# Alexander Culafi

## News Writer at SearchSecurity

Email address: a****@****.com  
**Influence score:** 53  
**Phone:** (XXX) XXX-XXXX  
**Location:** United States  
**Languages:**  
- English  
**Covering topics:**  
- Computers & Technology

## Recent Articles

### [Microsoft targets AI deepfake cybercrime network in lawsuit](https://www.techtarget.com/searchsecurity/news/366619781/Microsoft-targets-AI-deepfake-cybercrime-network-in-lawsuit)  
Microsoft amended a lawsuit this week naming four defendants it said bypassed Azure OpenAI guardrails to generate illicit AI deepfakes.  
*Published over 1 year ago*

### [CrowdStrike: China hacking has reached 'inflection point'](https://www.techtarget.com/searchsecurity/news/366619774/CrowdStrike-China-hacking-has-reached-inflection-point)  
CrowdStrike observed a 150% increase in China-nexus threat activity in 2024, according to the vendor's latest Global Threat Report.  
*Published over 1 year ago*

### [Black Basta ransomware leak sheds light on targets, tactics](https://www.techtarget.com/searchsecurity/news/366619641/Black-Basta-ransomware-leak-sheds-light-on-targets-tactics)  
According to new research from VulnCheck, 62 CVEs were mentioned in the Black Basta ransomware gang chat logs leaked last week.  
*Published over 1 year ago*

### [Dragos: Ransomware attacks against industrial orgs up 87%](https://www.techtarget.com/searchsecurity/news/366619652/Dragos-Ransomware-attacks-against-industrial-orgs-up-87)  
In Dragos' 'Year in Review' report for 2025, the OT/ICS security vendor found that ransomware attacks against industrial organizations increased by 87%.  
*Published over 1 year ago*

### [CISA, FBI warn of Ghost/Cring ransomware attacks](https://www.techtarget.com/searchsecurity/news/366619496/CISA-FBI-warn-of-Ghost-Cring-ransomware-attacks)  
In an advisory published Wednesday, CISA warned in a joint cybersecurity advisory of ransomware attacks conducted by a group known as Ghost.  
*Published over 1 year ago*

### [Risk & Repeat: Salt Typhoon hasn't stopped hacking](https://www.techtarget.com/searchsecurity/podcast/Risk-Repeat-Salt-Typhoon-has-not-stopped-hacking)  
This podcast episode discusses the Chinese nation-state threat group Salt Typhoon and its ongoing activities against telecommunications providers.  
*Published over 1 year ago*

### [Palo Alto Networks PAN-OS vulnerability exploited in the wild](https://www.techtarget.com/searchsecurity/news/366619271/Palo-Alto-Networks-PAN-OS-vulnerability-exploited-in-the-wild)  
Palo Alto Networks said PAN-OS authentication bypass vulnerability CVE-2025-0108 came under attack in the wild following publication of a PoC exploit.  
*Published over 1 year ago*

### [Salt Typhoon compromises telecom providers' Cisco devices](https://www.techtarget.com/searchsecurity/news/366619108/Salt-Typhoon-compromises-telecom-providers-Cisco-devices)  
Recorded Future observed Chinese nation-state threat group Salt Typhoon targeting Cisco devices belonging to telecom providers in December and January.  
*Published over 1 year ago*

### [Fortinet discloses second authentication bypass vulnerability](https://www.techtarget.com/searchsecurity/news/366619314/Fortinet-discloses-second-authentication-bypass-vulnerability)  
Fortinet on Tuesday disclosed another authentication bypass vulnerability. Tracked as CVE-2025-24472, it affects versions of FortiOS and FortiProxy.  
*Published over 1 year ago*

### [Apple zero day used in 'extremely sophisticated attack'](https://www.techtarget.com/searchsecurity/news/366619044/Apple-zero-day-used-in-extremely-sophisticated-attack)  
Apple announced on Monday it patched a zero-day flaw in iPads and iPhones that could enable an attacker to disable the USB Restricted Mode security feature.  
*Published over 1 year ago*

### [Trimble Cityworks zero-day flaw under attack, patch now](https://www.techtarget.com/searchsecurity/news/366619160/Trimble-Cityworks-zero-day-flaw-under-attack-patch-now)  
Cityworks, an EAM product from software maker Trimble, has a newly disclosed zero-day vulnerability that is capable of remote code execution.  
*Published over 1 year ago*
