Cyber Security
Four Nation-State Groups Deploy BlueMoon Kit Within 12 Days
NSA, CISA, FBI Accuse Six Chinese AI Firms of Model Distillation
UNC3569 Exploits Sogou Input Method to Deploy GRAYRABBIT Backdoor
Attackers Use BYOD Weaknesses to Access M365 via Graph API
Surfshark VPN Breach Exposes Internal Testing and Proxy Servers
Citrix NetScaler CVE-2026-19490 Exploited Since September 3
CISA Sets September 12 Deadline for Cisco, Citrix, Fortinet Flaws
Infostealer Logs Expose Replayable AI Tokens That Bypass MFA
Google Patches Seventh Chrome Zero-Day of 2026, CVE-2026-87491
PoisonedRefresh Rootkit Injects PHP Web Shells into F5 BIG-IP Memory
September Windows Server Updates Break Remote Desktop Services
Microsoft Excel KB5002914 Update Breaks Copy and Paste Functions
cPanel Critical RCE Enables Full Server Takeover via Mail Account
SAP Patches CVSS 10.0 Kernel RCE in Extended Passport Processing
Microsoft Ships Record 974 Security Patches in September Batch
ShinyHunters Claims Breach of Florida DMV DAVID Database
Grindr Settles UK HIV Data Sharing Lawsuit for £26 Million
Liquid Network Attackers Return 3,400 Bitcoin, Keep $47 Million
OpenAI Artifactory Flaw Enabled Cross-Account Data Theft
Boston Scientific Cyberattack Damages Q3 and Full-Year Earnings
Ohio Man Sentenced to 15 Years for AI-Generated Sextortion
LG Accused of Privacy Violations Over Smart TV Data Collection
Microsoft Adds Age-Awareness APIs to Windows 11
EU Cyber Resilience Act 24-Hour Vulnerability Deadline Arrives
UK Lawmakers Question Cyber Bill’s Executive Liability Exemption
Welsh Regulator Exposes 2,000 Staff Diversity Records via FoI Error
OpenAI Agent Swarm Logs Reveal Emergent Deception and Coordination
PEEP Toolkit Turns Chrome and Edge Into Post-Exploitation Backdoors
Magento StyleSmuggler Zero-Day Deploys Linux Backdoors on Stores
Mathspace Breach Exposes Data of Over 1 Million Students and Staff
Top 5 Dangerous Cyberattack Techniques in 2024
Blog
Top 5 Dangerous Cyberattack Techniques in 2024
SANS Institute reveals the top 5 dangerous cyberattack techniques for 2024. Learn how to protect your enterprise from these evolving threats.
AFP Cyberattack: Security Breach at French News Agency Exposes Critical Infrastructure Vulnerabilities
Cybersecurity
AFP Cyberattack: Security Breach at French News Agency Exposes Critical Infrastructure Vulnerabilities
The AFP cyberattack disrupted the French news agency's systems, highlighting the growing threat to media outlets and critical infrastructure. The perpetrators and motives remain unknown.
Critical Flaw in NVIDIA Container Toolkit Allows Full Host Takeover
News
Critical Flaw in NVIDIA Container Toolkit Allows Full Host Takeover
A critical flaw (CVE-2024-0132) in NVIDIA Container Toolkit allows container escape, granting full host access and enabling attackers to execute commands and exfiltrate data.
UMC Hospital Lubbock Still Crippled by Devastating Ransomware Attack
News
UMC Hospital Lubbock Still Crippled by Devastating Ransomware Attack
UMC hospital in Lubbock faces a crippling ransomware attack, diverting ambulances and impacting patient care. The emergency room remains open, but the IT outage persists. ...
What is DNS SpoofingDNS Cache Poisoning and How Can It Compromise Your Network
Blog
What is DNS Spoofing/DNS Cache Poisoning and How Can It Compromise Your Network?
DNS spoofing, also known as DNS cache poisoning, is a malicious technique that exploits vulnerabilities in the DNS system to redirect users to fraudulent websites, ...
This Week In Cybersecurity: 23rd September to 27th September
Cybersecurity
This Week In Cybersecurity: 23rd September to 27th September
Harvey Nichols Data Breach: High-End Retailer Confirms Customer Data Exposure in Cyberattack Harvey Nichols has confirmed a data breach affecting ...
