News & Map
1,187 items on Cyberstrategy — showing 1081–1120 · 1,075 without coordinates · Across the network · RSS
ESET takes part in Operation Endgame to disrupt Amadey and Stealc
ESET researchers assisted in the global disruption of the Amadey botnet and Stealc infostealer, providing technical anal...
No location · Jun 24, 2026 · WedgetailZero-Day Exploitation of Vulnerability (CVE-2026-20245) in Cisco Catalyst SD-WAN Manager
Written by: Chester Sng, Pete Boonyakarn, Logeswaran Nadarajan, Lukasz Lamparski Introduction In early 2026, Mandiant id...
No location · Jun 24, 2026 · WedgetailRisky Business #843 -- Fortibleed is kinda awesome, actually
On this week’s show special guest co-host Rob Joyce joins Patrick Gray and James Wilson to discuss the week’s cybersecur...
No location · Jun 24, 2026 · WedgetailLatest release in the quantum technology primer series: Sensing
The latest in the quantum technology primer series explores quantum sensing and its potential applications, capabilities...
No location · Jun 24, 2026 · WedgetailFive Eyes cyber security agencies statement
Our joint Five Eyes statement highlights AI is rapidly increasing cyber risk, urging leaders to act now to strengthen re...
No location · Jun 22, 2026 · WedgetailKilling me gently: Inside Gentlemen’s EDR killer framework
ESET Research shares the results of a months-long investigation into the suite of EDR killers maintained by the RaaS gan...
No location · Jun 18, 2026 · WedgetailProtecting legacy OT systems against modern cyberthreats
Many manufacturing plants depend on OT systems that stay in service for many years. That long run can hide significant c...
No location · Jun 17, 2026 · WedgetailRisky Business #842 -- Anthropic needs an adult in the C suite
On this week’s show Patrick Gray, Adam Boileau and James Wilson discuss the week’s cybersecurity news. They cover: Anthr...
No location · Jun 17, 2026 · WedgetailFishMonger’s arsenal upgraded: SprySOCKS for Windows
ESET researchers have discovered SprySOCKS for Windows, FishMonger’s backdoor weaponizing a kernel driver for advanced s...
No location · Jun 16, 2026 · WedgetailPublic and Private Medical Community Targeted by China-Nexus Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research
Written by: Patrick Whitsell, John McGuiness, Muhammad Umair Google Threat Intelligence Group (GTIG) has identified a so...
No location · Jun 15, 2026 · WedgetailEvilTokens: A phishing attack that doesn’t steal your password
A phishing kit subverting Microsoft’s legitimate authentication flow lets attackers break into accounts without stealing...
No location · Jun 15, 2026 · WedgetailConsultation on evolution of Essential Eight
We’re consulting ASD network partners on evolving the Essential Eight cyber security framework to increase flexibility a...
No location · Jun 15, 2026 · WedgetailCanberra Extends Critical Infrastructure Rules to Data Centres
New obligations bring large data centre operators under the security-of-critical-infrastructure regime, including incide...
Canberra, Australia · Jun 13, 2026ShinyHunters Targets Education Sector with Oracle PeopleSoft Exploit
Introduction Mandiant and Google Threat Intelligence Group (GTIG) have identified an active compromise and extortion cam...
No location · Jun 11, 2026 · WedgetailOceanLotus: From external espionage to domestic targeting
A shift in operational pattern of the infamous Vietnam-aligned APT group
No location · Jun 11, 2026 · WedgetailRisky Business #841 -- Microsoft gets owned and 0day'd
On this week’s show special guest co-host Chris Wade, the founder of Corellium turned Cellebrite CTO, joins Patrick Gray...
No location · Jun 10, 2026 · WedgetailSeeking Counsel: Ongoing Targeted Campaign Against US Law Firms
Written by: Chad Reams, Tufail Ahmed, Keith Knapp, Ashley Frazer, Tyler McLellan Introduction From January through May 2...
No location · Jun 05, 2026 · WedgetailRisky Business #840 -- Microsoft walks back researcher threats
On this week’s show special guest co-host Andy Boyd joins Patrick Gray and James Wilson to discuss the week’s cybersecur...
No location · Jun 03, 2026 · WedgetailDebris with telemetry: the cyber pathway to Kessler
Many satellite operators worry about debris from accidental collisions or antisatellite weapons tests. Daniel Morgan say...
