Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Byte Federal Data Breach Exposes Sensitive Information of 58,000 Users
News
Byte Federal Data Breach Exposes Sensitive Information of 58,000 Users
A major Byte Federal data breach exposed the personal data of 58,000 users due to a GitLab vulnerability. The breach included sensitive information like names, ...
AWS Cyberattack Exposes Sensitive Data of Customers: Stolen Credentials Found in Plain Sight
News
AWS Cyberattack Exposes Sensitive Data of Customers: Stolen Credentials Found in Plain Sight
A significant cyberattack exploited misconfigured AWS cloud instances, resulting in the theft of sensitive customer data, including credentials and API keys. The stolen information was ...
EagleMsgSpy Spyware Used by Chinese Police
News
EagleMsgSpy Spyware Used by Chinese Police
Researchers uncover EagleMsgSpy, a sophisticated Android spyware developed by Wuhan Chinasoft and used by Chinese law enforcement to steal sensitive data from mobile devices, including ...
Data Breach Exposes 765,000 Senior Dating Website Users
News
Data Breach Exposes 765,000 Senior Dating Website Users
A significant data breach at Senior Dating, a platform for users aged 40+, exposed the personal details of 765,517 individuals. The exposed data included email ...
Krispy Kreme Cyberattack Disrupts Online Orders, Impacts US Operations
Cybersecurity
Krispy Kreme Cyberattack Disrupts Online Orders, Impacts US Operations
Krispy Kreme Cyberattack: A Detailed Look at the Incident On November 29th, 2024, Krispy Kreme, Inc., the renowned American multinational ...
Ransomware Attack Cripples Leading Heart Surgery Device Maker, Artivion
News
Artivion, Leading US Heart Surgery Device Maker, Crippled by Ransomware Attack
Artivion, a prominent heart surgery device manufacturer, suffered a ransomware attack on November 21st, causing operational disruptions and data theft. The incident involved file encryption ...
Equifax Data Breach Settlement Update Payments, Eligibility, and Identity Theft Recovery
News
Equifax Data Breach Settlement Update Payments, Eligibility, and Identity Theft Recovery
The Equifax data breach settlement offers compensation and identity theft recovery services to affected individuals. Payments are expected in December 2024, with identity theft services ...
Children's Hospital Colorado Hit with $500,000 Fine for HIPAA Violation Following Data Breach
News
Children’s Hospital Colorado Hit with $500,000 Fine for HIPAA Violation Following Data Breach
Children's Hospital Colorado was fined $500,000 by HHS for HIPAA violations related to two data breaches in 2017 and 2020, impacting over 10,000 patients' protected ...
Amergis Healthcare Staffing Data Breach: Compromised Email Accounts Expose Sensitive Consumer Information
News
Amergis Healthcare Staffing Data Breach: Compromised Email Accounts Expose Sensitive Consumer Information
Amergis Healthcare Staffing, Inc. announced a data breach stemming from compromised email accounts, potentially exposing sensitive consumer information. The breach led to data breach notification ...
Electrica Cyberattack: Romanian Energy Giant Faces Ransomware Attack, Assures Customers of Safety
News
Electrica Cyberattack: Romanian Energy Giant Faces Ransomware Attack, Assures Customers of Safety
Romanian energy provider Electrica is battling a ransomware cyberattack, disrupting customer interactions but assuring critical systems remain unaffected. Authorities are investigating.
Data Breach Exposes 17,000 Hong Kong Residents' Data; EMSD Violates Privacy Ordinance
News
Data Breach Exposes 17,000 Hong Kong Residents’ Data; EMSD Violates Privacy Ordinance
The Office of the Privacy Commissioner for Personal Data uncovered a data breach by the Electrical and Mechanical Services Department (EMSD), exposing sensitive information of ...
Atrium Health Data Breach Impacts 585,000 Patients
News
Atrium Health Data Breach Impacts 585,000 Patients
Atrium Health, a major healthcare provider, has disclosed a data security incident affecting 585,000 individuals. The cyberattack compromised sensitive personal information, raising concerns about patient ...
Anna Jaques Hospital Ransomware Breach Exposes Data of 300K Patients
News
Anna Jaques Hospital Ransomware Breach Exposes Data of 300K Patients
Anna Jaques Hospital, a Massachusetts-based healthcare provider, suffered a ransomware attack in December 2023, resulting in the exposure of sensitive data for over 316,000 patients. ...
Ryuk Ransomware: A Big Game Hunting Cyberthreat
Resources
Ryuk Ransomware: A Big Game Hunting Cyberthreat
Ryuk operates under a RaaS model, meaning the developers provide the ransomware to other cybercriminals who then carry out the attacks. The developers receive a ...
Lazarus Ransomware Group - The North Korean Cyber Menace
Resources
Lazarus Ransomware Group – The North Korean Cyber Menace
Lazarus Group is a highly sophisticated and adaptable APT group with a diverse range of targets and objectives.
This Week In Cybersecurity: 2nd December to 06th December
News
This Week In Cybersecurity: 2nd December to 06th December
Alder Hey Cyber Attack: Two More Hospitals Fall Victim A significant cyberattack has disrupted Alder Hey Children’s Hospital and two ...
Chemonics 2023 Data Breach: 263,000 Individuals Affected
News
Chemonics 2023 Data Breach: 263,000 Individuals Affected
Major USAID contractor Chemonics suffered a 2023 data breach exposing the personal information of over 263,000 individuals, including Social Security numbers and biometric data.
Black Basta Ransomware Breaches BT Conferencing
News
Black Basta Ransomware Breaches BT Conferencing
BT Conferencing division was hit by a Black Basta ransomware attack, resulting in the immediate shutdown of affected servers. The attackers claim to have stolen ...
