Cyber Security
The DockerDash Vulnerability: Understanding Its Impact on Docker Desktop and CLI
U.S. CISA’s Vulnerability Notice Revisions Spark Concerns
React Native’s Metro Server Vulnerability: A Growing Cyber Threat
Reconnaissance Attack On Citrix NetScaler Targets Login Panels with Proxy Networks
State-Sponsored Cyber Espionage: Notepad++ Update Traffic Hijacked
Cybercriminals Exploit Weak Security in 1,400 MongoDB Servers
Malicious VS Code Extensions Spread GlassWorm Loader
Surge in Fake Investment Platforms Exploiting Social Media
Fast Food Giant McDonald Calls for Creative Passwords to Enhance Security
Identity Challenges in User Data Storage and Security Maintenance
Microsoft’s Strategy to Eliminate NTLM in Favor of Kerberos
ClawHub’s Third-Party Skills Security Risks: User Data at Stake
Firefox Introduces Options to Control AI Features
Microsoft Acknowledges Shutdown Issue in Windows 10 and 11 Systems
Increasing Threats from Automated Data Extortion Targeting MongoDB
Apple Enhances Location Privacy With New Feature for iPhone and iPad
Zero-Day Vulnerabilities in Ivanti EPMM Exploited
Instagram’s Privacy Controls Data Exposure: Review of Recent Findings
Former Google Engineer Found Guilty of Stealing AI Data for Chinese Firms
eScan Antivirus Compromised: Supply Chain Security Breach Uncovered
Revelations from Epstein Files: Allegations of a “Personal Hacker”
Android Malware Incident: Hugging Face Repository Misuse
Chrome Extensions Prove Malicious with Data Hijacking Tricks
White House Revokes Software Security Rules But Keeps Key Resources
Microsoft Sets Retirement for NTLM Protocol in Windows for Enhanced Security
Startup Aisy Secures $2.3 Million Seed Fund to Enhance Vulnerability Management
Surge in Illegal Cryptocurrency Flows Reaches $158 Billion by 2025
Legal Repercussions Mount for Cognizant After TriZetto Incident
Global Crackdown Disrupts Illegal IPTV Services and Sends Strong Message
More Than 175,000 Exposed Hosts Pose Risks for Ollama LLM Misuse
Linux glibc Flaw Lets Attackers Exploit Root Access on Major Linux Distros
Security Spotlight
Linux glibc Flaw Lets Attackers Exploit Root Access on Major Linux Distros
A newly discovered vulnerability in the GNU C Library (glibc) enables attackers to gain root access on default configurations of ...
Johnson Controls Ransomware Attack Cost $27 Million After Data Breach
Ransomware
Johnson Controls Ransomware Attack Cost $27 Million After Data Breach
Johnson Controls Ransomware Attack Cost $27 Million in total and data was breached with sensitive corporate data stolen. According to ...
Keenan Warns 1.5 Million People of Data Breach: Personal Information Stolen
Security Spotlight
Keenan Warns 1.5 Million People of Data Breach: Personal Information Stolen
Keenan Warns 1.5 Million People of a significant data breach. Keenan Data Breach compromised the data of 1.5 Million customers ...
Ukrainian Hackers Wiped 2 Petabytes of Data from Russian Research Center
Cybersecurity
Ukrainian Hackers Wiped 2 Petabytes of Data from Russian Research Center
Pro-Ukrainian Hackers wiped 2 petabytes of data from Russian Center for Space Hydrometeorology, a state research center that uses satellite ...
Medusa Ransomware Attacks Kansas City Public Transportation Authority
Ransomware
Medusa Ransomware Attacks Kansas City Public Transportation Authority
The Kansas City Area Transportation Authority (KCATA) disclosed that it experienced a targeted Medusa ransomware attack on Tuesday, January 23. ...
Critical Jenkins RCE Flaw (CVE-2024-23897) Exploited in the Wild
Security Spotlight
Critical Jenkins RCE Flaw (CVE-2024-23897) Exploited in the Wild
Numerous proof-of-concept (PoC) exploits have been disclosed for the Critical Jenkins RCE flaw (CVE-2024-23897), which has recently been patched. There ...
