home.social

#securityland — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #securityland, aggregated by home.social.

  1. Proton is stepping into the future of cybersecurity with the introduction of post-quantum encryption in Proton Mail. The new feature helps users safeguard their emails today against the potential threats of tomorrow’s quantum computing era.

    Read More: security.land/proton-mail-post

    #SecurityLand #Proton #News #ProtonMail #PostQuantum #Encryption #EmailSecurity

  2. Proton is stepping into the future of cybersecurity with the introduction of post-quantum encryption in Proton Mail. The new feature helps users safeguard their emails today against the potential threats of tomorrow’s quantum computing era.

    Read More: security.land/proton-mail-post

    #SecurityLand #Proton #News #ProtonMail #PostQuantum #Encryption #EmailSecurity

  3. Belgium and the UK signed a defense MoU last week that doesn't involve new aircraft or satellites — but it matters.

    QinetiQ has been handed a mandate to help Belgium build a sovereign Joint Electromagnetic Warfare Support Center, modeled on the UK's SOCIETAS program.

    Read More: security.land/belgium-takes-co

    #SecurityLand #GeoSphere #EU #UK #Belgium #ElectronicWarfare #Military #Government

  4. 🚨 Over the past two weeks, two massive, overlapping campaigns—TeamPCP’s "blitzkrieg" on security tools like Trivy and Checkmarx, and UNC1069's devastating RAT deployment via the Axios library—have compromised thousands of CI/CD pipelines.

    Read the full deep-dive and get the immediate mitigation steps here: security.land/2026-supply-chai

    #SecurityLand #BreachBreakdown #SupplyChainAttack #NPM #Cybersecurity #Axios #Trivy #TeamPCP #UNC1069

  5. 🚨 Over the past two weeks, two massive, overlapping campaigns—TeamPCP’s "blitzkrieg" on security tools like Trivy and Checkmarx, and UNC1069's devastating RAT deployment via the Axios library—have compromised thousands of CI/CD pipelines.

    Read the full deep-dive and get the immediate mitigation steps here: security.land/2026-supply-chai

    #SecurityLand #BreachBreakdown #SupplyChainAttack #NPM #Cybersecurity #Axios #Trivy #TeamPCP #UNC1069

  6. After years of delays and political wrangling, Poland's NIS2-implementing cybersecurity law is finally live. Here's what changed on April 3, and what comes next for tens of thousands of Polish businesses.

    Read More: security.land/polands-new-cybe

    #SecurityLand #GeoSphere #Cybersecurity #EU #NIS2 #Poland #SME #Government

  7. Spain is becoming a European cyber powerhouse. With a projected €3 billion market valuation by year-end, the surge is fueled by mandatory EU compliance—and a desperate race to find qualified professionals.

    Read More: security.land/spain-cybersecur

    #SecurityLand #News #Cybersecurity #Spain #Market #EU #NIS2 #Europe

  8. Forbidden Hyena is now using AI-generated code to deploy the BlackReaperRAT against Russian energy & retail sectors. By leveraging AI-generated PowerShell scripts and a new custom Trojan—BlackReaperRAT—this group has transitioned from ideological protests to sophisticated corporate extortion.

    Read More: security.land/ai-crafted-chaos

    #SecurityLand #CyberSecurity #Russia #ForbiddenHyena #AI #Ransomware #CriticalInfrastructure

  9. Forbidden Hyena is now using AI-generated code to deploy the BlackReaperRAT against Russian energy & retail sectors. By leveraging AI-generated PowerShell scripts and a new custom Trojan—BlackReaperRAT—this group has transitioned from ideological protests to sophisticated corporate extortion.

    Read More: security.land/ai-crafted-chaos

    #SecurityLand #CyberSecurity #Russia #ForbiddenHyena #AI #Ransomware #CriticalInfrastructure

  10. Forbidden Hyena is now using AI-generated code to deploy the BlackReaperRAT against Russian energy & retail sectors. By leveraging AI-generated PowerShell scripts and a new custom Trojan—BlackReaperRAT—this group has transitioned from ideological protests to sophisticated corporate extortion.

