Cyber Security
Microsoft Issues First Extended Security Update for Windows 10 Post-End-of-Life
Rhadamanthys Infostealer Operation Disrupted: Customers Lose Server Access
Synology Patches Critical RCE Bug in BeeStation Following Pwn2Own Taipei Demo
ASIO Chief Warns of State-Backed Cyber Sabotage Targeting Critical Infrastructure
Triofox Vulnerability Exploited for Remote Code Execution Through Built-In Antivirus
Adobe Addresses Critical Vulnerabilities Across Creative Suite Products
China Alleges U.S. Behind 2020 Cyberattack Targeting Bitcoin Miners
SAP Patches Critical SQL Anywhere Monitor Flaw With Hardcoded Credentials
Doctor Alliance Breach Exposes 1.2 Million Patient Records Online
Data Breach at Thayer Hotel West Point Exposes Over 33,000 Guest Records
APT37 Exploits Google Find Hub to Remotely Wipe Android Devices
Intel Engineer Allegedly Walks off With 18,000 Confidential Files in Data Theft Lawsuit
AI Startups Leak Cloud Secrets on GitHub, Exposing Model Data
Critical Vulnerability in ‘expr-eval’ Library Enables Remote Code Execution
Russian Initial Access Broker Pleads Guilty in Yanluowang Ransomware Campaign
Firefox 145 Brings Major Privacy Upgrade to Defend Against Fingerprinting
Triofox CVE-2025-12480 Exploited in Attacks Despite Available Patch
CISA Orders Federal Agencies to Patch Samsung Zero-Day Exploited by LandFall Spyware
Konni Campaign Impersonates Human Rights Groups in Cross-Platform Espionage Operation
NAKIVO Enhances Disaster Recovery With Real-Time Replication and Multilingual Support
Microsoft Reveals Whisper Leak Side-Channel Attack That Threatens LLM Communication Privacy
Critical runC Vulnerabilities Undermine Container Isolation in Docker and Kubernetes
QNAP Patches Seven Zero-Day Vulnerabilities Exploited at Pwn2Own 2025
GlassWorm Returns With Malicious VSCode Extensions Infecting Thousands
Sensitive Data at OB/GYN Associates Exposed in Data Breach
SonicWall Confirms State-Sponsored Hackers Targeted Cloud Backup Service
Microsoft Enhances Quick Machine Recovery and Smart App Control in Windows Insider Build
Malicious NuGet Packages Found With Time-Delay Payloads Targeting Databases and ICS Devices
LANDFALL Spyware Exploited Samsung Galaxy Zero-Day in Targeted Middle East Attacks
AI-Generated Malicious VS Code Extension Raises Concerns Over Marketplace Security

Sorry, we couldn't find any posts. Please try a different search.