This Week in Cybersecurity: 22nd Jan – 25th Jan: Mother of All Breaches Exposes 26 Billion Records
Cybersecurity
This Week in Cybersecurity: 22nd Jan – 25th Jan: Mother of All Breaches Exposes 26 Billion Records
Mother of All Breaches (MOAB) Exposes 26 Billion Records Researchers found a data breach containing 26 billion records from various ...
Blackwood Hackers Use AitM to Hijack WPS Office Update and Install NSPX30 Malware
Cybersecurity
Blackwood Hackers Use AitM to Hijack WPS Office Update and Install NSPX30 Malware
The ‘Blackwood hackers’ have been engaging in cyberespionage attacks since 2018 and employs a highly sophisticated malware called NSPX30. Interestingly, ...
Hackers Stole Raw Genotype Data, Health reports in the 23andMe Data Breach
News
Hackers Stole Raw Genotype Data, Health Reports in the 23andMe Data Breach
Raw genotype data of almost 5.1 million people was stolen in the 23andMe Data Breach that went unnoticed for months. ...
HPE Hacked by Russian Hacker Group ‘Midnight Blizzard’ that Hacked Microsoft
News
HPE Hacked by Russian Hacker Group ‘Midnight Blizzard’ that Hacked Microsoft
The HPE hack was attributed to a group of suspected Russian hackers known as Midnight Blizzard, also referred to as ...
Equilend Cyberattack Brings the Financial Tech Firm Down, Trades with Systems Offline
News
Equilend Cyberattack Brings the Financial Tech Firm Down, Trades with Systems Offline
The EquiLend Cyberattack has forced the loan lending firm to trade manually with systems going offline. Lockbit ransomware gang is ...
Bucks County Cybersecurity Incident Affects Computer-Aided Dispatch System
News
Bucks County Cybersecurity Incident Disrupts Computer-Aided Dispatch System
The Bucks County Cybersecurity Incident impacted the county’s computer-aided dispatch (CAD) system leading to suspension of 911 call automation. Authorities ...
Jason's Deli Breach Exposes Data of Over 350K Users in Credential Stuffing Attack
Security Spotlight
Jason’s Deli Breach Exposes Data of Over 350K Users in Credential Stuffing Attack
Jason’s Deli has recently discovered a data breach that has affected its online platform. In notifications sent to customers, the ...
Mother of All Breaches (MOAB) Exposes 26 Billion Records
Security Spotlight
Mother of All Breaches (MOAB) Exposes 26 Billion Records
The recently discovered supermassive leak is an extensive collection of data from various past breaches. It includes a staggering 12 ...
Veolia North America Water Service Provider Hit by Ransomware Attack
News
Veolia North America Water Service Provider Hit by Ransomware Attack
Veolia North America faced a Ransomware Attack that caused disruptions to the bill payment systems. The Veolia ransomware attack forced ...
10 Common Types of Cyber Attacks and How to Prevent Them
Blog
10 Common Types of Cyber Attacks and How to Prevent Them
The digital age has brought convenience and connection, but it’s also opened the door to a growing threat: cyberattacks. These ...
SEC Says Sim Swapping Attack Caused X Account Hack
News
SEC Says Sim Swapping Attack Caused X Account Hack
SEC SIM swapping attack reportedly the cause of SEC X account hack that resulted in a fake Bitcoin ETF Approval ...
loanDepot Cyberattack Results in Data Breach of 16.6 Million
Ransomware
loanDepot Cyberattack Results in Data Breach of 16.6 Million
The mortgage lender has confirmed that loanDepot cyberattack resulted in a Data Breach that compromised sensitive information of 16.6 Million ...
Ukraine’s Monobank DDoS Attack Hits ‘Non Stop’ and Cripples Bank’s Operations
News
Ukraine’s Monobank DDoS Attack Hits ‘Non Stop’ and Cripples Bank’s Operations
Over the weekend, Monobank, a prominent Ukraine’s largest mobile-only bank, experienced a distributed denial-of-service (DDoS) attack. This Monobank DDoS Attack ...
CISA Issues Emergency Directive on Ivanti Zero-Day, Demands Immediate Action from Federal Agencies
Cybersecurity
CISA Issues Emergency Directive on Ivanti Zero-Day, Demands Immediate Action from Federal Agencies
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive to Federal Civilian Executive Branch (FCEB) agencies. The ...

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Highline Public Schools Ransomware Attack Forces the School to Shut Down Classes
Highline Public Schools confirmed a ransomware attack caused its September shutdown, impacting over 17,500 students. The district is rebuilding systems and re-imaging devices, offering employees ...