    Read More: security.land/ai-crafted-chaos

    #SecurityLand #CyberSecurity #Russia #ForbiddenHyena #AI #Ransomware #CriticalInfrastructure

  11. Forbidden Hyena is now using AI-generated code to deploy the BlackReaperRAT against Russian energy & retail sectors. By leveraging AI-generated PowerShell scripts and a new custom Trojan—BlackReaperRAT—this group has transitioned from ideological protests to sophisticated corporate extortion.

    Read More: security.land/ai-crafted-chaos

    #SecurityLand #CyberSecurity #Russia #ForbiddenHyena #AI #Ransomware #CriticalInfrastructure

  12. Forbidden Hyena is now using AI-generated code to deploy the BlackReaperRAT against Russian energy & retail sectors. By leveraging AI-generated PowerShell scripts and a new custom Trojan—BlackReaperRAT—this group has transitioned from ideological protests to sophisticated corporate extortion.

    Read More: security.land/ai-crafted-chaos

    #SecurityLand #CyberSecurity #Russia #ForbiddenHyena #AI #Ransomware #CriticalInfrastructure

  13. A new report from the BSI reveals how drones can be used as mobile hacking hubs to bypass fences and target data centers directly. From signal jamming to "shoulder surfing" through windows, the threat is no longer just physical.

    Read More: security.land/drone-cyber-thre

    #SecurityLand #BusinessShield #Drone #BSI #Germany #CorporateSecurity #DroneAwareness #Cybersecurity #PhysicalSecurity

  14. A new report from the BSI reveals how drones can be used as mobile hacking hubs to bypass fences and target data centers directly. From signal jamming to "shoulder surfing" through windows, the threat is no longer just physical.

    Read More: security.land/drone-cyber-thre

    #SecurityLand #BusinessShield #Drone #BSI #Germany #CorporateSecurity #DroneAwareness #Cybersecurity #PhysicalSecurity #Government

  15. A new global survey of 750 CISOs by Absolute Security has uncovered a critical "recovery reality gap" that is redefining modern security priorities. The data reveals a sobering truth: not a single organization reported being able to fully restore business operations within 24 hours of a major cyber incident.

    Read More: security.land/the-24-hour-reco

    #SecurityLand #BusinessShield #CyberSecurity #CISO #MTTR #AbsoluteSecurity #CyberResilience #CyberDefense #Research

  16. A new global survey of 750 CISOs by Absolute Security has uncovered a critical "recovery reality gap" that is redefining modern security priorities. The data reveals a sobering truth: not a single organization reported being able to fully restore business operations within 24 hours of a major cyber incident.

    Read More: security.land/the-24-hour-reco

    #SecurityLand #BusinessShield #CyberSecurity #CISO #MTTR #AbsoluteSecurity #CyberResilience #CyberDefense #Research

  17. A new global survey of 750 CISOs by Absolute Security has uncovered a critical "recovery reality gap" that is redefining modern security priorities. The data reveals a sobering truth: not a single organization reported being able to fully restore business operations within 24 hours of a major cyber incident.

    Read More: security.land/the-24-hour-reco

    #SecurityLand #BusinessShield #CyberSecurity #CISO #MTTR #AbsoluteSecurity #CyberResilience #CyberDefense #Research

  18. A new global survey of 750 CISOs by Absolute Security has uncovered a critical "recovery reality gap" that is redefining modern security priorities. The data reveals a sobering truth: not a single organization reported being able to fully restore business operations within 24 hours of a major cyber incident.

    Read More: security.land/the-24-hour-reco

    #SecurityLand #BusinessShield #CyberSecurity #CISO #MTTR #AbsoluteSecurity #CyberResilience #CyberDefense #Research

  19. A new global survey of 750 CISOs by Absolute Security has uncovered a critical "recovery reality gap" that is redefining modern security priorities. The data reveals a sobering truth: not a single organization reported being able to fully restore business operations within 24 hours of a major cyber incident.

    Read More: security.land/the-24-hour-reco

    #SecurityLand #BusinessShield #CyberSecurity #CISO #MTTR #AbsoluteSecurity #CyberResilience #CyberDefense #Research

  20. Kowa Emori, a Japanese chemical and electronics materials trader, disclosed a ransomware attack on January 7 that's delaying orders and shipments. The company is investigating with security specialists but hasn't confirmed data exfiltration yet.

