Stay Classy, UNC6384: PRC-Nexus Espionage Campaign Targets Diplomats

In March 2025, Google’s Threat Intelligence Group revealed an espionage operation by PRC-nexus actor UNC6384, utilizing captive-portal hijacking to deliver malware. Key components included a fake Adobe plugin, DLL sideloading, and memory-resident payloads like PlugX. The campaign targeted Southeast Asian diplomats, illustrating advanced deception tactics. Defenders can leverage insights for remediation.

CarPlay or CarPrey? Hackers Find a Fast Lane Into Modern Vehicles

Introduction In recent months, researchers from Oligo Security have uncovered a set of vulnerabilities dubbed AirBorne that impact Apple’s AirPlay protocol and, by extension, wireless CarPlay. While Apple has released patches, the reality is that many car manufacturers in the UK have not yet rolled those fixes into their infotainment systems. This leaves millions ofContinue reading “CarPlay or CarPrey? Hackers Find a Fast Lane Into Modern Vehicles”

DNS security for all

Cloudflare have been pounding the security drum for years and I have always looked for financially viable solutions that help me stay safer than the next guy. After recently listening to the Security Now (https://twit.tv/shows/security-now) and Troy Hunt (https://www.troyhunt.com/my-weekly-updates-are-now-available-as-an-audio-podcast/) podcasts, I was intrigued about what Cloudflare could offer me on the go and there itContinue reading “DNS security for all”