Cyber Security
Four Nation-State Groups Deploy BlueMoon Kit Within 12 Days
NSA, CISA, FBI Accuse Six Chinese AI Firms of Model Distillation
UNC3569 Exploits Sogou Input Method to Deploy GRAYRABBIT Backdoor
Attackers Use BYOD Weaknesses to Access M365 via Graph API
Surfshark VPN Breach Exposes Internal Testing and Proxy Servers
Citrix NetScaler CVE-2026-19490 Exploited Since September 3
CISA Sets September 12 Deadline for Cisco, Citrix, Fortinet Flaws
Infostealer Logs Expose Replayable AI Tokens That Bypass MFA
Google Patches Seventh Chrome Zero-Day of 2026, CVE-2026-87491
PoisonedRefresh Rootkit Injects PHP Web Shells into F5 BIG-IP Memory
September Windows Server Updates Break Remote Desktop Services
Microsoft Excel KB5002914 Update Breaks Copy and Paste Functions
cPanel Critical RCE Enables Full Server Takeover via Mail Account
SAP Patches CVSS 10.0 Kernel RCE in Extended Passport Processing
Microsoft Ships Record 974 Security Patches in September Batch
ShinyHunters Claims Breach of Florida DMV DAVID Database
Grindr Settles UK HIV Data Sharing Lawsuit for £26 Million
Liquid Network Attackers Return 3,400 Bitcoin, Keep $47 Million
OpenAI Artifactory Flaw Enabled Cross-Account Data Theft
Boston Scientific Cyberattack Damages Q3 and Full-Year Earnings
Ohio Man Sentenced to 15 Years for AI-Generated Sextortion
LG Accused of Privacy Violations Over Smart TV Data Collection
Microsoft Adds Age-Awareness APIs to Windows 11
EU Cyber Resilience Act 24-Hour Vulnerability Deadline Arrives
UK Lawmakers Question Cyber Bill’s Executive Liability Exemption
Welsh Regulator Exposes 2,000 Staff Diversity Records via FoI Error
OpenAI Agent Swarm Logs Reveal Emergent Deception and Coordination
PEEP Toolkit Turns Chrome and Edge Into Post-Exploitation Backdoors
Magento StyleSmuggler Zero-Day Deploys Linux Backdoors on Stores
Mathspace Breach Exposes Data of Over 1 Million Students and Staff
Salt Typhoon APT Subverts Law Enforcement Wiretapping
Cybersecurity
Salt Typhoon APT Subverts Law Enforcement Wiretapping
The Chinese state-sponsored Salt Typhoon APT infiltrated US broadband providers, accessing law enforcement wiretapping systems and general internet traffic, potentially for months. This represents a ...
ADT Discloses Second Breach in 2 Months: Stolen Credentials Fuel Data Exfiltration
News
ADT Discloses Second Breach in 2 Months: Stolen Credentials Fuel Data Exfiltration
Casio's network suffered a significant breach on October 5th, 2024, causing IT system failures and service disruptions. The investigation is ongoing to determine the extent ...
MoneyGram Cyberattack: Hackers Confirmed to Have Stolen Customer Data
News
MoneyGram Cyberattack: Hackers Confirmed to Have Stolen Customer Data
The MoneyGram cyberattack resulted in the theft of customer data, including transaction details, personal information, and government IDs. The attackers used social engineering to gain ...
Casio Network Breach: IT Systems Fail After CyberAttack
News
Casio Network Breach: IT Systems Fail After CyberAttack
Casio's network suffered a significant breach on October 5th, 2024, causing IT system failures and service disruptions. The investigation is ongoing to determine the extent ...
American Water Cyberattack: Major US Utility Shuts Down Systems After Security Breach
Cybersecurity
American Water Cyberattack: Major US Utility Shuts Down Systems After Security Breach
American Water cyberattack has forced the largest water and wastewater utility company in the US to shut down some of its ...
FBCS Data Breach Impacts Millions, Including Comcast and Truist Bank Customers
News
FBCS Data Breach Impacts Millions, Including Comcast and Truist Bank Customers
The FBCS data breach exposed the personal information of millions, including Comcast and Truist Bank customers, highlighting the vulnerability of sensitive data within third-party systems.
Highline Public Schools Ransomware Attack Forces the School to Shut Down Classes
News
Highline Public Schools Ransomware Attack Forces the School to Shut Down Classes
Highline Public Schools confirmed a ransomware attack caused its September shutdown, impacting over 17,500 students. The district is rebuilding systems and re-imaging devices, offering employees ...
