Tag: government
-
UK Government Launches Cyber Resilience Pledge, Claiming 60+ Signatories
More than 60 organizations, including M&S, Microsoft UK and Vodafone, have signed the UK government’s Cyber Resilience Pledge, a new initiative aimed at boosting cyber security and resilience across British businesses First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/uk-gov-launches-cyber-resilience/
-
AI-Generated Malware Powers New Armored Likho APT Campaign
Armored Likho APT uses AI-generated malware, phishing, and BusySnake Stealer to target governments and power grids in Russia, Kazakhstan, and Brazil. Kaspersky’s threat research team has documented a previously unknown APT group they’re calling Armored Likho, also tracked under the name Eagle Werewolf. The group runs two parallel tracks: financially motivated attacks against private individuals…
-
M&S among first businesses to sign UK government’s resilience pledge
Marks & Spencer joins the likes of Accenture, Microsoft and Vodafone by committing to take practical steps to improve cyber standards through the government’s voluntary Cyber Resilience Pledge First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366645538/MS-among-first-businesses-to-sign-UK-governments-resilience-pledge
-
Cavern Manticore Malware Uses Low-Detection .NET Modules for Reconnaissance and Lateral Movement
A newly identified Iran-linked threat group, tracked as Cavern Manticore, is deploying a sophisticated modular command-and-control (C2) framework built on a shared .NET foundation to conduct stealthy reconnaissance and lateral movement against Israeli government and IT organizations. The group’s custom C2 components exhibit extremely low detection rates on public sandboxes, enabling persistent access while evading…
-
US government agency pays $1 million to data extortion group Kairos
First seen on scworld.com Jump to article: www.scworld.com/brief/us-government-agency-pays-1-million-to-data-extortion-group-kairos
-
Government and healthcare sectors show weak email security, analysis finds
First seen on scworld.com Jump to article: www.scworld.com/brief/government-and-healthcare-sectors-show-weak-email-security-analysis-finds
-
‘BusySnake’ Infostealer Slithers into Critical Infrastructure Networks
A threat group researchers call Armored Likho has gained access to government agencies and electrical power entities in Russia, Brazil, and Kazakhstan. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/busysnake-infostealer-critical-infrastructure-networks
-
Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
An Iranian hacking group affiliated with Iran’s Ministry of Intelligence and Security (MOIS) has been wielding a previously undocumented modular command-and-control (C2) framework dubbed Cavern (aka Cav3rn) targeting Israeli organizations.The activity, which has primarily singled out IT providers and government sectors, has been attributed to a threat cluster tracked by Check Point Research First seen…
-
New Iran-Nexus Hacking Group Targets Israel Government and IT Sectors
Check Point researchers have identified a new cyber adversary targeting Israeli government and IT businesses, tracked as ‘Cavern Manticore’ First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/new-iran-hacking-group-targets/
-
Cavern Manticore: Exposing Iran-Linked Modular C2 Framework
ey Points Introduction Since early 2026, Check Point Research (CPR) has tracked a new modular command-and-control framework used by Cavern Manticore, an Iran-nexus APT group primarily targeting Israeli organizations, with a focus on IT providers, and government sectors. Cavern Manticore is an Iran MOIS (Ministry of Intelligence and Security)-linked actor, with links to the OilRig…
-
Security Affairs newsletter Round 584 by Pierluigi Paganini INTERNATIONAL EDITION
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. U.S. Government Agency Paid $1M to Data Extortion Group Kairos FBI: TeamPCP Compromised Dev Tools to…
-
U.S. Government Agency Paid $1M to Data Extortion Group Kairos
Tags: blockchain, data, data-breach, extortion, government, group, ransom, ransomware, theft, threatA U.S. government agency paid $1M to Kairos, a group focused on data theft and extortion rather than ransomware, Ransom-ISAC reports. A new case study from Ransom-ISAC reconstructs a complete data-extortion incident involving a U.S. government body and a threat actor called Kairos, using a leaked negotiation transcript and blockchain tracing of the ransom payment.…
-
U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case
Tags: blockchain, breach, data, data-breach, extortion, government, group, ransom, ransomware, theftA U.S. government entity paid about $1 million to keep stolen files from being leaked, according to a new case study by Rakesh Krishnan for Ransom-ISAC, built on a leaked negotiation chat and the blockchain trail the payment left.The odd part: the group that took the money calls itself Kairos, but it may not be…
-
Armored Likho APT Deploys BusySnake Stealer Against Government and Power Sector Targets
A focused phishing campaign operated by a previously unreported APT we’ve named Armored Likho (also tracked under the provisional alias Eagle Werewolf). The group is targeting government agencies and the electric power sector across Russia, Brazil and Kazakhstan, and demonstrates an evolving toolkit that blends commodity and bespoke tooling to support both financially motivated operations…
-
Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer
A previously undocumented threat actor known as Armored Likho has been attributed to cyber attacks targeting government agencies and the electric power sector across Russia, Brazil, and Kazakhstan.”Armored Likho blends financially motivated campaigns targeting private individuals with targeted cyber espionage aimed at organizations,” Kaspersky said in a technical analysis published today. “ First seen on…
-
