Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
How Authentication Failure Led to the Change Healthcare Ransomware Attack
Blog
When Credentials Fail: How Authentication Failure Led to the Change Healthcare Ransomware Attack
As ransomware attacks continue to grow in frequency and sophistication, the cybersecurity of enterprise networks is constantly being challenged. While ...
This Week in Cybersecurity – April 15th to April 19th: Giant Tiger Data Breached
News
This Week in Cybersecurity – April 15th to April 19th: Giant Tiger Data Breached
Giant Tiger Data Breached, RansomHub Ransomware Leaks Change Healthcare data, Cerebral Settles Facebook Pixel Data Case at $7 Million  Giant ...
Identity Management Giant Okta Warns of Credential Stuffing Attacks
News
Identity Management Giant Okta Warns of Credential Stuffing Attacks
Identity and access management provider Okta has warned customers of a significant uptick in credential stuffing attacks targeting their accounts ...
Kaiser Permanente Data Breach May Have Exposed Data of Over 13 Million Patients
Cybersecurity
Kaiser Data Breach May Have Exposed Data of Over 13 Million Patients
The Kaiser Permanente data breach leaked personal information on around 13.4 million individuals across the United States. Details of the ...
Georgia County Hit with Ransomware Attack Disrupting Voter Registration System
Ransomware
Georgia County Hit with Ransomware Attack Disrupting Voter Registration System
On April 22nd, 2024, Coffee County, Georgia fell victim to a sophisticated ransomware attack that crippled many of the county’s ...
Patients' Data Exposed in Phishing Attack Targeting LA County Health Services
Phishing
Patients Data Exposed in Phishing Attack Targeting LA County Health Services
The Los Angeles County Department of Health Services (LACDHS) recently disclosed a major data breach impacting an unknown number of ...
This Week in Cybersecurity: April 22 – April 26, UnitedHealth Group Pays Ransom
Cybersecurity
This Week in Cybersecurity: April 22 – April 26, UnitedHealth Group Pays Ransom
UnitedHealth Group Pays Ransom, Hackers leak Code of El Salvador’s Chivo Wallet, Volkswagen Breached, Synlab Italia hit by ransomware, Frontier ...
ArcaneDoor Hackers Exploit Cisco Zero-Days to Breach Government Networks
News
ArcaneDoor Hackers Exploit Cisco Zero-Days to Breach Government Networks
Cisco has warned of a sophisticated state-backed hacking group known as UAT4356 exploiting two zero-day vulnerabilities in Cisco firewall devices ...
Hackers leak Code of El Salvador’s Official State Bitcoin Wallet “Chivo”
News
Hackers leak Code of El Salvador’s Official State Bitcoin Wallet “Chivo”
In early April, the hacker group CiberInteligenciaSV leaked the complete database of Chivo users. Since then, they have been gradually releasing the code of the ...
What are Insider Threats: Preventing Cyber Threats from Malicious Insiders
Blog
What are Insider Threats: Preventing Cyber Threats from Malicious Insiders
Organizations face cybersecurity threats both from external sources and from within their own ranks. Insider threats, in particular, have become ...
UnitedHealth Group Confirms Ransom Payment to Prevent Data Leak
News
UnitedHealth Group Confirms Ransom Payment to Prevent Data Leak
The UnitedHealth Group has recently acknowledged that it made a payment to cybercriminals to safeguard sensitive data that was stolen ...
Hackers Exploit eScan Antivirus Updates to Drop GuptiMiner Malware
Cybersecurity
Hackers Exploit eScan Antivirus Updates to Drop GuptiMiner Malware
North Korean hackers have recently been utilizing the updating mechanism of eScan antivirus software to infiltrate large corporate networks. They ...
Volkswagen Breached by Chinese Hackers
News
Volkswagen Breached by Chinese Hackers
Volkswagen Group has experienced a huge security breach, with reports indicating that over 19,000 intellectual property documents were stolen by ...
Synlab Italia Forced to Halt Operations After a Ransomware Attack
News
Synlab Italia Forced to Halt Operations After a Ransomware Attack
Synlab Italia, a subsidiary of the global Synlab group, has temporarily halted its medical diagnostic and testing services due to ...
APT28 Uses GooseEgg to Exploit Windows Flaw
Cybersecurity
APT28 Uses GooseEgg to Exploit Windows Flaw
Microsoft has issued a warning regarding the activities of the APT28 threat group. APT28 is currently exploiting a vulnerability in ...
Frontier Communications Cyberattack Disrupts IT Systems
News
Frontier Communications Cyberattack Disrupts IT Systems
Frontier Communications, a prominent American telecom provider known for its high-speed internet services, recently experienced a cyberattack. To contain the ...
Akira Ransomware Extorted $42 Million from 250+ Victims: FBI and CISA Issues Joint Advisory
News
Akira Ransomware Extorted $42 Million from 250+ Victims: FBI and CISA Issues Joint Advisory
According to a joint advisory from the FBI, CISA, Europol’s European Cybercrime Centre (EC3), and the Netherlands’ National Cybersecurity Centre ...
FIN7 Attempts Phishing at American Automaker’s IT Staff
News
FIN7 Attempts Phishing at American Automaker’s IT Staff
The financially motivated threat actor known as FIN7 recently executed a targeted attack against a prominent U.S. car manufacturer. Their ...
8Base Ransomware Claims Breach on Atlantic States Marine Fisheries Commission
News
8Base Ransomware Claims Breach on Atlantic States Marine Fisheries Commission
A fisheries management organization on the East Coast is currently addressing a cyber incident in response to claims made by ...