No location · Jun 01, 2026 · WedgetailThis month in security with Tony Anscombe – May 2026 edition
In this roundup, Tony looks at attacks against Polish water treatment facilities, how AI-directed attacks failed in Mexi...
No location · May 29, 2026 · WedgetailESET APT Activity Report Q4 2025–Q1 2026
An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2025 and Q1 2026
No location · May 28, 2026 · WedgetailRisky Business #839 -- TeamPCP stole GitHub's internal repos
On this week’s show Patrick Gray, Adam Boileau and James Wilson discuss the week’s cybersecurity news. They cover: TeamP...
No location · May 27, 2026 · WedgetailBTMOB: A stealthy RAT burrowing deep into Android devices
The malware pairs remote access capabilities with ready-made campaign tools, lowering the barrier for full device compro...
No location · May 26, 2026 · Wedgetail2 PhaaS 2 Furious: The Evolution of Chinese-Language Phishing Services
While Russian-speaking threat actors have historically dominated the phishing-as-a-service (PhaaS) landscape, a rival ec...
No location · May 25, 2026 · WedgetailExploitation of KnowledgeDeliver via ViewState Deserialization Vulnerability
Written by: Takahiro Sugiyama, Peter Revelant, Mathew Potaczek Introduction In late 2025, Mandiant responded to a securi...
No location · May 25, 2026 · WedgetailWebworm: New burrowing techniques
ESET researchers describe new tools and techniques that the Webworm APT group recently added to its arsenal
No location · May 20, 2026 · WedgetailRisky Business #838 -- GitHub investigates possible breach
On this week’s show Patrick Gray, Adam Boileau and James Wilson discuss the week’s cybersecurity news. They cover: GitHu...
No location · May 20, 2026 · WedgetailThe quest for greater tech independence
A complete decoupling from US technology is neither realistic nor necessary, but the changing environment does require n...
No location · May 19, 2026 · WedgetailWelcome to BlackFile: Inside a Vishing Extortion Operation
Written by: Austin Larsen, Tyler McLellan, Genevieve Stark, Dan Ebreo Introduction Google Threat Intelligence Group (GTI...
No location · May 15, 2026 · WedgetailFrostyNeighbor: Fresh mischief and digital shenanigans
ESET researchers uncovered new activities attributed to FrostyNeighbor, updating its compromise chain to support the gro...
No location · May 14, 2026 · WedgetailRisky Business #837 -- GitHub Actions footgun claims TanStack
On this week’s show Patrick Gray, Adam Boileau and James Wilson discuss the week’s cybersecurity news. They cover: Mini ...
No location · May 13, 2026 · WedgetailGTIG AI Threat Tracker: Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access
Executive Summary Since our February 2026 report on AI-related threat activity, Google Threat Intelligence Group (GTIG) ...
No location · May 11, 2026 · WedgetailFake call logs, real payments: How CallPhantom tricks Android users
ESET researchers uncovered fraudulent apps on Google Play that claim to provide the call history “for any number” and ha...
No location · May 07, 2026 · WedgetailRisky Business #836 -- You can't patch the bugpocalypse
On this week’s show, Patrick Gray and James Wilson are joined by special guest co-host Brad Arkin. They discuss the week...
No location · May 06, 2026 · WedgetailA rigged game: ScarCruft compromises gaming platform in a supply-chain attack
ESET researchers have investigated an ongoing attack by the ScarCruft APT group that targets the Yanbian region via back...
No location · May 05, 2026 · WedgetailThis month in security with Tony Anscombe – April 2026 edition
Warnings about helpdesk impersonation scams and Iran-linked hackers targeting critical sectors in the US, plus the most ...
No location · Apr 30, 2026 · WedgetailRisky Business #835 -- Why the Fast16 malware is badass
On this week’s show, Patrick Gray and James Wilson are joined by special guest-host Dmitri Alperovitch. They discuss the...
No location · Apr 29, 2026 · WedgetailThe calm before the ransom: What you see is not all there is
A breach claims the systems as well as the confidence that was, in retrospect, a major vulnerability
No location · Apr 24, 2026 · WedgetailGopherWhisper: A burrow full of malware
ESET Research has discovered a new China-aligned APT group that we’ve named GopherWhisper, which targets Mongolian gover...
No location · Apr 23, 2026 · WedgetailRisky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs
On this week’s show, Patrick Gray and James Wilson are joined by special guest The Grugq. They discuss the week’s cybers...
No location · Apr 22, 2026 · Wedgetail1,075 of 1,187 items have no coordinates and so are listed but not mapped.