Government and Healthcare Are the Weakest Links in Global Email Security
Government and healthcare sectors have weak email security. Many domains lack SPF, DMARC, DKIM, and MTA-STS, leaving them open to phishing attacks. Comparitech analyzed live DNS records for 5,849 domains across 13 sectors and scored each one out of 8 points based on four standard email authentication protocols: SPF, DMARC, DKIM, and MTA-STS. The results…
-
Anthropic Unveils Cyber Jailbreak Severity Framework for Claude Fable 5 Safeguards
Anthropic has provided detailed technical insights into the cybersecurity safeguards of its redeployed Claude Fable 5 model. Alongside this, they have introduced a proposed Cyber Jailbreak Severity (CJS) framework designed to standardize how AI jailbreak risks are measured across various industry and government stakeholders. The announcement highlights the growing challenge of securing dual-use AI systems,…
-
Politician who investigated spyware abuses had his phone hacked with Pegasus spyware
A government customer of NSO Group used the company’s Pegasus spyware to hack into the phone of a European politician, who at the time was serving on an EU committee tasked with investigating the spyware industry. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/02/politician-who-investigated-spyware-abuses-had-his-phone-hacked-with-pegasus-spyware/
-
FortiBleed Hacks Tied to INC Ransom and Lynx Operation
Theat Actor Accessed INC and Lynx Ransom Negotiation Panels. SOCRadar linked the FortiBleed credential-harvesting operation to ransomware groups INC Ransom and Lynx, citing evidence that a sophisticated initial access broker compromised more than 430,000 FortiGate firewalls, prioritized high-value organizations and enabled ransomware attacks against governments, critical infrastructure and major enterprises. First seen on govinfosecurity.com Jump…
-
US government says it got hacked, again
A top Democrat on the Senate’s Intelligence Committee warned that the information accessed on a Homeland Security intelligence-sharing network may risk national security. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/02/us-government-says-it-got-hacked-again/
-
Anthropic reactivates Fable, Mythos after securing government approval
Tags: governmentThe company’s powerful frontier models are back, but vetting issues remain unresolved. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/anthropic-ai-mythos-fable-reenable/824214/
-
US Lifts Export Curbs on Anthropic AI Models
Commerce Ends 18-Day Ban to Restore Global Access to Fable 5, Mythos 5. The U.S. Department of Commerce lifted export controls on Anthropic’s Fable 5 and Mythos 5, ending an 18-day restriction imposed over national security concerns. The reversal restores global access. It is unclear whether the government will use similar controls on future AI…
-
KI-Exportstopp: USA heben Beschränkungen für Claude Fable 5 auf
Nach fast drei Wochen Sperre lenkt die US-Regierung ein. Anthropic darf Claude Fable 5 ab Mittwoch wieder für alle Nutzer freischalten. First seen on golem.de Jump to article: www.golem.de/news/ki-exportstopp-usa-heben-beschraenkungen-fuer-claude-fable-5-auf-2607-210367.html
-
Sonnet 5 Delivers AI Gains Without Frontier Model Scrutiny
Anthropic’s Smaller Claude Model Improves Agents, Reduces Regulatory Risk. Anthropic’s new Sonnet 5 boosts agentic performance and lowers costs while avoiding one challenge confronting the largest AI models: heightened U.S. government scrutiny. Its smaller footprint makes deployment restrictions far less likely than for Mythos 5 or GPT-5.6. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/sonnet-5-delivers-ai-gains-without-frontier-model-scrutiny-a-32121
-
DHS to unveil replacement council for critical infrastructure cybersecurity
The Department of Homeland Security is bringing back a key cybersecurity information sharing effort with critical infrastructure, more than a year after the Trump administration shuttered an existing nerve center between government and private sector. The Alliance of National Councils for Homeland Operational Resilience Critical Infrastructure program,first reported by CyberScoop in January, is meant […]…
-
Anthropic bestätigt: US-Regierung hebt Sperrung von Mythos 5 teilweise auf
First seen on t3n.de Jump to article: t3n.de/news/anthropic-bestaetigt-us-regierung-hebt-sperrung-von-mythos-5-teilweise-auf-1749922/
-
Anthropic bestätigt: US-Regierung hebt Sperrung von Mythos 5 teilweise auf
First seen on t3n.de Jump to article: t3n.de/news/anthropic-bestaetigt-us-regierung-hebt-sperrung-von-mythos-5-teilweise-auf-1749922/
-
Nach Signal-Attacken: USA bieten üppiges Kopfgeld für russische Hacker
Wer Infos über die Akteure hinter den ständigen Phishing-Angriffen auf Signal-Nutzer hat, bekommt dafür bei der US-Regierung eine Menge Geld. First seen on golem.de Jump to article: www.golem.de/news/nach-signal-hacks-usa-bieten-10-millionen-us-dollar-kopfgeld-fuer-russische-hacker-2606-210321.html
-
Mustang Panda Targets India’s Government and Energy Sectors With ZOHOMURK and MINIRECON
Two concurrent espionage campaigns by Mustang Panda targeting Indian government and energy-sector organisations, deploying a novel malware suite that includes SHARDLOADER, MINIRECON and ZOHOMURK. The intrusions, observed in June 2026, focused on hydropower entities and government offices engaged in MOUs with Taiwanese institutions, using geopolitically themed lures and weaponised archives that sideload malicious DLLs via…
-
U.S. Targets Russian Cyber Spies With $10M Bounty Over Messaging App Attacks
The U.S. offers up to $10M for information on Russian hackers targeting Signal and WhatsApp accounts of officials and journalists. The U.S. government is offering rewards of up to $10 million for information leading to the identification of members of the Russian-linked groups UNC5792 and UNC4221. The hackers target government officials, military personnel, journalists, and…