MoneyGram Cyberattack: No Ransomware Evidence Found, Social Engineering Suspected
News
MoneyGram Cyberattack: No Ransomware Evidence Found, Social Engineering Suspected
MoneyGram's recent cyberattack, initially suspected to be ransomware, was instead caused by a social engineering attack targeting the company's internal help desk.
Red Barrels, Outlast Developer, Suffers Data Breach: Source Code, Employee Data Compromised
News
Red Barrels, Outlast Developer, Suffers Data Breach: Source Code, Employee Data Compromised
Red Barrels, the Outlast developer, suffered a major data breach, compromising source code, employee data, and financial information, causing significant production delays.
This Week In Cybersecurity: 30th September to 4th October
Cybersecurity
This Week In Cybersecurity: 30th September to 4th October
This Week In Cybersecurity: 30th September to 04th October highlights major incidents, including Bank of America's outage causing $0 balance displays, CF Medical's data breach, ...
Bank of America Outage: Is Your Account Balance Zero?
News
Bank of America Outage: Is Your Account Balance Zero?
A Bank of America outage left many customers seeing $0 balances, sparking widespread concern and frustration. The issue, which affected Zelle payments, is largely resolved, ...
Urgent Security Alert: Critical Ivanti Endpoint Manager Vulnerabilities Discovered
News
Urgent Security Alert: Critical Ivanti Endpoint Manager Vulnerabilities Discovered
Critical Ivanti Endpoint Manager vulnerabilities (CVE-2023-35083 & CVE-2023-35084) allow unauthorized file access and exfiltration. Immediate patching is crucial
Wayne County Cyberattack Cripples Government Services; Ransom Demand Fuels Investigation
News
Wayne County Cyberattack Cripples Government Services: Ransom Demand Fuels Investigation
Wayne County cyberattack crippled government services, with hackers demanding a ransom. The FBI and Michigan State Police are investigating.
Verizon Outage Leaves Hundreds of Thousands Without Service
News
Verizon Outage Leaves Hundreds of Thousands Without Service
A major Verizon outage left over 200,000 customers without cell service for over 10 hours. Verizon cited a "network issue" but offered no further details ...
Feldstein & Stewart Data Breach Letter Sent to 8,171 Individuals
News
Feldstein & Stewart Data Breach Letter Sent to 8,171 Individuals
Feldstein & Stewart sent a data breach letter to 8,171 individuals following a serious security incident that compromised sensitive consumer information.
CF Medical Announces Data Breach Stemming from FBCS Data Breach
News
CF Medical Announces Data Breach Stemming from FBCS Data Breach
CF Medical announced a data breach linked to FBCS data breach, exposing sensitive consumer information. Notifications have been sent to affected individuals.
Wells Fargo Announces Data Breach Cause by Unauthorized Access by Former Employee
News
Wells Fargo Announces Data Breach Cause by Unauthorized Access by Former Employee
Wells Fargo has reported a data breach due to unauthorized access by a former employee. Sensitive customer information was compromised, prompting immediate notifications.
New York Sports Club Data Breach: 19,836 Individuals Affected
News
New York Sports Club Data Breach: 19,836 Individuals Affected
The New York Sports Club data breach has affected 19,836 individuals, exposing sensitive employee information such as Social Security numbers and passport numbers.
Community Clinic of Maui Data Breach: LockBit Ransomware Attack Exposes Patient Data
News
Community Clinic of Maui Data Breach: LockBit Ransomware Attack Exposes Patient Data
The Community Clinic of Maui suffered a significant data breach after a LockBit ransomware attack in May, exposing sensitive patient information. The clinic is working ...
FCC Fines T-Mobile US $31.4 Million for Data Breaches
News
FCC Fines T-Mobile US $31.4 Million for Data Breaches
The FCC fined T-Mobile US $31.4 million for multiple data breaches, impacting millions of customers and mandating significant cybersecurity improvements.
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
ShinyHunters Claims Breach of Florida DMV DAVID Database
Application Security
GoldFactory and Mantax Otax Target Indonesian Android Bank Users
CVE Vulnerability Alerts
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Application Security
Judge Rules Pentagon Actions Against Anthropic Unlawful
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Volt Typhoon Energy Grid Cyberattack Exposes US Infrastructure Vulnerabilities
The Volt Typhoon advanced persistent threat (APT) group maintained access to a Massachusetts power utility's OT network for almost a year, highlighting critical infrastructure vulnerabilities.
