Most of you will have been able to determine some of my values from the thousands of articles I have written here, but sometimes it is worth …
Safety & Security
A zero-day vulnerability in WatchGuard Firebox firewalls is under active exploitation, marking the latest attacks against edge devices this month. WatchGuard disclosed the vulnerability, tracked as CVE-2025-14733, on Thursday, and …
Think you can beat ransomware? RansomHouse just made it a lot harder
“The upgrade in encryption used by RansomHouse RaaS, going from a simple linear model to a more complex multi-layered approach, signals a concerning trajectory in ransomware development,” Unit42 researchers said …
SMS Phishers Pivot to Points, Taxes, Fake Retailers – Krebs on Security
China-based phishing groups blamed for non-stop scam SMS messages about a supposed wayward package or unpaid toll fee are promoting a new offering, just in time for the holiday shopping …
Iranian Infy APT Resurfaces with New Malware Activity After Years of Silence
Threat hunters have discerned new activity associated with an Iranian threat actor known as Infy (aka Prince of Persia), nearly five years after the hacking group was observed targeting victims …
EHS Insight’s Year in Review — Building Safer & Smarter Workplaces
With the year wrapping up, now is the right time to look back at the strides EHS Insight has taken. This year was full of growth, innovation, and momentum. Our …
In the landscape of occupational health and safety (OHS), executive leadership is often framed through the lens of compliance. However, as I and others have long argued, the law is …
SonicWall Wednesday disclosed a zero-day vulnerability impacting its SMA1000 access platform that is under active exploitation via chained attacks. CVE-2025-40602 is a medium-severity local privilege escalation vulnerability in SonicWall’s SMA1000 …
Human-in-the-loop isn’t enough: New attack turns AI safeguards into exploits
CheckMarx demonstrated that attackers can manipulate these dialogs by hiding or misrepresenting malicious instructions, like padding payloads with benign-looking text, pushing dangerous commands out of the visible view, or crafting …
Most Parked Domains Now Serving Malicious Content – Krebs on Security
Direct navigation — the act of visiting a website by manually typing a domain name in a web browser — has never been riskier: A new study finds the vast …