed GNSS receiversby Isabel Manjarrez on November 13, 2024 at 10:00 am
Internet-exposed GNSS receivers pose a significant threat to sensitive operations. Kaspersky shares statistics on internet-exposed receivers for July 2024 and advice on how to protect against GNSS attacks.
- Risk reduction redefined: How compromise assessment helps strengthen cyberdefensesby Victor Sergeev, Amged Wageh, Ahmed Khlief on October 29, 2024 at 2:00 pm
Kaspersky experts analyze cyberdefense weak points, including patch management, policy violations and MSSP issues, and real-world cases where compromise assessment helped detect and mitigate incidents.
- The Crypto Game of Lazarus APT: Investors vs. Zero-daysby Boris Larin, Vasily Berdnikov on October 23, 2024 at 11:00 am
Kaspersky GReAT experts break down the new campaign of Lazarus APT which uses social engineering and exploits a zero-day vulnerability in Google Chrome for financial gain.
- SAS CTF and the many ways to persist a kernel shellcode on Windows 7by Igor Kuznetsov, Boris Larin on October 17, 2024 at 10:00 am
In this article we solve the most difficult SAS CTF challenge based on the APT technique to introduce and persist a kernel shellcode on Windows 7.
- Whispers from the Dark Web Cave. Cyberthreats in the Middle Eastby Vera Kholopova, Kaspersky Security Services on October 14, 2024 at 7:00 am
The Kaspersky Digital Footprint Intelligence team shares insights into the H1 2024 Middle Eastern cyberthreat landscape: hacktivism, initial access brokers, ransomware, stealers, and so on.
- Memory corruption vulnerabilities in Suricata and FreeRDPby Dmitry Shmoylov, Evgeny Legerov, Denis Skvortsov on August 22, 2024 at 10:00 am
While pentesting KasperskyOS-based Thin Client and IoT Secure Gateway, we found several vulnerabilities in the Suricata and FreeRDP open-source projects. We shared details on these vulnerabilities with the community along with our fuzzer.
- Exploits and vulnerabilities in Q2 2024by Vitaly Morgunov, Alexander Kolesnikov on August 21, 2024 at 10:00 am
The report contains statistics on vulnerabilities and exploits, with an analysis of interesting vulnerabilities found in Q2 2024.
- Indirect prompt injection in the real world: how people manipulate neural networksby Vladislav Tushkanov on August 12, 2024 at 10:00 am
We studied data from the internet and Kaspersky internal sources to find out how and why people use indirect prompt injection.
- Cinterion EHS5 3G UMTS/HSPA Module Researchby Kaspersky ICS CERT on June 13, 2024 at 10:00 am
We performed the security analysis of a Telit Cinterion modem in course of a bigger project of security assessment of a popular model of a truck and found eight vulnerabilities.
Vulnerabilities and Exploits
Money Laundering and Cybercrime
How to Stay Safe on the Internet
Hospitals & Medical Centers
Social Security Number Data Breach
The U.S. Has Cyberattack Options
Frontline in the Age of AI
Ex-CIA Employee Jailed for 40 Years
Ethical Hacking Tutorials
Michigan State Uni Data Breach
Federal Emergency Management Agency
China Cyber Espionage
Group Behind Cyberattack Paid $22M