Meta Fined €91 Million: DPC Concludes Inquiry into Data Breach
News
Meta Fined €91 Million: DPC Concludes Inquiry into Data Breach
Meta Platforms Ireland Limited has been fined €91 million by the Data Protection Commission for failing to protect user passwords adequately, highlighting the importance of ...
MC2 Data Leak: Over 100 Million Americans Exposed in Massive Data Breach
News
MC2 Data Leak: Over 100 Million Americans Exposed in Massive Data Breach
The MC2 Data breach has exposed the sensitive personal information of over 100 million Americans, representing nearly a third of the US population.
FBI and Homeland Security Investigate Critical Water Facility Cyberattack in Kansas
News
FBI and Homeland Security Investigate Critical Water Facility Cyberattack in Kansas
FBI and Homeland Security investigate a Kansas water facility cyberattack, forcing manual operations but ensuring uninterrupted service. The incident highlights critical infrastructure vulnerabilities.
AutoCanada Ransomware Attack: Employee Data Compromised
News
AutoCanada Ransomware Attack: Employee Data Compromised
AutoCanada's August ransomware attack, claimed by Hunters International, may have exposed employee data including payroll, addresses, and social security numbers.
US Capitol Dark Web Cyber Attack: Thousands of Staffers' Data Leaked
News
US Capitol Dark Web Cyber Attack: Thousands of Staffers’ Data Leaked
A massive Dark Web Cyber Attack on the US Capitol has exposed personal information of over 3,000 congressional staffers.
MoneyGram Cyberattack: Outage Enters Day Three, Ransomware Suspected
News
MoneyGram Cyberattack: Outage Enters Day Three, Ransomware Suspected
MoneyGram, a leading global money transfer company, is facing a major outage that has disrupted its systems and payment services for three days. The company ...
Dell Data Breached Again! Hackers Claim Second Attack Within a Week, Exposing 3.5GB of Data
News
Dell Data Breached Again! Hackers Claim Second Attack Within a Week, Exposing 3.5GB of Data
Hackers claim a second Dell data breach within a week, accessing 3.5GB of company data, including internal infrastructure information and user credentials.
The Chaser Cyberattack: Hong Kong Diaspora Media in Britain Reports 'Government-Backed' Attacks
News
The Chaser Cyberattack: Hong Kong Diaspora Media in Britain Reports ‘Government-Backed’ Attacks
A Hong Kong diaspora news website in Britain, The Chaser, has reported a "government-backed" cyberattack targeting its company email, raising concerns about the growing pressure ...
Kansas Water Facility Cyberattack: Arkansas City Water Treatment Plant Targeted
News
Kansas Water Facility Cyberattack: Arkansas City Water Treatment Plant Targeted
Hackers targeted the water treatment plant in Arkansas City, Kansas, prompting a federal investigation. The city assured residents that the water supply is safe, and ...
Dell Investigates Data Breach Claims After Hacker Leaks Employee Info
News
Dell Investigates Data Breach Claims After Hacker Leaks Employee Info
Dell Data Breach: Hacker Leaks Employee Information, Company Investigates
23andMe Board Resigns Amidst CEO's Takeover Bid: A Battle for Control
Cybersecurity
23andMe Board Resigns Amidst CEO’s Takeover Bid: A Battle for Control
All independent directors of 23andMe have resigned, citing disagreements with CEO Anne Wojcicki's plan to take the company private. This leaves Wojcicki as the sole ...
CrowdStrike Outage Sparks Security Vendor Switches: Businesses Seek Resilience After Widespread Downtime
News
CrowdStrike Outage Sparks Security Vendor Switches: Businesses Seek Resilience After Widespread Downtime
A CrowdStrike outage in July left millions of Windows devices offline, prompting some businesses to switch security vendors.
Change Healthcare Data Breach Class Action Lawsuits Update
Cybersecurity
Change Healthcare Data Breach Class Action Lawsuits Update
Change Healthcare, a major healthcare technology company, suffered a massive data breach in February 2024, exposing the personal and medical information of an estimated 100 ...
Change Healthcare Data Breach Letter: What You Need to Know and How to Protect Yourself
News
Change Healthcare Data Breach Letter: What You Need to Know and How to Protect Yourself
Many in the Ozarks have received letters from Change Healthcare notifying them of a data breach. The letter details the breach, which occurred in February, ...
