Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
UAC-0184 Uses Steganography to Execute IDAT Loader and Install Remcos RAT
Cybersecurity
UAC-0184 Uses Steganography to Execute IDAT Loader and Install Remcos RAT
A hacking group known as ‘UAC-0184’ using steganographic image files and IDAT loader Malware to distribute the Remcos RAT (remote ...
RCMP Cyberattack Takes Down All Main Websites
Cybersecurity
RCMP Cyberattack Takes Down All Main Websites
The Royal Canadian Mounted Police (RCMP) is currently dealing with an alarming cyber attack initiated by an unidentified threat actor. ...
U-Haul Data Breach Compromises Personal Information of 67K Customers
News
U-Haul Data Breach Compromises Personal Information of 67K Customers
U-Haul has recently informed a 67K of customers about a data breach that occurred last year.   The U-Haul Data ...
Insomniac Investigates Games Rhysida Ransomware Data Breach and Alerts Employees
News
Return of the Lockbit: LockBit Ransomware Returns and ReLaunches Its Dark Web Leak Site
LockBit ransomware returns and resumes its ransomware activities on a new infrastructure shortly after their servers were compromised by law ...
Insomniac Investigates Games Rhysida Ransomware Data Breach and Alerts Employees
News
Insomniac Investigates Games Rhysida Ransomware Data Breach and Alerts Employees
Insomniac Games, a subsidiary of Sony, is taking action after the Rhysida Ransomware Data Breach incident. Following a Rhysida ransomware ...
Connectwise ScreenConnect Servers Hacked in LockBit Ransomware Attack, CISA Orders Feds to Fix the Bug in a Week
News
Connectwise ScreenConnect Servers Hacked in LockBit Ransomware Attack, CISA Orders Feds to Fix the Bug in a Week
Lockbit Ransomware hackers are currently taking advantage of a critical authentication bypass vulnerability in Connectwise ScreenConnect servers that have not ...
UnitedHealth Faces Outage as Optum Hack Forced Shutdown of Healthcare Billing Systems
News
UnitedHealth Faces Outage as Optum Hack Forced Shutdown of Healthcare Billing Systems
UnitedHealth Group, a prominent healthcare company, has confirmed the Optum Hack as its subsidiary, Optum Solutions, experienced a cyberattack on ...
Migo Malware Targets Redis Servers and Disables Protection Features
News
Migo Malware Targets Redis Servers and Disables Protection Features
Security researchers have recently uncovered a new campaign aimed at Linux hosts, specifically targeting Redis servers. This campaign employs a ...
PSI Software Ransomware Attack Shuts Down Company IT and Email Systems
News
PSI Software Ransomware Attack Shuts Down Company IT and Email Systems
PSI Software SE, a software developer based in Germany specializing in complex production and logistics processes, has officially confirmed that ...
Tangerine Cyber Incident: Australian ISP Tangerine Suffers Cyberattack
Cybersecurity
Tangerine Cyber Incident: Australian ISP Tangerine Suffers Cyberattack
Tangerine cyber incident led to a data breach where hackers obtained the personal information of over 200,000 customers. The compromised ...
Joomla Fixes Critical XSS Vulnerabilities in Joomla CMS
News
Joomla Fixes Critical XSS Vulnerabilities in Joomla CMS
The open-source project responsible for maintaining Joomla, a widely used content management system, has released a patch to address Critical ...
Cambridge University Targeted by Anonymous Sudan in DDoS Attacks
News
iSoon Leaks Internal Documents, GitHub Data Leak Reveals Sensitive Documents & Conversation Logs from Chinese Ministry
The open-source project responsible for maintaining Joomla, a widely used content management system, has released a patch to address Critical ...
Cambridge University Targeted by Anonymous Sudan in DDoS Attacks
News
Cambridge University Cyberattack Claimed by Anonymous Sudan Using DDoS Attacks
The group known as Anonymous Sudan has been involved in a series of DDoS attacks targeting well-known UK universities, specifically ...
Notorious LockBit Ransomware Disrupted by Global Police, NCA Takes Control of Website
News
Notorious LockBit Ransomware Disrupted by Global Police, NCA Takes Control of Website
With the LockBit ransomware disrupted, the LockBit’s Website has been taken over and replaced with law enforcement agencies’ logos from ...
Cactus Ransomware Claims to Have Stolen 1.5TB from Schneider Electric Data Breach
News
Cactus Ransomware Claims to Have Stolen 1.5TB from Schneider Electric Data Breach
The Cactus ransomware group announced that they successfully infiltrated Schneider Electric’s network and seized approximately 1.5TB of data. As evidence, ...
Cyberattack On ETISALAT Claimed by LockBit Ransomware Group, Demands $100K for Stolen Data
News
Cyberattack On ETISALAT Claimed by LockBit Ransomware Group, Demands $100K for Stolen Data
The Cactus ransomware group announced that they successfully infiltrated Schneider Electric’s network and seized approximately 1.5TB of data. As evidence, ...
Critical RCE bugs Found in SolarWinds Access Rights Manager (ARM)
News
Critical RCE bugs Found in SolarWinds Access Rights Manager (ARM)
SolarWinds has successfully addressed multiple critical RCE bugs that were present in its Access Rights Manager (ARM) solution. Access Rights ...
Blackcat/ALPHV Ransomware Claims loanDepot and Prudential Financial Breaches
News
Hackers Claim Robert Half Data Breach, Put Sensitive Data on Sale
The notorious hackers, known as IntelBroker and Sanggiero, have announced that they possess a significant amount of data from Robert ...
