Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Omni Family Health Data Breach: Thousands Affected
News
Omni Family Health Data Breach: Thousands Affected
The Omni Family Health data breach exposed sensitive information of thousands. Levi & Korsinsky, LLP is investigating potential compensation for affected individuals.
Brazil Apprehends Hacker Responsible for FBI InfraGard and Massive National Public Data Breach
News
Brazil Apprehends Hacker Responsible for FBI InfraGard and Massive National Public Data Breach
Brazilian police arrested USDoD, the hacker behind the FBI's InfraGard breach and the massive National Public Data breach, exposing the details of billions.
DPS Data Breach Exposes Sensitive Information of Over 115,000 Texans
News
DPS Data Breach Exposes Sensitive Information of Over 115,000 Texans
DPS data breach exposed the personal information of over 115,000 Texans, including Social Security and driver's license numbers. The DPS has yet to notify victims.
Clorox 2023 Cyberattack: A Setback for Clorox's Sustainability Goals
News
Clorox 2023 Cyberattack: A Setback for Clorox’s Sustainability Goals
The Clorox 2023 cyberattack significantly impacted its 2030 sustainability goals, causing operational disruptions and delaying progress on reducing plastic waste.
Alliance Laundry Systems Data Breach: Sensitive Customer Data Compromised
News
Alliance Laundry Systems Data Breach: Sensitive Customer Data Compromised
Alliance Laundry Systems suffered a data breach, exposing customer names, Social Security numbers, financial information, and driver's license numbers. Data breach notification letters are being ...
Live Nation Faces Class Action Lawsuit Following Ticketmaster Data Breach
News
Live Nation Faces Class Action Lawsuit Following Ticketmaster Data Breach
Live Nation faces a class-action lawsuit after a Ticketmaster data breach exposed the personal information of up to 560 million users, highlighting inadequate security measures. ...
Cisco Investigates Data Breach Following Alleged Sale of Stolen Data on Hacking Forum
News
Cisco Investigates Data Breach Following Alleged Sale of Stolen Data on Hacking Forum
Cisco investigates a potential data breach after a threat actor allegedly sold stolen data, including source code and customer information, on a hacking forum.
Axis Health System Suffers Rhysida Ransomware Attack
News
Axis Health System Suffers Rhysida Ransomware Attack
Axis Health System, a Colorado healthcare provider, suffered a Rhysida ransomware attack, temporarily shutting down its patient portal and raising concerns about patient data.
Calgary Public Library Cyberattack Limits Essential Services
News
Calgary Public Library Cyberattack Limits Essential Services
A cyberattack on the Calgary Public Library has limited services, shutting down computer access, Wi-Fi, and the digital library. The library remains open, but with ...
7 Best Patch Management Tools for Streamlining Enterprise Security
Application Security
7 Best Patch Management Tools for Streamlining Enterprise Security
Robust patch management is critical. This comprehensive guide explores the leading patch management tools, helping enterprise businesses choose the best solution for their needs. We ...
Star Health Insurance Data Breach Exposes Millions of Customer Records
News
Star Health Insurance Data Breach Exposes Millions of Customer Records
Star Health Insurance data breach exposed personal data of 3.1 crore customers and 5.8 million claims, highlighting vulnerabilities in data security.
Marriott Agrees $52m Settlement for Data Breach: A Deep Dive into Cybersecurity Failures and Legal Ramifications
News
Marriott Agrees $52m Settlement for Data Breach: A Deep Dive into Cybersecurity Failures and Legal Ramifications
Marriott's $52 million settlement resolves a massive data breach impacting 339 million records, highlighting critical cybersecurity failures and legal ramifications.
Pokemon Data Breach Reveals Secrets of Unannounced Games and Nintendo Switch 2 Codename
News
Pokemon Data Breach Reveals Secrets of Unannounced Games and Nintendo Switch 2 Codename
A massive Pokemon data breach reveals unreleased game details, the Nintendo Switch 2 codename, and even a canceled Detective Pikachu sequel. The Pokemon data leak ...
This Week In Cybersecurity: 7th October to 11th October
Cybersecurity
This Week In Cybersecurity: 7th October to 11th October
MoneyGram Cyberattack: No Ransomware Evidence Found, Social Engineering Suspected In September 2024, MoneyGram experienced a cyberattack leading to a five-day ...
Internet Archive Breach Exposes Data of 31 Million Users
News
Internet Archive Breach Exposes Data of 31 Million Users
The internet archive breach exposed data of 31 million users. The attack involved the theft of a user authentication database containing sensitive information like email ...
Salt Typhoon APT Subverts Law Enforcement Wiretapping
Cybersecurity
Salt Typhoon APT Subverts Law Enforcement Wiretapping
The Chinese state-sponsored Salt Typhoon APT infiltrated US broadband providers, accessing law enforcement wiretapping systems and general internet traffic, potentially for months. This represents a ...
ADT Discloses Second Breach in 2 Months: Stolen Credentials Fuel Data Exfiltration
News
ADT Discloses Second Breach in 2 Months: Stolen Credentials Fuel Data Exfiltration
Casio's network suffered a significant breach on October 5th, 2024, causing IT system failures and service disruptions. The investigation is ongoing to determine the extent ...
MoneyGram Cyberattack: Hackers Confirmed to Have Stolen Customer Data
News
MoneyGram Cyberattack: Hackers Confirmed to Have Stolen Customer Data
The MoneyGram cyberattack resulted in the theft of customer data, including transaction details, personal information, and government IDs. The attackers used social engineering to gain ...
