Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Ransomware vs Backup:Can You Recover Your Clients After an Attack?

Modern ransomware doesn't just encrypt systems—it targets backups too. In this webinar, learn why recovery often fails even when backups exist, how attackers compromise backup environments, and what it takes to build a ransomware-resilient backup strategy. Ideal for MSPs and IT professionals looking to strengthen cyber resilience and recovery readiness.

The "Macs Don't Get Viruses" Myth Is Officially Dead in 2026

For many years, Apple users have believed that Mac computers are naturally protected from cyber threats. This perception was shaped by the relatively low number of attacks targeting macOS in the past. However, the cybersecurity environment in 2026 presents a very different reality. As Apple's global market share has expanded and Mac users have become increasingly valuable targets, cybercriminals have shifted their focus toward developing attacks specifically designed for macOS.

Amadey and StealC: Malware-as-a-Service Unavailable

On June 24, 2026, demonstrating the power of public-private collaboration, Europol and the Microsoft Digital Crimes Unit, alongside our team and other global partners, executed a coordinated disruption as part of Operation Endgame, impacting two of the most prolific commodity malware families on Windows: the Amadey loader/botnet and the StealC information stealer.

The Growing Threat of ShadowPad Malware and Its Business Impact

ShadowPad, a sophisticated modular malware, has emerged as a significant cybersecurity threat. Attributed initially to Chinese state-sponsored threat actors (APT41), this malware has evolved into a shared tool among various APTs. Its highly customizable nature allows attackers to adapt ShadowPad to specific targets, making it a versatile and persistent threat.

The Hidden Security Risks of Unstructured Data in File Shares

Most organisations have a data problem they rarely see clearly. It is not always inside databases, CRMs, finance systems, or other structured platforms. More often, it is hidden in shared drives, old project folders, exported spreadsheets, PDFs, email attachments, archived documents, and duplicate files saved across departments. This is unstructured data. It is easy to create, easy to copy, and difficult to control. Over time, it can become one of the biggest blind spots in an organisation's cybersecurity and compliance strategy.

Ep. 3: The Americans - Exclusive Interview: Laptop Farmer Facilitating N. Korea's IT Worker Scandal

All North Korean IT worker schemes hinge on one thing: a willing participant in America. We found one, and knocked on her door. Experts have dubbed some of these Americans “laptop farmers.” The North Koreans call them “facilitators” – people willing to host multiple laptops in their home and happy to not ask too many questions. But identifying these people can be hard: unless you have access to a private Discord channel where North Korean IT workers talk freely among themselves.

The Deep Dive: Kroll's Analysis of the GARUDA C2 Malware

Kroll identified a cross-platform malware framework, dubbed GARUDA C2, that uses public code-hosting platforms like GitHub for staging, redundancy and command distribution across Windows, macOS and Linux. Analysis links the campaign to an India-based operator supported by Hindi-language development artifacts, build logs, infrastructure indicators and evidence suggesting use of a locally hosted large language model (LLM) to accelerate malware development.

Active FortiBleed Campaign Impacting Fortinet Devices Across 194 Countries

In mid-June 2026, security researchers identified an active, large-scale credential compromise campaign affecting Fortinet FortiGate firewalls, dubbed FortiBleed. Threat actors have been systematically extracting configuration files from internet-facing FortiGate devices and cracking the stored credential hashes, resulting in verified working administrator credentials for between 30,000 and 75,000 devices across 194 countries.

Securing Financial Portfolios Against Modern Malware

The rapid migration of wealth management to cloud platforms introduces significant convenience for private investors. Managing a diverse set of assets now requires constant interaction with web applications. Digital dependency exposes capital to aggressive groups operating malicious software. Hackers regularly build malicious tools targeting financial balances and personal identification records. Standard defenses frequently fail against targeted threats. Protecting private capital requires a shift toward active defense measures.

Ep. 2: The Cell - Accessing the Hidden Discord Ecosystem Behind the North Korea IT Worker Scandal

For the first time ever, host and former lead cybersecurity and digital espionage reporter for The New York Times Nicole Perlroth partners with a team of private investigators as they infiltrate a North Korean worker cell.