News

Stay up-to-date with the latest news and events in the cybersecurity industry. Here, you'll find a wide range of articles, updates, and event listings covering topics such as data breaches, emerging threats, and new security technologies.

Positive Technologies uncovers new threat group campaign spanning Asia, Europe, and MENA

Threat intelligence specialists at the Positive Technologies Expert Security Center (PT ESC) have uncovered a new targeted campaign by FamousSparrow. The threat group has previously targeted the hospitality industry, government entities, and international organizations, and later shifted its focus to telecommunications companies and internet service providers in an effort to gain long-term access to their infrastructure. In this latest campaign, one confirmed target was the information system of an international research organization focused on food security.
Воробей дочирикался: атаки группировки FamousSparrow с обновленным бэкдором SparrowDoor и новым бэкдором SquawkDoor

Positive Technologies researcher discovers three vulnerabilities affecting 30 Windows OS versions

Sergey Tarasov, a specialist at the Positive Technologies Expert Security Center (PT ESC), has discovered three vulnerabilities within the NTFS file system driver. These flaws affect 30 versions of the Windows operating system, including both desktop and server editions. Tens of millions of Russian users are at risk, including those running the widely used Windows 10 and 11. Based on data from Rosstat and Statcounter, at least 40 million computers in the country run on these systems. The researcher reported the flaws to the vendor under a responsible disclosure policy, and Microsoft has already released security updates.
Фон

Positive Hack Camp 2026: two weeks of intensive hands-on training for early-career cybersecurity researchers from 20 countries

Positive Hack Camp 2026 has launched in Moscow. The global educational initiative, run by Positive Technologies and Positive Education and supported by Russia's Ministry of Digital Development, is designed for early‑career cybersecurity professionals. From July 25 to August 9, participants will take part in 30 hands‑on training sessions led by top cybersecurity experts, featuring walkthroughs of real‑world attack scenarios. Positive Hack Camp's mission is to develop the next generation of cybersecurity talent, helping organizations and countries worldwide strengthen cyber resilience and advance digital sovereignty.
Фон

Positive Technologies experts enhance PHP security

PT SWARM experts Alexey Solovev and Nikita Sveshnikov have discovered and helped patch two vulnerabilities in PHP database components. PHP is a widely used open‑source programming language employed for web development and process automation, including database migration and version control via package managers. If successfully exploited, these flaws could allow an attacker to execute SQL injection or cause a denial-of-service (DoS) condition in any PHP‑based system using the vulnerable elements. The PHP development team was notified of the threats under a responsible disclosure policy and has since released updates patching the extension and the driver.
Фон

Positive Technologies and Microsoft collaborate to enhance operating system security

Microsoft has released security updates for two desktop and four server editions of Windows across various versions and architectures to patch two zero-day vulnerabilities in the Desktop Window Manager (DWM). The flaws were discovered by Sergey Tarasov, a specialist at the Positive Technologies Expert Security Center (PT ESC). The vendor has been notified of the threat in line with the responsible disclosure policy and recommends that users apply the patches as soon as possible.
Фон

Positive Technologies has trained a neural network to detect malicious code by a program's "behavior"

Positive Technologies has developed MOLOT, a neural network for detecting malicious code in programs written in the world's most popular languages: Python, JavaScript, and TypeScript. Like large language models, MOLOT is built on the transformer architecture. The neural network already runs in PT Application Inspector, a code analyzer that searches for vulnerabilities and weaknesses in code, starting with release 6.0.
Фон

Positive Technologies helps AMD patch a vulnerability across four major chip lines

Timofey Duditsky, a researcher at the Positive Technologies Expert Security Center (PT ESC), has helped patch a critical vulnerability affecting the AMD EPYC, Ryzen, EPYC, and Ryzen Embedded processors. AMD is the world's second-largest chip developer, holding a 37% share of the global processor market. The security flaw affected 56 chip models, including lower-cost series such as the Athlon 3000, Ryzen 5000, and Ryzen 6000 with Radeon graphics. The vulnerability threatened everyday users, businesses, and government agencies across different countries. In attacks on organizations, threat actors could remain undetected in compromised systems for a long time, move laterally across internal networks, spy on victims, and steal sensitive data. The vendor was informed of the threat in accordance with the responsible disclosure policy and has since released firmware updates.
Фон

Positive Technologies identifies key weaknesses in corporate cybersecurity defenses

The Positive Technologies Expert Security Center Incident Response team has released its findings from the past year's cyberattack investigations and retrospective analysis. Experts note that demand for these services remains strong, with requests for retrospective analysis doubling over the past year. Exploiting web application vulnerabilities and abusing trusted third-party relationships were identified as the primary initial access vectors for breaching corporate infrastructure. The share of attacks that successfully disrupted business continuity reached 55%.
Фон

Positive Technologies expands educational partnerships with Indonesian universities to train cybersecurity professionals

Positive Technologies, a leader in the Russian cybersecurity industry, is continuing to strengthen its educational ties with Indonesia. During the International Economic Forum "Russia–Islamic World: KazanForum," the company signed agreements with five of the republic's leading universities: Universitas Brawijaya (UB), Universitas Pendidikan Indonesia (UPI), Politeknik Manufaktur Bandung, Institut Teknologi dan Sains Mandala (ITSM), and Universitas Darul Ma'arif (UDM). A similar document was signed a day earlier in Moscow with Universitas Padjadjaran (UNPAD). The primary goal of these partnerships is to develop the cybersecurity workforce in Southeast Asia's largest country.
Фон

Positive Technologies warns: damage from hacktivist attacks reaches the level of nation-state groups

The line between ideologically driven hackers (hacktivists) and advanced persistent threat (APT) groups is blurring, as these actors increasingly carry out operations on behalf of governments and state-affiliated organizations. Experts at Positive Technologies have highlighted this major shift in the global cyberthreat landscape. They predict that further collaboration between politically motivated hackers and nation-state groups will lead to the rise of "hacktivism as a service" on the global dark web.
Фон
  • ...

Thinking about the best way to protect your company?

Contact us.

During the consultation we'll propose a solution precisely tailored to your organization.

 

General questions
We're happy to answer any questions you may have.
Partnership
Join us in making the world a safer place.
Request a pilot
Test drive our solutions with a customized pilot program.
News & events