Cyber Security
Four Nation-State Groups Deploy BlueMoon Kit Within 12 Days
NSA, CISA, FBI Accuse Six Chinese AI Firms of Model Distillation
UNC3569 Exploits Sogou Input Method to Deploy GRAYRABBIT Backdoor
Attackers Use BYOD Weaknesses to Access M365 via Graph API
Surfshark VPN Breach Exposes Internal Testing and Proxy Servers
Citrix NetScaler CVE-2026-19490 Exploited Since September 3
CISA Sets September 12 Deadline for Cisco, Citrix, Fortinet Flaws
Infostealer Logs Expose Replayable AI Tokens That Bypass MFA
Google Patches Seventh Chrome Zero-Day of 2026, CVE-2026-87491
PoisonedRefresh Rootkit Injects PHP Web Shells into F5 BIG-IP Memory
September Windows Server Updates Break Remote Desktop Services
Microsoft Excel KB5002914 Update Breaks Copy and Paste Functions
cPanel Critical RCE Enables Full Server Takeover via Mail Account
SAP Patches CVSS 10.0 Kernel RCE in Extended Passport Processing
Microsoft Ships Record 974 Security Patches in September Batch
ShinyHunters Claims Breach of Florida DMV DAVID Database
Grindr Settles UK HIV Data Sharing Lawsuit for £26 Million
Liquid Network Attackers Return 3,400 Bitcoin, Keep $47 Million
OpenAI Artifactory Flaw Enabled Cross-Account Data Theft
Boston Scientific Cyberattack Damages Q3 and Full-Year Earnings
Ohio Man Sentenced to 15 Years for AI-Generated Sextortion
LG Accused of Privacy Violations Over Smart TV Data Collection
Microsoft Adds Age-Awareness APIs to Windows 11
EU Cyber Resilience Act 24-Hour Vulnerability Deadline Arrives
UK Lawmakers Question Cyber Bill’s Executive Liability Exemption
Welsh Regulator Exposes 2,000 Staff Diversity Records via FoI Error
OpenAI Agent Swarm Logs Reveal Emergent Deception and Coordination
PEEP Toolkit Turns Chrome and Edge Into Post-Exploitation Backdoors
Magento StyleSmuggler Zero-Day Deploys Linux Backdoors on Stores
Mathspace Breach Exposes Data of Over 1 Million Students and Staff
ZircoDATA Cybersecurity Breach Exposes Sensitive Australian Data
News
ZircoDATA Cybersecurity Breach Exposes Sensitive Australian Data
A major cybersecurity breach at ZircoDATA, an Australian data firm, exposed sensitive personal information, impacting hundreds of organizations and highlighting the need for stronger data ...
PSAUX Ransomware Attack Cripples 22,000 CyberPanel Instances
News
PSAUX Ransomware Attack Cripples 22,000 CyberPanel Instances
The PSAUX ransomware attack exploited critical vulnerabilities in CyberPanel, crippling over 22,000 instances and encrypting countless files. A decryptor is now available.
Interbank Confirms Data Breach Following Failed Extortion Attempt
News
Interbank Confirms Data Breach Following Failed Extortion Attempt
Interbank, a Peruvian bank, confirms a massive data breach after a failed extortion attempt. Millions of customer records, including financial details, were leaked online.
LottieFiles npm Supply Chain Attack Drains Cryptocurrency Wallets
News
LottieFiles npm Supply Chain Attack Drains Cryptocurrency Wallets
A npm supply chain attack targeted LottieFiles, compromising versions 2.0.5-2.0.7 of its "lottie-player" package and leading to cryptocurrency theft. Users are urged to upgrade immediately.
Advanced Recovery Equipment & Supplies Data Breach Impacts Customer Information
News
Advanced Recovery Equipment & Supplies Data Breach Impacts Customer Information
Advanced Recovery Equipment & Supplies LLC suffered a data breach in 2023, exposing customer names, Social Security numbers, medical information, and more. Data breach notification ...
Ticking Time Bomb or Opportunity How to Secure Remote Work Environments
Blog
Ticking Time Bomb or Opportunity? How to Secure Remote Work Environments
Remote work has revolutionized the workplace, but it has also introduced a new wave of security threats. Unvetted software, vulnerable home networks, and public Wi-Fi ...
Boart Longyear Data Breach Compromised Sensitive Customer Information
News
Boart Longyear Data Breach Compromised Sensitive Customer Information
Boart Longyear, a global drilling company, experienced a data breach exposing sensitive customer information, including Social Security numbers and medical records. The company is sending ...
