DeadLock ransomware leans on blockchain chat to survive

Microsoft Threat Intelligence has published a technical breakdown of DeadLock, an emerging financially motivated ransomware operation distinguished by its use of decentralized infrastructure for victim communications and data leak operations.DeadLock surfaced in July 2025 and runs a double-extortion playbook, encrypting victim systems while threatening to dump stolen data. By July…

The Latest

Breaking News and Alerts

Fresh GPG key now signs Firefox and Thunderbird Linux builds

Anyone who verifies Firefox and Thunderbird downloads by hand now has extra homework: Mozilla has retired the GPG subkey behind its Linux releases after an unencrypted copy was accidentally committed to a private company repository.The affected subkey signed Linux tarballs, RPM packages, and checksum files for both products. That key is what lets a user, or a distro bundling the…

Spotlight

Cybersecurity Profiles and Stories

Silmaril Security locks down self-improving AI runtimes

Silmaril Security, an RVII portfolio company, builds runtime security for self-improving AI systems that outpace signature-based defenses.

Security and defense startups in Robinhood Ventures Fund II

Robinhood Ventures Fund II lists Aug 13 on the NYSE as RVII with a security cohort spanning digital identity, AI runtime protection, and counter-drone defense.

OpenAI pauses Astra work after critical cyber risk flag

OpenAI halted internal work on its upcoming Astra model after evaluations suggested it could reach the critical cyber capability threshold.

Head Mare swaps TrueConf installers for PhantomCore backdoor

Kaspersky says the Head Mare group exploited a two-flaw chain in unpatched TrueConf servers to poison client installers with the PhantomCore RAT.

Features

Research and Thought Leadership