top of page
Search


Ransomware attacks targeted at weekends and holidays
Most ransomware attacks occur during weekends and holidays, times of distraction or disruption when the majority of SOCs are not adequately staffed. A new report from Semperis finds that 52 percent of surveyed organizations in the US, UK, France, Germany, Italy, Spain, Singapore, Canada, Australia and New Zealand were targeted at holidays or weekends. Alarmingly, 78 percent of companies cut security operation centre (SOC) staffing by 50 percent or more during holidays and w
Nov 23, 2025


New Attack Combines Ghost SPNs and Kerberos Reflection to Elevate Privileges on SMB Servers
A sophisticated privilege escalation vulnerability in Windows SMB servers, leveraging Ghost Service Principal Names (SPNs) and Kerberos authentication reflection to achieve remote SYSTEM-level access. Microsoft designated this as CVE-2025-58726 , an “SMB Server Elevation of Privilege” flaw impacting all Windows versions absent enforced SMB signing. According to Semperis, the issue persists in environments with default Active Directory (AD) configurations, underscoring Kerber
Oct 29, 2025


Quick Share’s Security Leap: Android’s File-Sharing Shield
In the ever-evolving landscape of mobile technology, Google’s Quick Share is poised for a significant security upgrade. According to recent reports, the file-sharing feature could soon integrate with Android’s Advanced Protection Program, potentially revolutionizing how users safeguard their data during transfers. This development comes amid growing concerns over unauthorized access and file theft in an increasingly connected world. The rumor, first highlighted by Android Aut
Oct 27, 2025


Qlosi demonstrates consistent pupil size reduction in presbyopia
Pupil size reduction remained consistent through day 8. More eyes improved from day 1 to day 8. These results suggest neuroadaptation with Qlosi. Qlosi demonstrated consistent pupil size reduction and increasing rates of near visual acuity in patients with presbyopia over 8 days, according to a study. Read more.
Oct 24, 2025


Vulnerability in Windows RPC protocol: Spoofing and impersonation attacks reported
SafeBreach experts have disclosed details of a vulnerability in the Windows Remote Procedure Call (RPC) protocol, patched by Microsoft in the July 2025 update. The flaw, CVE-2025-49760 , allowed an attacker to conduct spoofing attacks and impersonate a legitimate server using the Windows storage mechanism. Ron Ben Yizak discussed the discovery at the DEF CON 33 conference. Read more.
Sep 20, 2025


New Win-DoS Flaws Could Weaponize Windows Domain Controllers for DDoS Attacks
A newly discovered attack method could allow hackers to crash public Windows domain controllers (DCs) worldwide and weaponize them for...
Aug 10, 2025


Hackers Hijacked Google’s Gemini AI With a Poisoned Calendar Invite to Take Over a Smart Home
For likely the first time ever, security researchers from Safebreach have shown how AI can be hacked to create real-world havoc, allowing...
Aug 5, 2025


Safebreach research shows Google Calendar invites let researchers hijack Gemini to leak user data
By sending a calendar invite with an embedded prompt injection, often hidden in the event title, attackers can potentially exfiltrate...
Aug 3, 2025


Ransomware Attacks Escalate to Physical Threats Against Executives
Ransomware actors are resorting to extreme measures to pressure victims into paying demands, including threats of physical harm to...
Jul 30, 2025


nOAuth Vulnerability Still Affects 9% of Microsoft Entra SaaS Apps Two Years After Discovery
New research has uncovered continued risk from a known security weakness in Microsoft's Entra ID , potentially enabling malicious actors...
Jun 24, 2025


Semperis adds detection for dMSA attacks in Windows Server
S emperis has announced new detection capabilities in its Directory Services Protector platform in collaboration with Akamai to address...
Jun 9, 2025


Enterprises struggle with serious gaps in cyber response plans
A new survey of 1,000 businesses across the UK, UK, Europe and the Asia-Pacific region reveals a worrying disconnect between...
May 13, 2025


Water and Electricity Companies Suffer Severe Damage from Cyber-Attacks
80 percent of operators were targeted multiple times. More than half of cyber-attacks experienced by critical services disrupted...
Apr 4, 2025


Google Released Second Fix for Quick Share Flaws After Patch Bypass
The patches Google rolled out last year to address vulnerabilities in the Quick Share data transfer utility that could lead to remote...
Apr 2, 2025


Cybercriminals hope to catch public sector off-guard
Organizations are leaving their security teams understaffed during critical times, shows research. As cyberattacks continue to plague...
Jan 1, 2025


Unpatched Active Directory Flaw Can Crash Any Microsoft Server
One of two critical Active Directory Domain Controller vulnerabilities patched by Microsoft last month goes beyond the original...
Jan 1, 2025


This Windows Update exploit is downright terrifying
Windows Update may occasionally backfire with faulty patches , but for the most part, it’s meant to keep us safe from the latest threats....
Aug 10, 2024


“UnOAuthorized” Microsoft Entra ID (Azure AD) Vulnerability Let Attackers Gain Global Admin Access
According to the research team at Semperis, the vulnerability was discovered in the OAuth 2.0 scope (permissions) of Entra ID, which...
Aug 8, 2024


Design flaw could allow hackers to roll back Microsoft Windows updates
Some of Microsoft’s most important tools for protecting Windows users from malicious hackers can be twisted into being used in attacks,...
Aug 6, 2024


Some companies pay ransomware attackers multiple times, survey finds
Nearly one-third of companies that suffered a ransomware attack paid a ransom four or more times in the past 12 months to regain access...
Jul 30, 2024
bottom of page