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Cyber Security News

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
French Healthcare Data Breach Puts Data of Millions at Risk
Viamedis, a French healthcare services firm, recently experienced a cyberattack that resulted in the exposure of data belonging to policyholders and healthcare professionals in the ...
Verizon Data Breach Compromises Data of 63,000 Employees, Insider Leaks Data
Verizon Communications, a prominent telecommunications and mass media company in the United States, has recently disclosed an insider data breach that has affected nearly half ...
Lurie Children’s Hospital Cyberattack Cripples Healthcare Systems
Lurie Children’s Hospital in Chicago recently encountered a cyberattack that led to a temporary shutdown of its IT systems. Consequently, regular operations were disrupted, and ...
HPE Data Breached: HPE Investigates Data Breach After Data Being Stolen from a ‘Test Environment’
Hewlett Packard Enterprise (HPE) is currently conducting an investigation into the HPE Data Breach that led to massive data theft. This comes after a threat ...
ResumeLooters Gang Steal Data of 2 Million in XSS Attacks Using SQL injection
A threat group known as ‘ResumeLooters’ has successfully stolen the personal information of over two million job seekers by exploiting vulnerabilities in 65 legitimate job ...
CISA Advises Vendors to Secure SOHO Routers Against Volt Typhoon Attacks
The Cybersecurity and Infrastructure Security Agency has advised SOHO router manufacturers to strengthen their security against the ongoing Volt Typhoon attacks. CISA’s Guidelines Against Volt ...
Ivanti Reveals Second Connect Secure zero-day Exploit, Urges Immediate Patching
Today, Ivanti issued a warning regarding two additional Connect Secure zero-day exploits that are affecting Connect Secure, Policy Secure, and ZTA gateways. One of these ...
Data of 750 million Indian Mobile Users Sold on the Dark Web
According to a report from cybersecurity company CloudSEK, a vast database containing the personal information of approximately 750 million Indian Mobile Users made available for ...
Cloudflare Hacked by a State Sponsored Hacker Using Auth Tokens Stolen in the Okta Attack
Cloudflare has announced that its internal Atlassian server was breached by a ‘nation state attacker’. Hacker performing the Cloudflare hack gained unauthorized access to Cloudflare’s ...
Blackbaud Data Breach: FTC Holds Blackbaud Responsible for Linient Data Protection Policies
Blackbaud has reached a settlement agreement with the Federal Trade Commission (FTC) following charges of inadequate security measures and irresponsible data retention practices that led ...
This Week in Cybersecurity: 29th Jan – 2nd Feb: Medusa Ransomware Strikes Again
Medusa Ransomware Attacks Kansas City Public Transportation Authority The Kansas City Area Transportation Authority (KCATA) revealed it was hit by a Medusa ransomware attack on ...
Fulton County Cyberattack: Cyberattack Hits Georgia County Where Trump Faces Charges
The recent Fulton County cyberattack on Georgia had a widespread impact on various departments, including the office of District Attorney Fani Willis. This incident disrupted ...
Schneider Electric Hit by Cactus Ransomware Attack
Schneider Electric ransomware attack has been claimed by Cactus ransomware. The attackers stole valuable corporate data from Sustainability Business division. Schneider Electric Ransomware Attack Schneider ...
DarkGate Malware Pushed in Phishing Attacks via Group Chats of Microsoft Teams
Recent phishing attacks have exploited Microsoft Teams group chat requests to distribute malicious attachments containing DarkGate malware. The attackers exploited a compromised Teams user or ...
Linux glibc Flaw Lets Attackers Exploit Root Access on Major Linux Distros
A newly discovered vulnerability in the GNU C Library (glibc) enables attackers to gain root access on default configurations of major Linux distributions. This Linux ...
Johnson Controls Ransomware Attack Cost $27 Million After Data Breach
Johnson Controls Ransomware Attack Cost $27 Million in total and data was breached with sensitive corporate data stolen. According to official confirmation from Johnson Controls ...
Keenan Warns 1.5 Million People of Data Breach: Personal Information Stolen
Keenan Warns 1.5 Million People of a significant data breach. Keenan Data Breach compromised the data of 1.5 Million customers and employees Keenan Data Breach ...
Ukrainian Hackers Wiped 2 Petabytes of Data from Russian Research Center
Pro-Ukrainian Hackers wiped 2 petabytes of data from Russian Center for Space Hydrometeorology, a state research center that uses satellite data to monitor climatic activities ...
Medusa Ransomware Attacks Kansas City Public Transportation Authority
The Kansas City Area Transportation Authority (KCATA) disclosed that it experienced a targeted Medusa ransomware attack on Tuesday, January 23. KCATA (Kansas City Area Transportation ...
Critical Jenkins RCE Flaw (CVE-2024-23897) Exploited in the Wild
Numerous proof-of-concept (PoC) exploits have been disclosed for the Critical Jenkins RCE flaw (CVE-2024-23897), which has recently been patched. There are indications that this vulnerability ...
China’s Cyber Silence Compared to Russia’s Noise Signals a Strategic Shift in Cyber Geopolitics
Google Sues Chinese Cybercriminal Group Behind Massive “Lighthouse” Smishing Campaign
Microsoft Issues First Extended Security Update for Windows 10 Post-End-of-Life
Microsoft Patch Tuesday Fixes 60+ Bugs, Including Actively Exploited Windows Kernel Zero-Day
Maverick Banking Malware Shares Codebase With Coyote in Targeted Brazilian Campaigns
Rhadamanthys Infostealer Operation Disrupted: Customers Lose Server Access
Synology Patches Critical RCE Bug in BeeStation Following Pwn2Own Taipei Demo
ASIO Chief Warns of State-Backed Cyber Sabotage Targeting Critical Infrastructure
Triofox Vulnerability Exploited for Remote Code Execution Through Built-In Antivirus
Adobe Addresses Critical Vulnerabilities Across Creative Suite Products
China Alleges U.S. Behind 2020 Cyberattack Targeting Bitcoin Miners
SAP Patches Critical SQL Anywhere Monitor Flaw With Hardcoded Credentials
Doctor Alliance Breach Exposes 1.2 Million Patient Records Online
Data Breach at Thayer Hotel West Point Exposes Over 33,000 Guest Records
APT37 Exploits Google Find Hub to Remotely Wipe Android Devices
Intel Engineer Allegedly Walks off With 18,000 Confidential Files in Data Theft Lawsuit
AI Startups Leak Cloud Secrets on GitHub, Exposing Model Data
Critical Vulnerability in ‘expr-eval’ Library Enables Remote Code Execution
LinkedIn Becomes a Launchpad for Phishing Campaigns Targeting Executives
Russian Initial Access Broker Pleads Guilty in Yanluowang Ransomware Campaign