France's Second-Largest ISP, Free, Suffers Data Breach
News
France’s Second-Largest ISP, Free, Suffers Data Breach
France's second-largest internet service provider (ISP), Free, has confirmed a significant data breach affecting some of its 22.9 million subscribers.
Cash App Data Breach Settlement: Only Few Weeks to Claim $2,575 in Compensation
News
Cash App Data Breach Settlement: Only Few Weeks to Claim $2,575 in Compensation
Cash App users affected by the 2022 data breach have until November 19th to claim up to $2,575 in compensation for the incident.
Wichita County Cyberattack: 47,000 Residents Affected by Data Breach
News
Wichita County Cyberattack: 47,000 Residents Affected by Data Breach
The Wichita County cyberattack exposed the sensitive data of 47,000 residents, including SSNs and medical records. The Medusa ransomware gang claimed responsibility, demanding a ransom ...
CRA Data Breach Exposes Tens of Thousands of Taxpayer Accounts, Millions Lost in Bogus Refunds
News
CRA Data Breach Exposes Tens of Thousands of Taxpayer Accounts, Millions Lost in Bogus Refunds
Tens of thousands of Canadian taxpayers were victims of a massive CRA data breach, resulting in millions of dollars in fraudulent refunds and exposing systemic ...
Fog Ransomware Exploits SonicWall VPN Vulnerability to Breach Corporate Networks
News
Fog Ransomware Exploits SonicWall VPN Vulnerability to Breach Corporate Networks
Fog ransomware exploits a critical SonicWall VPN vulnerability (CVE-2024-40766), enabling rapid network breaches and data encryption. Prompt patching is crucial.
This Week In Cybersecurity: 21st October to 25th October
Cybersecurity
This Week In Cybersecurity: 21st October to 25th October
Cyberattack Targets Critical Sectors in Cyprus A significant cyberattack has compromised critical infrastructure in Cyprus, highlighting vulnerabilities to sophisticated threats. ...
Johnson & Johnson Data Breach Exposes Personal Information of 3,200 Individuals
News
Johnson & Johnson Data Breach Exposes Personal Information of 3,200 Individuals
A data breach at Johnson & Johnson's insurance arm compromised personal information from 3,200 individuals. The company is offering credit monitoring and identity restoration services.
Hot Topic Data Breach: Millions of Customers Potentially Affected
News
Hot Topic Data Breach: Millions of Customers Potentially Affected
A massive data breach at Hot Topic potentially exposed millions of customers' personal information, highlighting
Nidec Corporation Suffers Data Breach: Ransomware Attack Leaks Sensitive Information
News
Nidec Corporation Suffers Data Breach: Ransomware Attack Leaks Sensitive Information
Nidec Corporation confirms a ransomware attack leaked 50,694 files, including sensitive business documents, after negotiations with attackers failed.
Rocky Mountain Gastroenterology Suffers Triple Cyberattack, Exposing Data of Up to 169,000 Patients
News
Rocky Mountain Gastroenterology Suffers Triple Cyberattack, Exposing Data of Up to 169,000 Patients
Rocky Mountain Gastroenterology suffered a devastating triple cyberattack, exposing sensitive data of up to 169,000 patients, highlighting the urgent need for enhanced healthcare cybersecurity.
Intesa Sanpaolo Data Breach: What We Know So Far?
News
Intesa Sanpaolo Data Breach: What We Know So Far
Intesa Sanpaolo faced a significant data breach, with an employee allegedly accessing 3,500 customer accounts, including Prime Minister Giorgia Meloni's. No data was exported, but ...
Winnebago Public Schools Shuts Down After Devastating Cyberattack
News
Winnebago Public Schools Shuts Down After Devastating Cyberattack
The Winnebago school cyberattack forced the cancellation of classes. The district experienced widespread service disruptions, leading to early dismissal and Wednesday's school closure.
Transak Hit by Data Breach: 57,000 Users Affected by Stormous Ransomware Attack
News
Transak Hit by Data Breach: 57,000 Users Affected by Stormous Ransomware Attack
Transak, a fiat-to-crypto payment gateway, suffered a data breach impacting 57,000 users. Stormous ransomware group claimed responsibility, exposing personal data despite no financial loss.
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
ShinyHunters Claims Breach of Florida DMV DAVID Database
Application Security
GoldFactory and Mantax Otax Target Indonesian Android Bank Users
CVE Vulnerability Alerts
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Application Security
Judge Rules Pentagon Actions Against Anthropic Unlawful
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Arcane Infostealer Infects YouTube and Discord Users Through Game Cheats
The Arcane infostealer, a new malware, is stealing data from YouTube and Discord users via game cheats, targeting VPNs, messengers, and cryptocurrency wallets. Its sophisticated ...
