CyberLeek: Extortion Built for an Audience, Not a Victim
CyberLeekpositions itself as afinancially motivated extortionist group, taking part in the ...
SilkParasite: Tracking a China-Nexus APT Across Central Asia
TL;DR: SilkParasite is a cyberespionage operation, assessed at medium confidence as ...
Technical Advisory: wp2shell — Unauthenticated Remote Code Execution and Full Site Takeover in WordPress Core
| CVSS 9.8 (out of 10) | Active exploitation confirmed | Patch to 6.9.5 / 7.0.2 immediately
Bind Link Abuse: One Windows Feature, Many Ways to Blind Your EDR
I’d like to thank my coauthors, Andrei-Marius Muntea, Andrei Mermeze, Radu-Marian Portase, ...
Claimed Twice: Five Reasons the Same Ransomware Victim Shows Up Under Two Flags
Here is a ransomware trend that is becoming more frequent in 2026: The same victim ...
Bitdefender Threat Debrief | June 2026
Why Are Leading Ransomware Groups Claiming the Same Victims?
FamousSparrow APT Targets Azerbaijani Oil and Gas Industry
I'd like to thank my co-author, Martin Zugec, for his valuable contributions to this report.
Technical Advisory: ShinyHunters Breach of Instructure Canvas LMS
[CRITICAL] | Active extortion campaign | Exposure window closed | Credential rotation and ...
Bitdefender at Black Hat Asia 2026: Disrupt Attacker Playbooks
Black Hat Asia 2026 is a moment for the region to come together, and it’s a critical time to ...
What Mythos Reveals About Zero Trust’s Scope Problem
The coverage of Anthropic’s Mythos Red Team report has followed a predictable arc: a ...
Bitdefender Threat Debrief | April 2026
Handala’s Surge Signals a New Wave of Wartime Cyberattacks


