Four Threat Clusters Using CastleLoader as GrayBravo Expands Its Malware Service Infrastructure

Dec 09, 2025Ravie LakshmananCybersecurity / Malware Four distinct threat activity clusters have been observed leveraging a malware loader known as CastleLoader, strengthening the previous assessment that the tool is offered to other threat actors under a malware-as-a-service (MaaS) model. The threat actor behind CastleLoader has been assigned the name GrayBravo by Recorded Future’s Insikt Group, […]

Continue Reading

Fifth Third signs deal making fintech firm Brex the provider of its commercial cards

Fifth Third Bank Regional bank Fifth Third on Tuesday announced a deal making fintech firm Brex the provider of its commercial cards and expense management tools for business clients. The program will run on Brex’s embedded payments platform, which lets banks issue corporate cards and automate expense reporting using artificial intelligence tools, the companies said […]

Continue Reading

Storm-0249 Escalates Ransomware Attacks with ClickFix, Fileless PowerShell, and DLL Sideloading

Dec 09, 2025Ravie LakshmananRansomware / Endpoint Security The threat actor known as Storm-0249 is likely shifting from its role as an initial access broker to adopt a combination of more advanced tactics like domain spoofing, DLL side-loading, and fileless PowerShell execution to facilitate ransomware attacks. “These methods allow them to bypass defenses, infiltrate networks, maintain […]

Continue Reading

Paramount’s hostile Warner Bros. bid, Meta’s AI course correction, McDonald’s value crackdown and more in Morning Squawk

David Ellison, chairman and chief executive officer of Paramount Skydance Corp., center, outside the New York Stock Exchange (NYSE) in New York, US, on Monday, Dec. 8, 2025. Michael Nagle | Bloomberg | Getty Images This is CNBC’s Morning Squawk newsletter. Subscribe here to receive future editions in your inbox. Here are five key things investors need […]

Continue Reading

SF mayor’s downtown revival project has reeled in $60 million from Google, OpenAI and others

San Francisco Mayor Daniel Lurie speaks during a press conference at San Francisco City Hall on Oct. 23, 2025 in San Francisco, California. Justin Sullivan | Getty Images San Francisco’s Downtown Development Corporation, launched in April by Mayor Daniel Lurie, said on Tuesday that it’s received over $60 million in early commitments from donors including […]

Continue Reading

AI’s potential excites executives and investors, but general public remains skeptical, survey says

Several AI applications can be seen on a smartphone screen, including ChatGPT, Claude, Gemini, Perplexity, Microsoft Copilot, Meta AI, Grok and DeepSeek. Philip Dulian | Picture Alliance | Getty Images Corporate leaders and investors are brimming with optimism about the potential of artificial intelligence to boost worker productivity, profitability and shareholder returns. The general public […]

Continue Reading

How to Streamline Zero Trust Using the Shared Signals Framework

Zero Trust helps organizations shrink their attack surface and respond to threats faster, but many still struggle to implement it because their security tools don’t share signals reliably. 88% of organizations admit they’ve suffered significant challenges in trying to implement such approaches, according to Accenture. When products can’t communicate, real-time access decisions break down. The […]

Continue Reading

U.S. uncovers scheme to reroute Nvidia GPUs worth $160 million to China despite export bans

NVIDIA AI Computing Card captured in Hangzhou, Zhejiang Province, China on Dec. 9, 2025. Cfoto | Future Publishing | Getty Images U.S. authorities announced Tuesday that they have shut down yet another China-linked smuggling network that trafficked or attempted to traffic more than $160 million in export-controlled Nvidia AI chips. According to a press release […]

Continue Reading

Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data

Dec 09, 2025Ravie LakshmananMalware / Threat Analysis Cybersecurity researchers have discovered two new extensions on Microsoft Visual Studio Code (VS Code) Marketplace that are designed to infect developer machines with stealer malware. The VS Code extensions masquerade as a premium dark theme and an artificial intelligence (AI)-powered coding assistant, but, in actuality, harbor covert functionality […]

Continue Reading

Saudi Arabia eyes data embassies amid sovereign AI push. Here’s what we know so far

As countries race to build domestic data centers in the name of sovereign AI, Saudi Arabia is betting on a more creative idea: data embassies.  A data embassy is where data is stored outside of a country’s physical borders but operates under its laws, much like a diplomatic embassy.   The concept is not new. Estonia established the first data embassy in 2017 and there’s only been one […]

Continue Reading