Cerebral Settles Suit at $7 Million in Facebook Pixel Data Leak Case
News
Cerebral Settles Suit at $7 Million in Facebook Pixel Data Leak Case
The U.S. Federal Trade Commission has recently reached a settlement with telehealth firm Cerebral. As part of the settlement, Cerebral ...
Application Security
SAP Patches Zero-Day in Commerce Cloud Data Hub Adapter
Cybersecurity
Gunra Ransomware Exploits Fortinet and Schneider Flaws for MFA Bypass
Application Security
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Bitter Cyberespionage Group Leverages New MiyaRAT Malware to Target Turkish Defense Organizations
The Bitter cyberespionage group is targeting Turkish defense organizations with the new MiyaRAT malware, a sophisticated RAT with enhanced encryption and capabilities.
Namibia Ransomware Attack: Sensitive Data of Government Officials and Citizens Leaked
Namibia's Telecom Namibia suffered a major ransomware attack, leaking sensitive data of government officials and citizens. The hackers, Hunters International, released the data after a ...
FBI Warns of HiatusRAT Malware Attacks Targeting Web Cameras and DVRs
The FBI warns of widespread HiatusRAT malware attacks targeting vulnerable web cameras and DVRs, primarily Chinese-branded devices, exploiting known vulnerabilities and weak passwords. Urgent action ...
Texas Tech University Data Breach Exposes Data of 1.4 Million Patients
A cyberattack on the Texas Tech University Health Sciences Center exposed the sensitive data of 1.4 million patients, including names, addresses, Social Security numbers, and ...
Nebraska AG Files Change Healthcare Lawsuit Following Devastating Data Breach
Nebraska Attorney General Mike Hilgers filed a lawsuit against Change Healthcare, alleging failures after a data breach exposed sensitive information of hundreds of thousands of ...
Cleo Data Theft: Clop Ransomware Gang Takes Credit for Attack
Clop ransomware group has confirmed its role in the recent Cleo data theft attacks, leveraging zero-day exploits in Cleo's file transfer platforms to steal sensitive ...
Rhode Island RIBridges Data Breach: Ransomware Attack Poses Imminent Data Leak Threat
Rhode Island RIBridges data breach: Hackers threaten to release sensitive data IMMINENTLY.
390,000 WordPress Accounts Hacked by MUT-1244 in Supply Chain Attack
Over 390,000 WordPress credentials were stolen in a year-long supply chain attack by MUT-1244, compromising security researchers, penetration testers, and even other malicious actors. The ...
This Week In Cybersecurity: 9th December to 13th December
Krispy Kreme Cyberattack Disrupts Online Orders, Impacts US Operations Krispy Kreme confirmed a cyberattack on November 29, 2024, disrupting its online ordering system, which accounts ...
New IOCONTROL Malware Threatens Critical Infrastructure in Israel and the US
Iranian-linked hackers are using the newly discovered IOCONTROL malware to target critical infrastructure in Israel and the US, compromising IoT devices and SCADA systems. The ...
Byte Federal Data Breach Exposes Sensitive Information of 58,000 Users
A major Byte Federal data breach exposed the personal data of 58,000 users due to a GitLab vulnerability. The breach included sensitive information like names, ...
AWS Cyberattack Exposes Sensitive Data of Customers: Stolen Credentials Found in Plain Sight
A significant cyberattack exploited misconfigured AWS cloud instances, resulting in the theft of sensitive customer data, including credentials and API keys. The stolen information was ...
EagleMsgSpy Spyware Used by Chinese Police
Researchers uncover EagleMsgSpy, a sophisticated Android spyware developed by Wuhan Chinasoft and used by Chinese law enforcement to steal sensitive data from mobile devices, including ...
Data Breach Exposes 765,000 Senior Dating Website Users
A significant data breach at Senior Dating, a platform for users aged 40+, exposed the personal details of 765,517 individuals. The exposed data included email ...
Krispy Kreme Cyberattack Disrupts Online Orders, Impacts US Operations
Krispy Kreme Cyberattack: A Detailed Look at the Incident On November 29th, 2024, Krispy Kreme, Inc., the renowned American multinational doughnut and coffeehouse chain, fell ...
Artivion, Leading US Heart Surgery Device Maker, Crippled by Ransomware Attack
Artivion, a prominent heart surgery device manufacturer, suffered a ransomware attack on November 21st, causing operational disruptions and data theft. The incident involved file encryption ...
Equifax Data Breach Settlement Update Payments, Eligibility, and Identity Theft Recovery
The Equifax data breach settlement offers compensation and identity theft recovery services to affected individuals. Payments are expected in December 2024, with identity theft services ...
Children’s Hospital Colorado Hit with $500,000 Fine for HIPAA Violation Following Data Breach
Children's Hospital Colorado was fined $500,000 by HHS for HIPAA violations related to two data breaches in 2017 and 2020, impacting over 10,000 patients' protected ...
Amergis Healthcare Staffing Data Breach: Compromised Email Accounts Expose Sensitive Consumer Information
Amergis Healthcare Staffing, Inc. announced a data breach stemming from compromised email accounts, potentially exposing sensitive consumer information. The breach led to data breach notification ...
Electrica Cyberattack: Romanian Energy Giant Faces Ransomware Attack, Assures Customers of Safety
Romanian energy provider Electrica is battling a ransomware cyberattack, disrupting customer interactions but assuring critical systems remain unaffected. Authorities are investigating.