    Read More: security.land/japanese-chemica

    #SecurityLand #DataBreach #Cybersecurity #Ransomware #Kowa #Emori #Japan #RansomwareAttack #SupplyChain

  21. Kowa Emori, a Japanese chemical and electronics materials trader, disclosed a ransomware attack on January 7 that's delaying orders and shipments. The company is investigating with security specialists but hasn't confirmed data exfiltration yet.

    Read More: security.land/japanese-chemica

    #SecurityLand #DataBreach #Cybersecurity #Ransomware #Kowa #Emori #Japan #RansomwareAttack #SupplyChain

  22. CVE-2025-14558 is a 9.8-severity vulnerability in FreeBSD's IPv6 auto-configuration that lets attackers execute arbitrary code with a single crafted network packet. FreeBSD released patches on December 16, 2024, but the threat escalated when multiple proof-of-concept exploits hit GitHub about two weeks ago.

    Read More: security.land/freebsd-ipv6-fla

    #SecurityLand #CyberWatch #FreeBSD #Cybersecurity #VulnerabilityManagement #IPv6 #CVE

  23. A five-month spearphishing operation discovered by Socket has transformed the npm registry into a durable hosting layer for AiTM credential theft, specifically targeting sales teams in the manufacturing and healthcare industries.

    Read More: security.land/npm-registry-wea

    #SecurityLand #Cybersecurity #Research #NPM #Phishing #CriticalInfrastructure #AiTM #Spearphishing #Dev

  24. Nissan Motor Co. confirms a data breach affecting 21,000 customers in Japan following a security incident at third-party vendor Red Hat. No financial data was stolen.

    Read More: security.land/nissan-japan-dat

    #SecurityLand #Cybersecurity #DataBreach #RedHat #Nissan #Japan #CrimsonCollective #ThreatActor

  25. Nissan Motor Co. confirms a data breach affecting 21,000 customers in Japan following a security incident at third-party vendor Red Hat. No financial data was stolen.

    Read More: security.land/nissan-japan-dat

    #SecurityLand #Cybersecurity #DataBreach #RedHat #Nissan #Japan #CrimsonCollective #ThreatActor

  26. The NCS Guide 2025 is here, and it finally solves the funding gap. With a new 6-phase lifecycle and a mandate for Quantum/AI foresight, this is the definitive playbook for digital sovereignty.

    #SecurityLand #BusinessShield #Government #Cybersecurity #AI #Quantum #DigitalSovereignty #NCSGuide #NCS2025

    Read More: security.land/ncs-guide-2025-3

  27. The NCS Guide 2025 is here, and it finally solves the funding gap. With a new 6-phase lifecycle and a mandate for Quantum/AI foresight, this is the definitive playbook for digital sovereignty.

    #SecurityLand #BusinessShield #Government #Cybersecurity #AI #Quantum #DigitalSovereignty #NCSGuide #NCS2025

    Read More: security.land/ncs-guide-2025-3

  28. The NCS Guide 2025 is here, and it finally solves the funding gap. With a new 6-phase lifecycle and a mandate for Quantum/AI foresight, this is the definitive playbook for digital sovereignty.

    #SecurityLand #BusinessShield #Government #Cybersecurity #AI #Quantum #DigitalSovereignty #NCSGuide #NCS2025

    Read More: security.land/ncs-guide-2025-3

  29. The NCS Guide 2025 is here, and it finally solves the funding gap. With a new 6-phase lifecycle and a mandate for Quantum/AI foresight, this is the definitive playbook for digital sovereignty.

    #SecurityLand #BusinessShield #Government #Cybersecurity #AI #Quantum #DigitalSovereignty #NCSGuide #NCS2025

    Read More: security.land/ncs-guide-2025-3

  30. The NCS Guide 2025 is here, and it finally solves the funding gap. With a new 6-phase lifecycle and a mandate for Quantum/AI foresight, this is the definitive playbook for digital sovereignty.

    #SecurityLand #BusinessShield #Government #Cybersecurity #AI #Quantum #DigitalSovereignty #NCSGuide #NCS2025

    Read More: security.land/ncs-guide-2025-3

  31. Chinese threat actor UAT-9686 has been compromising Cisco email security systems since late November with a custom backdoor called AquaShell. Organizations should immediately check Cisco Talos advisories for indicators and remediation guidance.