Deloitte Hacked: Over 1TB Stolen in Cyberattack
News
Deloitte Hacked: Over 1TB Stolen in Cyberattack
Deloitte UK faces a major alleged cyber incident, with the Brain Cipher ransomware gang claiming to have stolen over 1TB of data. The attack follows ...
Salt Typhoon: Chinese Hacking Group Behind Metadata Theft Targets US Telecoms
Cybersecurity
Salt Typhoon: Chinese Hacking Group Behind Metadata Theft Targets US Telecoms
The US blames the Chinese hacking group, Salt Typhoon, for a massive metadata theft impacting US telecoms and government officials, prompting China's denial and accusations ...
Application Security
SAP Patches Zero-Day in Commerce Cloud Data Hub Adapter
Cybersecurity
Gunra Ransomware Exploits Fortinet and Schneider Flaws for MFA Bypass
Application Security
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Skyward Specialty Insurance Data Breach Exposes Sensitive Information
Skyward Specialty Insurance Group reports a data breach involving unauthorized access to sensitive personal information, prompting investigations and notifications to affected individuals.
DaVita Confirms Ransomware Attack, Activates Containment Measures
DaVita, a major dialysis provider, confirmed a ransomware attack impacting operations. Patient care continues as investigations progress and potential links to the Landmark Admin data ...
Landmark Admin Data Breach: 1.6 Million Affected Individuals
Landmark Admin's data breach has expanded to affect over 1.6 million individuals, compromising sensitive personal information and prompting enhanced security measures.​
Inside Security News : GitHub Supply Chain Attacks, Ransomware Defense, and the Future of Cloud Security
In this deep-dive episode, we untangle some of today’s most critical cybersecurity threats—from GitHub’s complex quadruple supply chain attack to the rising concerns over Kubernetes ...
Hertz Data Breach: Customer Information and Driver’s Licenses Compromised in Cleo Zero-Day Attack
Hertz confirms a data breach exposing customer data due to Cleo zero-day exploits. Clop ransomware gang leaked some of the stolen information on their site. ...
B.C. Healthcare Data Breach Exposes 28,000 SINs; Leads to CRA Account Hacks and Identity Theft
A massive Interior Health data breach in B.C. exposed 28,000 Social Insurance Numbers, leading to hacked CRA accounts, identity theft, and fraudulent tax filings.
Planned Parenthood Data Breach Exposes Sensitive Information of 1.6 Million Patients Across 30 States
A data breach at a Planned Parenthood lab vendor exposed personal, financial, and health information of 1.6 million people across 30 states in October 2024.
Conduent Confirms Client Data Breach from January 2025 Cyberattack
Conduent confirms that client data was stolen during a January 2025 cyberattack, involving personal information of end-users. The company is notifying affected clients accordingly.
Qilin Ransomware Gang Claims Attack on SK Group, Steals 1TB of Corporate Data
Qilin ransomware gang claims responsibility for cyberattack on SK Group, stealing 1TB of data from the South Korean conglomerate with deep investments in U.S. industries. ...
Next.js Security Vulnerability: Middleware Bypass (CVE-2025-29927)
Is your web app truly secure? In this episode, we break down a critical NextJS vulnerability (CVE-2025-29927) that could allow attackers to bypass authentication and ...
Mercury Corp. Data Breach Exposes Personal Information of Thousands in Aerospace Manufacturing Sector
A cyberattack targeting Mercury Corp. exposed sensitive personal information of over 3,000 individuals, including Social Security and driver’s license numbers, in a one-day breach.
Hacker Forum ‘Cracked’ Resurfaces Online After FBI Seizure in Global Cybercrime Operation
Hacker forum Cracked is back online after an FBI takedown, reactivating its services under a new domain with a fresh admin and millions of users.
Wolters Kluwer Data Breach Claim Raises Alarms Across Fortune 500 Network
A hacker claims to have breached Wolters Kluwer, leaking sensitive contact data linked to Fortune 500 firms and global enterprises. The company is investigating.
This Week In Cybersecurity: April 14th to April 18th
This week in cybersecurity highlights critical incidents, including multiple data breaches affecting educational and legal institutions, the resurgence of the Mirai botnet, and the evolving ...
IKEA Ransomware Attack Cost Fourlis Group Millions in Revenue
Cybersecurity incident disrupted IKEA operations across multiple countries just before Black Friday The IKEA ransomware attack that struck just two days before Black Friday in ...
Neptune RAT Malware Spreading Through YouTube and GitHub, Targeting Windows PCs
Neptune RAT malware is spreading through YouTube and GitHub, infecting Windows PCs. This dangerous Trojan allows hackers complete system control, demanding immediate action from businesses ...
FortiSwitch Flaw Allows Remote Admin Password Changes
FortiSwitch vulnerability (CVE-2024-48887) lets attackers remotely change admin passwords. Fortinet released patches; immediate updates are crucial.
Oracle Denies Major Cloud Breach, Confirms Hack of “Obsolete Servers”
Oracle denies a major cloud breach, confirming instead a hack of obsolete servers. No Oracle Cloud customer data was compromised, the company claims.
Hackers Exploit SSRF Bug in EC2-Hosted Sites to Steal AWS Credentials
Hackers exploited SSRF bugs in EC2-hosted sites to steal AWS credentials, accessing EC2 Metadata and potentially IAM credentials via IMDSv1. This highlights the ongoing threat ...
Western Sydney University Data Breach Exposes 10,000 Student Records
Western Sydney University confirms a data breach exposing the personal information of 10,000 students. The university is investigating and has contacted authorities.