Sentire's Threat Response Unit (TRU) has uncovered a previously undocumented device-code phishing kit, dubbed "GhostCode," ...
An ongoing malware campaign uses SEO-optimized GitHub repositories to impersonate well-known software firms to push a previously undocumented information stealer called Rapuncel.
Revolut disclosed sensitive customer data—including passport copies, verification selfies and full Bitcoin transaction ...
Asking customers to prove their identity again can stop account takeover, but only if fintechs request the right evidence and ensure it is genuine ...
A threat actor exploited a pre-authentication remote code execution flaw in marimo to harvest AWS credentials, retrieve an ...
Revolut confirmed on September 12, 2026 that it disclosed passports, selfies, IBANs, and full Bitcoin transaction histories to an unauthorized third party who impersonated a government agency. The ...