Search the site
Industry Insights
Podcasts
Briefings
Stories
Events
Glossary
N2K Pro
CISO Perspectives
Podcasts
Briefings
Hash Table
1
st
Principles Course
About
Our Story
Press
Team
Testimonials
Sponsor
Partners
Account
Profile
Logout
Home
Search the site
Industry Insights
Podcasts
Briefings
Stories
Events
Glossary
N2K Pro
CISO Perspectives
Podcasts
Briefings
Hash Table
1
st
Principles Course
About
Our Story
Press
Team
Testimonials
Sponsor
Partners
September 12, 2026
Join Pro
LOGIN
2 hours ago
A beast by any other name.
Today we are joined by Brigid O Gorman, Senior Intelligence Analyst on Symantec Threat Hunter team, discussing their work on “GodDamn Ransomware: Latest Beast Rebrand Uses Malicious Driver to Disable Defenses." GodDamn ransomware, the latest rebrand from the Hyadina group behind Monster and Beast, is using increasingly sophisticated techniques to evade defenses. In a recent attack, the threat actors used AnyDesk for remote access, a broad credential-harvesting toolkit, and the PoisonX malicious kernel driver to disable endpoint security before deploying the ransomware. The activity highlights Hyadina’s continued development of its ransomware operations and an escalation in its defense-evasion capabilities.
Research Saturday
2 hours ago
A beast by any other name.
Today we are joined by Brigid O Gorman, Senior Intelligence Analyst on Symantec Threat Hunter team, discussing their work on “GodDamn Ransomware: Latest Beast Rebrand Uses Malicious Driver to Disable Defenses." GodDamn ransomware, the latest rebrand from the Hyadina group behind Monster and Beast, is using increasingly sophisticated techniques to evade defenses. In a recent attack, the threat actors used AnyDesk for remote access, a broad credential-harvesting toolkit, and the PoisonX malicious kernel driver to disable endpoint security before deploying the ransomware. The activity highlights Hyadina’s continued development of its ransomware operations and an escalation in its defense-evasion capabilities.
Research Saturday
Cybersecurity News
Week that Was
3 hours ago
Threat actors move toward multi-agent AI frameworks as calls for regulation continue.
Microsoft sets another Patch Tuesday record. FBI releases its first public cyber strategy.
CyberWire Daily
11 hours ago
You might want to watch what you say.
WeWorm has China’s attention. Calls for an AI slowdown continue. OpenAI calls for mandatory AI regulation. Anthropic disrupts Russian cyberespionage. The EU’s 24 hour reporting requirement goes into effect. GitLab and Check Point patch critical vulnerabilities. IDScan confirms theft of IDs. Microsoft tracks a cloud intrusion campaign. Our guest is Kevin E. Greene, Chief Cybersecurity Technologist, Public Sector at BeyondTrust, discussing the role of privilege disruption in cyber resiliency. Watch what you say.
Daily Briefing
15 hours ago
WeWorm has China's attention, as calls for AI slowdown and regulation continue.
Russia's Cozy Bear used Claude to automate operations. McKesson data breach affected 6.4 million people.
CyberWire Daily
Sep 10, 2026
Making cybercrime more difficult.
The FBI lays out its new Cyber Strategy. CISA plans a federal cyber overhaul. Anthropic discloses another unauthorized AI intrusion. Treasury sanctions a Chinese-language cybercrime marketplace. Another Microsoft Defender zero-day emerges. Gigabud banking malware gets stealthier. Chinese espionage groups deploy the BlueMoon exploit kit. Lawmakers target hack-for-hire firms. A U.S. designation forces an Italian technology collective to shut down. Ben Yelin discusses how private AI chatbot conversations are increasingly being used as evidence in court cases. When proofs meet prompts.
Caveat
Sep 10, 2026
US and China prepare for mid-September AI safety talks.
OpenAI had another major unauthorized breach.
Daily Briefing
Sep 10, 2026
FBI releases its first public cyber strategy.
Anthropic discloses another instance of unauthorized AI access. Chinese espionage actors deploy new exploit kit.
Hacking Humans
Sep 10, 2026
Love, lies, and a fake 49er.
This week, hosts of N2K CyberWire Maria Varmazis and Dave Bittner alongside Joe Carrigan are discussing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. We start with some follow-up on Joe’s chicken coop, which apparently looks amazing—and we may even get a little into the mechanics behind it. Dave looks at the growing scam crisis in the U.S., including how victims are often targeted a second time by recovery scammers after losing money in the first scam. Joe covers a massive identity-theft operation allegedly offering more than 153 million stolen driver’s license records for sale on the dark web, with investigators working to determine where the data came from. Maria explores a multimillion-dollar romance and investment scam in which a man allegedly posed as an NFL player, using fake identities, relationships, and phony investment accounts to defraud at least 26 women. Our Catch of the Day comes from a listener who clicked a suspicious Calendly link and lived to tell the tale.
Caveat
Sep 10, 2026
Addressing the social media algorithms.
This week, Dave and Ben look at how AI and social media are coming under greater regulatory scrutiny. For AI, conversations people are having with their chatbots are beginning to find their way into court cases while Australia looks to continue its crackdown on how social media platforms engage with their users.
AI Security Brief
Sep 10, 2026
Is a closed or an open AI model more trustworthy?
There's no silver bullet when it comes to AI security strategy, and treating one model, tool, or vendor as the answer can limit an organization’s ability to adapt. Morgan Adamski, who leads PwC’s Cyber, Data & Technology Risk practice, joins us to tackle two pressing questions: How should organizations choose between closed frontier models and open-weight alternatives? And how can they build a multi-model architecture flexible enough to keep pace as AI technology rapidly evolves? Drawing on her work with boards, CISOs, and security teams, Morgan cuts through the “paralysis by analysis” surrounding these questions and offers security leaders a practical path forward.
CyberWire Daily
Sep 9, 2026
Clear your calendar, it’s Patch Tuesday.
Patch Tuesday is a doozy. The Feds warn China-based AI companies are distilling U.S. AI models. A new ClickFix campaign goes straight for the browser. Smart TVs get nosy. Hackers gift themselves a $47 million bug bounty. An Ohio man gets 15 years in federal prison for cyberstalking and sextortion. Andy Hornegold, Chief Security Technologist from Intruder, discusses what makes up a reliable AI pentests and the benefits and risks that come with AI-enabled security. Putting AI at the head of the class.
Business
Sep 9, 2026
NVIDIA to acquire Hugging Face for $12.9 billion.
Upwind has raised $300 million in Series C funding led by Bessemer Venture Partners and TCV.
Daily Briefing
Sep 9, 2026
Patch Tuesday notes: Microsoft sets another record.
New ClickFix technique targets browsers. Business news: NetSPI and Synack to merge.
Load More
Gain instant access to our exclusive podcast and briefing content, the Pro Academy, live events and more by subscribing to N2K Pro.
Subscribe Now