Casio Network Breach: IT Systems Fail After CyberAttack
News
Casio Network Breach: IT Systems Fail After CyberAttack
Casio's network suffered a significant breach on October 5th, 2024, causing IT system failures and service disruptions. The investigation is ongoing to determine the extent ...
American Water Cyberattack: Major US Utility Shuts Down Systems After Security Breach
Cybersecurity
American Water Cyberattack: Major US Utility Shuts Down Systems After Security Breach
American Water cyberattack has forced the largest water and wastewater utility company in the US to shut down some of its ...
Application Security
SAP Patches Zero-Day in Commerce Cloud Data Hub Adapter
Cybersecurity
Gunra Ransomware Exploits Fortinet and Schneider Flaws for MFA Bypass
Application Security
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
UDMI Radiology Firm Suffers Major Data Breach: Fog Ransomware Claims Responsibility
Fog ransomware group claims responsibility for a major data breach at UDMI, a radiology firm, impacting over 138,000 individuals. The incident underscores the critical need ...
FBI Issues Warning Against Medusa Ransomware for Gmail, Outlook, and VPN Users
The FBI warns of escalating Medusa ransomware attacks targeting Gmail, Outlook, and VPN users, urging immediate security enhancements to mitigate the threat.
LockBit Ransomware Developer Extradited to the United States
A key LockBit ransomware developer, Rostislav Panev, has been extradited to the US to face charges for his role in the group's global attacks.
Compliance Isn’t Security: Why a Checklist Alone Won’t Stop Cyberattacks
This blog delves into the critical gap between meeting compliance standards and achieving true cybersecurity resilience. Learn why simply checking boxes isn't enough and how ...
Bridging the Gap: Developers vs. Security in the Cloud
In this episode of The Deep Dive, we explore the ongoing tension between development and security teams in cloud environments. While developers prioritize speed and ...
This Week In Cybersecurity: 11th March to 14th March
This week in cybersecurity highlights major incidents, including a $5 million theft from 1inch, a DDoS attack on X, and a significant data breach at ...
Insider Attack and Extortion at Stram Center, SSK Plastic Surgery and Grove at Valhalla Rehabilitation
Three healthcare providers suffered data breaches from insider attacks, extortion, and third-party vulnerabilities, highlighting the need for robust cybersecurity measures.
CISA Reports Medusa Ransomware Attacks Over 300 Critical Infrastructure Organizations
A joint advisory from CISA, FBI, and MS-ISAC reveals Medusa ransomware impacted over 300 US critical infrastructure organizations by February 2025. The advisory details mitigation ...
Critical FreeType Vulnerability Exploited in Attacks: Urgent Update Required
Facebook disclosed a critical FreeType vulnerability (CVE-2025-27363), allowing arbitrary code execution. All versions up to 2.13 are affected; immediate updates are crucial.
Lazarus Group North Korean Hackers Infect Hundreds via Malicious npm Packages
The Lazarus Group, a North Korean hacking collective, deployed six malicious npm packages, infecting hundreds of developers. The packages steal credentials and deploy backdoors.
Sunflower Medical Group Data Breach: Rhysida Ransomware Attack Exposes 220,968 Records
Kansas' Sunflower Medical Group suffered a data breach impacting 220,968 individuals. The Rhysida ransomware group claimed responsibility for the incident in January.
Infostealer Malware Infects 26 Million Devices, Steals Bank Card Data and Passwords
A devastating Infostealer malware campaign has compromised 26 million devices, stealing bank card details and passwords. Kaspersky's report highlights the scale of the threat.
Ransomware Victims on Dark Web – 13th March, 2025
This report summarizes recent ransomware attacks across various sectors, detailing the victims, threat actors, and available information on the incidents. Due to the nature of ...
LockBit Linked SuperBlack Ransomware Exploits Fortinet Authentication Bypass Flaws
New SuperBlack ransomware leverages Fortinet authentication bypass flaws (CVE-2024-55591 and CVE-2025-24472), showing strong ties to LockBit. Immediate patching is crucial.
ClickFix Phishing Campaign Targets Booking.com Using Infostealers and RATs
A sophisticated ClickFix phishing campaign uses fake Booking.com emails to deliver infostealers and RATs, targeting hospitality businesses. Strong security measures are crucial.
Volt Typhoon Energy Grid Cyberattack Exposes US Infrastructure Vulnerabilities
The Volt Typhoon advanced persistent threat (APT) group maintained access to a Massachusetts power utility's OT network for almost a year, highlighting critical infrastructure vulnerabilities.
Australian Financial Firm FIIG Securities Faces Lawsuit After Massive Financial Data Breach
FIIG Securities faces legal action from ASIC for inadequate cybersecurity, leading to a data breach exposing 18,000 clients' sensitive information. The breach highlights the critical ...
Exploring the Dark Web: Unveiling the Hidden Internet 🌐💻
Ever wondered what lies beneath the surface of the internet? 🤔 In this deep dive, we uncover the mysteries of the Dark Web—a hidden part ...
Security vulnerabilities: Key Steps for secure Workflows
Ever wondered how sensitive credentials—like API keys, passwords, and certificates—end up scattered across your systems? 🤔 This hidden cybersecurity risk, known as secret sprawl, makes ...
The Hidden Threat of Wi-Fi Tracking: How Your Devices Reveal Your Location
Did you know your phone is constantly mapping Wi-Fi hotspots around you—even when you’re not using GPS? In this deep dive, we uncover the unsettling ...