Australian Financial Firm FIIG Securities Faces Lawsuit After Massive Financial Data Breach
FIIG Securities faces legal action from ASIC for inadequate cybersecurity, leading to a data breach exposing 18,000 clients' sensitive information. The breach highlights the critical ...
Exploring the Dark Web: Unveiling the Hidden Internet 🌐💻
Ever wondered what lies beneath the surface of the internet? 🤔 In this deep dive, we uncover the mysteries of the Dark Web—a hidden part ...
Security vulnerabilities: Key Steps for secure Workflows
Ever wondered how sensitive credentials—like API keys, passwords, and certificates—end up scattered across your systems? 🤔 This hidden cybersecurity risk, known as secret sprawl, makes ...
The Hidden Threat of Wi-Fi Tracking: How Your Devices Reveal Your Location
Did you know your phone is constantly mapping Wi-Fi hotspots around you—even when you’re not using GPS? In this deep dive, we uncover the unsettling ...
MassJacker Malware: Clipboard Hijacking Malware Tartgets 778,000 CryptoWallets
MassJacker malware uses clipboard hijacking to steal cryptocurrency from 778,000 wallets, highlighting sophisticated obfuscation and a potentially massive financial impact.
Cyberattack on Sunflower Medical Group and Multiple Healthcare Providers Suffer Data Breaches
Multiple healthcare providers suffered significant cyberattacks and data breaches in 2025, exposing sensitive patient information, highlighting the urgent need for enhanced cybersecurity measures.
Rhode Island’s Community Care Alliance Data Breach Exposes 114K Records, Central Texas Pediatric Orthopedics and Whitman Hospital Report Cyberattacks
Community Care Alliance Data Breach with 114,975 Records Exposed, Central Texas Pediatric Orthopedics and Whitman Hospital Report Cyberattacks
PowerSchool Hacked Way Back in August, Before December’s Data Breach
PowerSchool's December 2024 data breach was preceded by hacks in August and September, exposing sensitive data for millions of students and teachers. A CrowdStrike investigation ...
Hillcrest Convalescent Center, Bay Cove Human Services and SMC Corporation of America Report Data Breaches
Hillcrest Convalescent Center, Bay Cove Human Services and SMC Corporation of America have all reported Data Breaches
Zero Trust & Data Security: The Future of Protecting Government Information
In this episode, we dive into a crucial topic—data security for government agencies. With evolving cyber threats, traditional security measures no longer cut it. We ...
X Hit by Cyberattack: DDoS Assault by Dark Storm Group Causes Worldwide Outages
X faced a massive cyberattack, with Dark Storm claiming responsibility for a significant DDoS assault, causing widespread outages and prompting the use of Cloudflare's DDoS ...
Elon Musk Claims ‘Massive Cyberattack’ on X Originated from Ukraine
Elon Musk confirmed a massive cyberattack on X, originating from the Ukraine area, causing widespread service disruptions and highlighting the vulnerability of major tech platforms.
New York Sues Allstate and National General Over Data Breaches
New York sues Allstate and National General for failing to protect consumer data, resulting in two major data breaches exposing thousands of driver's license numbers.
Cl0p Ransomware Published Rackspace Files on Leak Site
Cl0p ransomware publishes Rackspace files after ignored demands, exposing hundreds of Cleo victims. This data breach highlights the ongoing threat to enterprise and cloud security.
WordPress Vulnerability Expolited to Hack Moroccan Data Protection Authority Website
Morocco's data protection authority website suffered a WordPress plugin vulnerability exploit, resulting in reputational damage despite no sensitive data loss.
Japanese telco NTT Communications hacked hackers accessed details of almost 18,000 organizations
panese telecommunications giant NTT Communications Corporation (NTT Com) has disclosed a data breach affecting information from nearly 18,000 corporate clients. The breach was identified on ...
NBA and NASCAR Accounts on X Hacked to Promote Cryptocurrency Scams
The official NBA and NASCAR accounts on X were hacked to promote fake cryptocurrencies, raising serious concerns about cybersecurity and user safety on social media.
$5 Million Stolen from 1inch Due to Smart Contract Flaw
On March 5, 2025, 1inch confirmed a $5 million theft due to a smart contract flaw, affecting only resolver funds, not end-user assets.
US Cities Warn of Parking Phishing Texts Used to Steal Personal Data
US cities warn residents about a new wave of phishing texts claiming unpaid parking fees, threatening fines and attempting to steal personal information.