    #SecurityLand #ThreatHorizon #Cisco #UAT9686 #EmailSecurity #APT #China

    Read More: security.land/uat-9686-chinese

  32. Zscaler ThreatLabz documents BlindEagle APT's sophisticated attack on Colombian government infrastructure using steganography, compromised email accounts, and dual malware deployment (Caminho + DCRat). The September 2025 campaign demonstrates evolved tradecraft including Discord CDN abuse and fileless execution chains.

    #SecurityLand #ThreatHorizon #Zscaler #BlindEagle #Colombia #Government #Ecuador #APT #RAT #Malware

    Read More: security.land/blindeagle-colom

  33. Zscaler ThreatLabz documents BlindEagle APT's sophisticated attack on Colombian government infrastructure using steganography, compromised email accounts, and dual malware deployment (Caminho + DCRat). The September 2025 campaign demonstrates evolved tradecraft including Discord CDN abuse and fileless execution chains.

    #SecurityLand #ThreatHorizon #Zscaler #BlindEagle #Colombia #Government #Ecuador #APT #RAT #Malware

    Read More: security.land/blindeagle-colom

  34. Zscaler ThreatLabz documents BlindEagle APT's sophisticated attack on Colombian government infrastructure using steganography, compromised email accounts, and dual malware deployment (Caminho + DCRat). The September 2025 campaign demonstrates evolved tradecraft including Discord CDN abuse and fileless execution chains.

    #SecurityLand #ThreatHorizon #Zscaler #BlindEagle #Colombia #Government #Ecuador #APT #RAT #Malware

    Read More: security.land/blindeagle-colom

  35. Zscaler ThreatLabz documents BlindEagle APT's sophisticated attack on Colombian government infrastructure using steganography, compromised email accounts, and dual malware deployment (Caminho + DCRat). The September 2025 campaign demonstrates evolved tradecraft including Discord CDN abuse and fileless execution chains.

    #SecurityLand #ThreatHorizon #Zscaler #BlindEagle #Colombia #Government #Ecuador #APT #RAT #Malware

    Read More: security.land/blindeagle-colom

  36. Zscaler ThreatLabz documents BlindEagle APT's sophisticated attack on Colombian government infrastructure using steganography, compromised email accounts, and dual malware deployment (Caminho + DCRat). The September 2025 campaign demonstrates evolved tradecraft including Discord CDN abuse and fileless execution chains.

    #SecurityLand #ThreatHorizon #Zscaler #BlindEagle #Colombia #Government #Ecuador #APT #RAT #Malware

    Read More: security.land/blindeagle-colom

  37. Australian Strategic Policy Institute research reveals how Chinese vision-language models systematically embed political censorship across multiple architectural layers. Testing of Qwen, Ernie, GLM, and DeepSeek shows 70%+ refusal rates for sensitive topics via certain providers, with language-dependent filtering that reshapes historical narratives.

    #SecurityLand #GeoSphere #ASPI #Research #Australia #China #AI #LLM #Qwen #DeepSeek

    Read More: security.land/china-ai-surveil

  38. New research from ISC2 reveals a critical shift in cybersecurity workforce challenges. Their 2025 Cybersecurity Workforce Study surveyed 16,029 professionals globally and found that 88% of organizations experienced security incidents directly caused by skills deficits in the past year.

    #SecurityLand #News #Research #ISC2 #Cybersecurity #Workforce #Study #SecurityIncident #CybersecurityJobs

    Read More: security.land/isc2-2025-workfo

  39. New infrastructure analysis from Censys reveals how the pro-Russian hacktivist group NoName057(16) maintains DDoSia operations through rapid server rotation. Monitoring since mid-2025 shows an average of 6 control servers active simultaneously, but with a mean lifespan of only 2.53 days.

    #SecurityLand #ThreatHorizon #Research #Censys #DDoSia #DDoS #DDoSAttack #NoName057 #Ukraine #Russia #Hacktivism

    Read More: security.land/ddosia-infrastru

  40. New infrastructure analysis from Censys reveals how the pro-Russian hacktivist group NoName057(16) maintains DDoSia operations through rapid server rotation. Monitoring since mid-2025 shows an average of 6 control servers active simultaneously, but with a mean lifespan of only 2.53 days.