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
ShinyHunters Claims Breach of Florida DMV DAVID Database
Application Security
GoldFactory and Mantax Otax Target Indonesian Android Bank Users
CVE Vulnerability Alerts
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Application Security
Judge Rules Pentagon Actions Against Anthropic Unlawful
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Chicago Public Schools Data Breach Exposes Hundreds of Thousands of Student Records
Hundreds of thousands of Chicago Public School students' data was exposed in a recent data breach, affecting names, birthdates, and student IDs. The FBI and ...
Bank of America Issues Warning on Data Breach: Millions of Accounts at Risk
Bank of America has announced a massive data breach affecting millions, with customers' sensitive information potentially compromised due to a vendor's mishandling of documents.
Data Breach Settlement: Rite Aid Agrees to Pay $6.8 Million to Affected Customers
Rite Aid has agreed to a $6.8 million settlement following a data breach affecting over 2 million customers, emphasizing the need for robust cybersecurity measures.
New Chirp Tool Using Audio Tones for Data Transit Between Devices
The new Chirp tool allows data transfer between devices using audio tones, offering a unique and engaging way to communicate.
1 Million Devices Hit: Inside the Massive Malvertising Campaign
A massive malvertising campaign has compromised one million devices worldwide, using malicious ads on illegal streaming websites to distribute malware. Dubbed Storm-0408, this cybercrime operation ...
Inside the $635K Taylor Swift Ticket Heist: Cybercrime, Loopholes, and Insider Threats
A cybercrime operation involving the theft and resale of $635,000 worth of concert tickets—primarily for Taylor Swift’s Eras Tour—has been uncovered. New York prosecutors revealed ...
Akira Ransomware Uses Webcam to Bypass EDR
The Akira ransomware gang has found a way to bypass EDR by exploiting unsecured webcams, demonstrating a new level of sophistication in cyberattacks.
Microsoft Reports Malvertising Campaign Impacted 1 Million PCs
Microsoft reports a large malvertising campaign has impacted nearly one million PCs, using malicious ads on streaming sites to deploy malware.
Taylor Swift Ticket Scam: Cybercrime Crew Steals $635,000
A cybercrime crew stole $635,000 worth of concert tickets, primarily for Taylor Swift's Eras Tour, exploiting a StubHub vendor loophole. Two employees were arrested and ...
Scott County Breach: Email Account Compromises Patient Data
The Scott County breach involved unauthorized access to email accounts, compromising protected health information for thousands of individuals across Iowa.
Silk Typhoon Strikes: From Direct Breaches to Stealthy Supply Chain Attacks
In this episode, we take an in-depth look at Silk Typhoon, the Chinese state-sponsored cyber espionage group that’s radically shifting its tactics. Moving away from ...
12,000 API Keys and Passwords Found in AI Training Datasets
Nearly 12,000 API keys and passwords were discovered in the Common Crawl dataset used for training AI models, highlighting significant security risks for enterprises. Many ...
Open-Source Tool Rayhunter Helps Users Detect Stingray Attacks
The EFF has introduced Rayhunter, an open-source tool for detecting Stingray attacks, helping users safeguard their sensitive data from unauthorized access.
Fake BianLian Ransom Notes Mailed to US CEOs in Postal Mail Scam
Scammers are impersonating the BianLian group, mailing fake ransom notes to US CEOs, threatening data leaks unless Bitcoin payments are made.
BadBox Malware Disrupted on 500K Infected Android Devices
The BadBox malware disruption has impacted over 500,000 devices, revealing the urgency of addressing cybersecurity threats in low-cost Android devices.
Silk Typhoon Hackers Now Target IT Supply Chains to Breach Networks
The Silk Typhoon hackers have shifted tactics, now focusing on IT supply chains to infiltrate networks and exploit sensitive data across multiple industries.
YouTube Warns of AI-Generated Phishing Attacks Targeting Creators
AI-generated video of YouTube's CEO is being used in phishing attacks to steal creators' credentials. YouTube warns users to avoid suspicious private videos and links.
US Charges Chinese Hackers Targeting Critical Infrastructure Breaches
US charges Chinese state security officers and hackers from APT27 and i-Soon for global cyberattacks targeting critical infrastructure and government agencies since 2011.
Hunters International Claims Ransomware Attack on Tata Technologies: 1.4TB Data Breached
Hunters International ransomware claims responsibility for a major attack on Tata Technologies, stealing 1.4 TB of data and threatening to release it.
Black Basta and Cactus Ransomware: Shared Tactics and BackConnect Malware Connection
Black Basta and Cactus ransomware groups share similar tactics and use BackConnect malware, highlighting the need for robust cybersecurity measures in enterprise businesses.