Pennsylvania Education Union Data Breach Impacts 500,000 Individuals
he Pennsylvania State Education Association (PSEA) suffered a data breach exposing the personal information of over 500,000 individuals, including financial and health records. Rhysida ransomware ...
Ransomware Victims on Dark Web – 12th March, 2025
This report summarizes recent ransomware attacks across various sectors, detailing the victims, threat actors, and available information on the incidents. Due to the nature of ...
Ransomware Victims on Dark Web – 3rd March, 2025
This report summarizes recent ransomware attacks across various sectors, detailing the victims, threat actors, and available information on the incidents. Due to the nature of ...
Qilin/Agenda Ransomware: The Credential Stealers
Overview The Qilin ransomware group, also known as Agenda, is a Russia-based ransomware-as-a-service (RaaS) operation active since at least July 2022. Initially operating under the ...
MegaRAC CVE-2024-54085 Vulnerability: Critical BMC Flaw Threatening Data Centers
A newly discovered critical vulnerability (CVE-2024-54085) in AMI’s MegaRAC Baseboard Management Controller (BMC) software puts thousands of servers at risk—including those from HPE, Asus, and ...
California Cryobank Data Breach Exposes Sensitive Customer Information
California Cryobank, a major US sperm bank, suffered a data breach exposing customer names, bank details, Social Security numbers, and more. The company is offering ...
GitHub Action Hack May Cause Another Supply Chain Attack
A cascading supply chain attack, starting with a GitHub Action hack, exposed CI/CD secrets across 23,000 repositories, highlighting vulnerabilities in third-party code reliance.
Western Alliance Bank Data Breach Impacts 21,899 Customers
Western Alliance Bank suffered a data breach impacting 21,899 customers, exposing sensitive personal and financial information due to a third-party vendor's software vulnerability exploited by ...
11 State-Sponsored Hacking Groups Exploit Windows Zero-Day Exploit
A critical Windows zero-day exploit, ZDI-CAN-25373, has been exploited by 11 state-sponsored hacking groups since 2017, enabling data theft and espionage. Microsoft initially declined to ...
Microsoft Windows March Update Wipes Out Copilot
Microsoft’s latest Windows 10 and 11 updates (KB5053598 and KB5053606) have accidentally uninstalled Copilot, the AI assistant, from some users’ systems—leaving many relieved rather than ...
$6.1 Million Crypto Stolen in WEMIX Hack
WEMIX, a blockchain gaming platform, suffered a $6.1 million crypto theft. Hackers stole authentication keys, planning the attack for two months before executing 13 successful ...
The Mirai Botnet: The Infamous DDoS Weapon
The Mirai botnet, a notorious piece of malware, launched devastating DDoS attacks in 2016. This blog post delves into its origins, spread, impact, and the ...
StilachiRAT Malware Steals Crypto Using Advanced Reconnaissance
Microsoft discovered StilachiRAT, a new RAT malware using sophisticated techniques to steal cryptocurrency and perform reconnaissance. Its advanced evasion capabilities make proactive defense crucial.
GitHub Action Supply Chain Attack Exposes CI/CD Secrets
A supply chain attack on the popular tj-actions/changed-files GitHub Action exposed CI/CD secrets. Attackers compromised a PAT, impacting 23,000 repositories. GitHub has since removed the ...
Critical Apache Tomcat Flaw Actively Exploited in Attacks
Critical Apache Tomcat RCE vulnerability (CVE-2025-24813) is actively exploited, allowing attackers to take control of servers via simple PUT requests. Immediate patching is crucial.
Fake “Security Alert” on GitHub Used to Hijack OAuth App Accounts
A massive GitHub phishing campaign uses fake "Security Alert" issues and a malicious OAuth app to hijack accounts, granting attackers full control. Immediate action is ...
Lingnan University Suffers Cybersecurity Breach: Sensitive Data Exposed
Lingnan University in Hong Kong suffered a data breach exposing thousands of records, including sensitive personal data. The university is taking steps to enhance security.
Hackers Flip the Script: How a Fake Coinbase Email Could Empty Your Wallet
A new and incredibly deceptive phishing campaign is targeting Coinbase users—but this isn’t your typical scam. Instead of stealing your recovery phrase, attackers are handing ...
Florida Hospital Data Breach Impacts Over 120,000 Patients
A Florida hospital, CDH, suffered a data breach impacting over 120,000 patients. Sensitive data, including Social Security numbers and health information, was compromised. The BianLian ...