    #SecurityLand #ThreatHorizon #Research #Censys #DDoSia #DDoS #DDoSAttack #NoName057 #Ukraine #Russia #Hacktivism

    Read More: security.land/ddosia-infrastru

  41. New infrastructure analysis from Censys reveals how the pro-Russian hacktivist group NoName057(16) maintains DDoSia operations through rapid server rotation. Monitoring since mid-2025 shows an average of 6 control servers active simultaneously, but with a mean lifespan of only 2.53 days.

    #SecurityLand #ThreatHorizon #Research #Censys #DDoSia #DDoS #DDoSAttack #NoName057 #Ukraine #Russia #Hacktivism

    Read More: security.land/ddosia-infrastru

  42. New infrastructure analysis from Censys reveals how the pro-Russian hacktivist group NoName057(16) maintains DDoSia operations through rapid server rotation. Monitoring since mid-2025 shows an average of 6 control servers active simultaneously, but with a mean lifespan of only 2.53 days.

    #SecurityLand #ThreatHorizon #Research #Censys #DDoSia #DDoS #DDoSAttack #NoName057 #Ukraine #Russia #Hacktivism

    Read More: security.land/ddosia-infrastru

  43. New infrastructure analysis from Censys reveals how the pro-Russian hacktivist group NoName057(16) maintains DDoSia operations through rapid server rotation. Monitoring since mid-2025 shows an average of 6 control servers active simultaneously, but with a mean lifespan of only 2.53 days.

    #SecurityLand #ThreatHorizon #Research #Censys #DDoSia #DDoS #DDoSAttack #NoName057 #Ukraine #Russia #Hacktivism

    Read More: security.land/ddosia-infrastru

  44. ENISA has secured €36 million from the European Commission to operate the EU Cybersecurity Reserve, delivering emergency incident-response capabilities for critical sectors under the Cyber Solidarity Act. Read the full analysis for the complete picture.

    #SecurityLand #GeoSphere #EU #EuropeanComission #ENISA #Cybersecurity #EUCybersecurityReserve

    Read More: security.land/europe-activates

  45. ENISA has secured €36 million from the European Commission to operate the EU Cybersecurity Reserve, delivering emergency incident-response capabilities for critical sectors under the Cyber Solidarity Act. Read the full analysis for the complete picture.

    #SecurityLand #GeoSphere #EU #EuropeanComission #ENISA #Cybersecurity #EUCybersecurityReserve

    Read More: security.land/europe-activates

  46. ENISA has secured €36 million from the European Commission to operate the EU Cybersecurity Reserve, delivering emergency incident-response capabilities for critical sectors under the Cyber Solidarity Act. Read the full analysis for the complete picture.

    #SecurityLand #GeoSphere #EU #EuropeanComission #ENISA #Cybersecurity #EUCybersecurityReserve

    Read More: security.land/europe-activates

  47. ENISA has secured €36 million from the European Commission to operate the EU Cybersecurity Reserve, delivering emergency incident-response capabilities for critical sectors under the Cyber Solidarity Act. Read the full analysis for the complete picture.

    #SecurityLand #GeoSphere #EU #EuropeanComission #ENISA #Cybersecurity #EUCybersecurityReserve

    Read More: security.land/europe-activates

  48. Proofpoint has completed its $1.8 billion acquisition of Hornetsecurity Group, significantly expanding its reach in the SMB cybersecurity market. The deal—substantially higher than initial $1B estimates—brings 125,000+ customers via 12,000 MSPs and channel partners, primarily in Europe.

    #SecurityLand #News #Cybersecurity #Proofpoint #Hornetsecurity #SMB #Europe #Acquisition

    Read More: security.land/proofpoint-acqui

  49. Proofpoint has completed its $1.8 billion acquisition of Hornetsecurity Group, significantly expanding its reach in the SMB cybersecurity market. The deal—substantially higher than initial $1B estimates—brings 125,000+ customers via 12,000 MSPs and channel partners, primarily in Europe.

    #SecurityLand #News #Cybersecurity #Proofpoint #Hornetsecurity #SMB #Europe #Acquisition

    Read More: security.land/proofpoint-acqui

  50. Russia's telecommunications oversight authority has escalated its campaign against WhatsApp, warning the Meta-owned platform faces a total shutdown unless it complies with Moscow's regulatory framework.

    #SecurityLand #GeoSphere #Meta #WhatsApp #Privacy #Security #WhatsAppBan #Russia #Government

    Read More: security.land/russia-threatens