MoneyGram Cyberattack: No Ransomware Evidence Found, Social Engineering Suspected
MoneyGram's recent cyberattack, initially suspected to be ransomware, was instead caused by a social engineering attack targeting the company's internal help desk.
Red Barrels, Outlast Developer, Suffers Data Breach: Source Code, Employee Data Compromised
Red Barrels, the Outlast developer, suffered a major data breach, compromising source code, employee data, and financial information, causing significant production delays.
This Week In Cybersecurity: 30th September to 4th October
This Week In Cybersecurity: 30th September to 04th October highlights major incidents, including Bank of America's outage causing $0 balance displays, CF Medical's data breach, ...
Bank of America Outage: Is Your Account Balance Zero?
A Bank of America outage left many customers seeing $0 balances, sparking widespread concern and frustration. The issue, which affected Zelle payments, is largely resolved, ...
Urgent Security Alert: Critical Ivanti Endpoint Manager Vulnerabilities Discovered
Critical Ivanti Endpoint Manager vulnerabilities (CVE-2023-35083 & CVE-2023-35084) allow unauthorized file access and exfiltration. Immediate patching is crucial
Wayne County Cyberattack Cripples Government Services: Ransom Demand Fuels Investigation
Wayne County cyberattack crippled government services, with hackers demanding a ransom. The FBI and Michigan State Police are investigating.
Verizon Outage Leaves Hundreds of Thousands Without Service
A major Verizon outage left over 200,000 customers without cell service for over 10 hours. Verizon cited a "network issue" but offered no further details ...
Feldstein & Stewart Data Breach Letter Sent to 8,171 Individuals
Feldstein & Stewart sent a data breach letter to 8,171 individuals following a serious security incident that compromised sensitive consumer information.
CF Medical Announces Data Breach Stemming from FBCS Data Breach
CF Medical announced a data breach linked to FBCS data breach, exposing sensitive consumer information. Notifications have been sent to affected individuals.
Wells Fargo Announces Data Breach Cause by Unauthorized Access by Former Employee
Wells Fargo has reported a data breach due to unauthorized access by a former employee. Sensitive customer information was compromised, prompting immediate notifications.
New York Sports Club Data Breach: 19,836 Individuals Affected
The New York Sports Club data breach has affected 19,836 individuals, exposing sensitive employee information such as Social Security numbers and passport numbers.
Community Clinic of Maui Data Breach: LockBit Ransomware Attack Exposes Patient Data
The Community Clinic of Maui suffered a significant data breach after a LockBit ransomware attack in May, exposing sensitive patient information. The clinic is working ...
FCC Fines T-Mobile US $31.4 Million for Data Breaches
The FCC fined T-Mobile US $31.4 million for multiple data breaches, impacting millions of customers and mandating significant cybersecurity improvements.
Top 5 Dangerous Cyberattack Techniques in 2024
SANS Institute reveals the top 5 dangerous cyberattack techniques for 2024. Learn how to protect your enterprise from these evolving threats.
AFP Cyberattack: Security Breach at French News Agency Exposes Critical Infrastructure Vulnerabilities
The AFP cyberattack disrupted the French news agency's systems, highlighting the growing threat to media outlets and critical infrastructure. The perpetrators and motives remain unknown.
Critical Flaw in NVIDIA Container Toolkit Allows Full Host Takeover
A critical flaw (CVE-2024-0132) in NVIDIA Container Toolkit allows container escape, granting full host access and enabling attackers to execute commands and exfiltrate data.
UMC Hospital Lubbock Still Crippled by Devastating Ransomware Attack
UMC hospital in Lubbock faces a crippling ransomware attack, diverting ambulances and impacting patient care. The emergency room remains open, but the IT outage persists. ...
What is DNS Spoofing/DNS Cache Poisoning and How Can It Compromise Your Network?
DNS spoofing, also known as DNS cache poisoning, is a malicious technique that exploits vulnerabilities in the DNS system to redirect users to fraudulent websites, ...
This Week In Cybersecurity: 23rd September to 27th September
Harvey Nichols Data Breach: High-End Retailer Confirms Customer Data Exposure in Cyberattack Harvey Nichols has confirmed a data breach affecting its customers, exposing personal information ...