NCSC Warns of Rising Russian-Aligned Hacktivist Attacks on UK Organisations

The UK’s NCSC warns that Russian-aligned hacktivist groups are intensifying their disruptive cyberattacks on British organizations, particularly targeting critical infrastructure and local government. Organizations are advised to strengthen their defenses against denial-of-service (DoS) attacks and improve resilience through practical mitigation measures. #NoName05716 #DDoSia #UKNCSC…

Read More
LLMs in the SOC (Part 1) | Why Benchmarks Fail Security Operations Teams

SentinelLABS’ analysis finds that current LLM benchmarks from major players reduce continuous, collaborative security work to isolated, static tasks and therefore do not measure the operational outcomes defenders need. Benchmarks such as Microsoft’s ExCyTIn-Bench, Meta’s CyberSOCEval/CyberSecEval 3, and CTIBench show LLMs struggle with multi-hop investigations, poor calibration on severity, and evaluation loops that rely on vendor models to judge vendor models. #ExCyTIn-Bench #CyberSOCEval

Read More
EU plans cybersecurity overhaul to block foreign high-risk suppliers

The European Commission has proposed new cybersecurity legislation aimed at removing high-risk foreign suppliers and enhancing defenses against cyber threats targeting critical infrastructure. This legislation seeks to strengthen Europe’s technological sovereignty and improve the security of ICT supply chains and telecommunications networks. #Huawei #ZTE #ENISA #CybersecurityAct #EUCriticalInfrastructure

Read More
Chainlit Vulnerabilities May Leak Sensitive Information

Two critical vulnerabilities in the open-source chatbot framework Chainlit could allow attackers to access sensitive data, including API keys and internal files. These flaws impact versions prior to 2.9.4 and pose risks of data leaks, privilege escalation, and lateral movement within cloud environments. #CVE-2026-22218 #CVE-2026-22219 #Chainlit #CloudSecurity…

Read More
The Year Ransomware Went Fully Decentralized: Cyble’s 2025 Threat Analysis

Cyble’s 2025 Threat Landscape Report highlights the resilience and evolution of cybercriminal ecosystems, particularly in ransomware operations, despite increased law enforcement efforts. The report emphasizes the shift towards extortion-only tactics, AI-assisted automation, and supply chain exploitation, affecting diverse sectors worldwide. #RansomwareEvolution #SupplyChainAttacks…

Read More
KnownSec Data Leak Exposes State-Aligned Cyber Espionage Pipeline

A major data leak from KnownSec reveals its role as a key player in China’s cyber espionage activities, blending commercial security services with offensive intelligence operations. The leaked documents detail its sophisticated tools and extensive target databases used for global reconnaissance and long-term surveillance. #KnownSec #GhostX #ZoomEye #PassiveRadar #ChineseCyberEspionage…

Read More
Cybersecurity News | Daily Recap [17 Jan 2026]

Daily Recap, Gootloader now uses 1,000-part ZIP archives to evade detection and deliver payloads, while the Kimwolf botnet has infected roughly 2 million devices. Daily Recap, DeadLock leverages Polygon smart contracts to rotate proxies and obscure infrastructure, with further coverage on Modular DS WordPress exploits, AWS CodeBuild misconfigurations, StackWarp on AMD processors, Reprompt attacks against Microsoft Copilot, RedVDS seizures, Grubhub breach, and leadership shifts around the RSA Conference. #Gootloader #DeadLock

Read More
In Other News: FortiSIEM Flaw Exploited, Sean Plankey Renominated, Russia’s Polish Grid Attack

This cybersecurity roundup covers recent vulnerabilities, cyberattacks, data breaches, and regulatory actions affecting various organizations and sectors. Notable topics include the BodySnatcher AI hijacking, Fortinet FortiSIEM exploitation, and the Russian-backed cyberattack on Poland’s power system. #BodySnatcher #FortiSIEM #PolandCyberattack…

Read More