-
What It Means When We Say “Security Is a Data Problem”
Cybersecurity isn’t just about firewalls, flashing red alerts and cool pew-pew maps anymore. At its core, security is a data problem. Massive, messy, constantly changing, and often misunderstood data. It’s like trying to find one shady squirrel in a forest full of squirrels, except those squirrels are logs, alerts, threat intel, behaviors, and weird PowerShell…
-
RMM: Tool Convenience and Control Comes with a Cost
Imagine this scenario: You’re winding down for the evening, having checked the locks and closed the windows, feeling secure enough to turn in for the night. But you forget to lock your vehicle. Sitting in plain sight on the sun visor is your garage door opener, an otherwise trusted tool now turned into an entry…
-
Analyzing LummaStealer’s FakeCAPTCHA Delivery Tactics
Paste, Click, Compromised The post Analyzing LummaStealer’s FakeCAPTCHA Delivery Tactics appeared first on Binary Defense. Go to Source
-
A Look at a Novel Discord Phishing Attack
Written by ARC Labs contributors, Adam Paulina Binary Defense ARC Labs researchers recently investigated what appears to be a novel infostealer discovered in the wild and named it MalenuStealer. An infostealer is a type of malicious software crafted to gather personal data (usernames, passwords, and payment information) from victims. Discord, on the other hand, is a popular online…
-
Cyber Resilience is More Than a Buzzword
The cybercrime marketplace is booming, and it’s running at a scale that’s hard to ignore. Today, ransomware-as-a-service, stolen credentials, and even ready-made phishing kits are just a click away on the dark web. Cybercrime has transformed into a well-oiled business ecosystem, with cybercriminals collaborating, innovating, and trading tools like any legitimate industry. The numbers tell…
-
Lessons From the Field: How a Global Motion Control Company Transformed Its Security Operations
What happened when this team found an MDR partner that truly acted as an extension of their team? Managing cybersecurity for a global technology company in the motion and control sector isn’t just about technology, it’s about keeping critical operations running smoothly. This organization, responsible for a wide range of manufacturing processes worldwide, was grappling…
-
Analysis of a JavaScript-based Phishing Campaign Targeting Microsoft 365 Credentials
Written by ARC Labs contributors, John Dwyer and Eric Gonzalez ARC Labs recently discovered a JavaScript-based credential harvesting campaign leveraging fake voicemail notifications as a lure to capture Microsoft 365 credentials. ARC Labs has observed that JavaScript-based credential harvesting campaigns have seen a significant uptick, becoming a prevalent threat in the cybersecurity landscape. Attackers increasingly utilize obfuscation and…
-
Bitrise maintains SOC 2 Type II compliance with latest successful assessment – Bitrise Blog
At Bitrise, we continually invest in security best practices to ensure that our customer’s data stays safe and secure. As a part of an on-going effort, we are excited to announce that we’ve successfully completed our SOC 2 report. Go to Source
-
From CI pipelines to sheet-metal sorcery: Bitrise introduces “Mini Orchard” 🧙♂️🔧 – Bitrise Blog
Say hello to the Mini Orchard! No flaky builds because of “data‑center air” at Bitrise: we built our own chassis that can talk to the Bitrise scheduler, can pre‑cool itself, and squeezes 32 Mac minis into a 6 rack unit oversized pizza box. Go to Source
-
IPA: Mastering iOS app packaging with Bitrise – Bitrise Blog
When preparing to release an iOS app, creating an IPA file is a crucial step. But managing this process can become tedious and error-prone if done manually. Let’s see what an IPA is, why it matters in CI/CD pipelines, and how you can seamlessly generate, sign, and distribute IPA files using Bitrise automation. Go to…