Blackcat/ALPHV Ransomware Claims loanDepot and Prudential Financial Breaches
News
Blackcat/ALPHV Ransomware Claims loanDepot and Prudential Financial Breaches
The Blackcat/ALPHV ransomware gang has announced that they are responsible for infiltrating the networks of Prudential Financial, and for the ...
This Week in Cybersecurity: Feb 12th - Feb 16th, Ransomware Attack Takes 18 Romanian Hospitals Offline
News
This Week in Cybersecurity: Feb 12th – Feb 16th, Ransomware Attack Takes 18 Romanian Hospitals Offline
Ransomware Attack Takes 18 Romanian Hospitals Offline A ransomware attack encrypted the database of the Hipocrate Information System, a medical ...
Application Security
SAP Patches Zero-Day in Commerce Cloud Data Hub Adapter
Cybersecurity
Gunra Ransomware Exploits Fortinet and Schneider Flaws for MFA Bypass
Application Security
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Central Bank Cyprus Says 14.3% of Businesses Hit by Cyberattacks
Cyprus reports 14.3% of businesses experienced cyberattacks, highlighting rising EU cybersecurity risks. Proactive measures like mandatory penetration testing are being implemented to address vulnerabilities.
Transport for London (TFL) Restores Oyster Photocards Services and Offers Refunds
Transport for London (TfL) is now processing TfL refunds for Oyster photocard users affected by a recent cyberattack. Learn how to claim your reimbursement for ...
This Week In Cybersecurity: 28th October to 1st November
CRA Data Breach Exposes Tens of Thousands of Taxpayer Accounts, Millions Lost in Bogus Refunds A significant data breach at the Canada Revenue Agency (CRA) ...
Trinity Ransomware: Major Threat to the Healthcare Industry
The newly discovered Trinity ransomware is a significant threat to the healthcare industry, with at least one U.S. hospital already affected. HHS issued a warning ...
Nine Class-Action Lawsuits Filed After New Jersey Water Company Data Breached
Nine class-action lawsuits have been filed against a New Jersey utility company following a data breach of unknown scope. The company, American Water, serves over ...
ZircoDATA Cybersecurity Breach Exposes Sensitive Australian Data
A major cybersecurity breach at ZircoDATA, an Australian data firm, exposed sensitive personal information, impacting hundreds of organizations and highlighting the need for stronger data ...
PSAUX Ransomware Attack Cripples 22,000 CyberPanel Instances
The PSAUX ransomware attack exploited critical vulnerabilities in CyberPanel, crippling over 22,000 instances and encrypting countless files. A decryptor is now available.
Interbank Confirms Data Breach Following Failed Extortion Attempt
Interbank, a Peruvian bank, confirms a massive data breach after a failed extortion attempt. Millions of customer records, including financial details, were leaked online.
LottieFiles npm Supply Chain Attack Drains Cryptocurrency Wallets
A npm supply chain attack targeted LottieFiles, compromising versions 2.0.5-2.0.7 of its "lottie-player" package and leading to cryptocurrency theft. Users are urged to upgrade immediately.
Advanced Recovery Equipment & Supplies Data Breach Impacts Customer Information
Advanced Recovery Equipment & Supplies LLC suffered a data breach in 2023, exposing customer names, Social Security numbers, medical information, and more. Data breach notification ...
Ticking Time Bomb or Opportunity? How to Secure Remote Work Environments
Remote work has revolutionized the workplace, but it has also introduced a new wave of security threats. Unvetted software, vulnerable home networks, and public Wi-Fi ...
Boart Longyear Data Breach Compromised Sensitive Customer Information
Boart Longyear, a global drilling company, experienced a data breach exposing sensitive customer information, including Social Security numbers and medical records. The company is sending ...
France’s Second-Largest ISP, Free, Suffers Data Breach
France's second-largest internet service provider (ISP), Free, has confirmed a significant data breach affecting some of its 22.9 million subscribers.
Cash App Data Breach Settlement: Only Few Weeks to Claim $2,575 in Compensation
Cash App users affected by the 2022 data breach have until November 19th to claim up to $2,575 in compensation for the incident.
Wichita County Cyberattack: 47,000 Residents Affected by Data Breach
The Wichita County cyberattack exposed the sensitive data of 47,000 residents, including SSNs and medical records. The Medusa ransomware gang claimed responsibility, demanding a ransom ...
CRA Data Breach Exposes Tens of Thousands of Taxpayer Accounts, Millions Lost in Bogus Refunds
Tens of thousands of Canadian taxpayers were victims of a massive CRA data breach, resulting in millions of dollars in fraudulent refunds and exposing systemic ...
Fog Ransomware Exploits SonicWall VPN Vulnerability to Breach Corporate Networks
Fog ransomware exploits a critical SonicWall VPN vulnerability (CVE-2024-40766), enabling rapid network breaches and data encryption. Prompt patching is crucial.
This Week In Cybersecurity: 21st October to 25th October
Cyberattack Targets Critical Sectors in Cyprus A significant cyberattack has compromised critical infrastructure in Cyprus, highlighting vulnerabilities to sophisticated threats. The specifics remain undisclosed, but ...
Johnson & Johnson Data Breach Exposes Personal Information of 3,200 Individuals
A data breach at Johnson & Johnson's insurance arm compromised personal information from 3,200 individuals. The company is offering credit monitoring and identity restoration services.
Hot Topic Data Breach: Millions of Customers Potentially Affected
A massive data breach at Hot Topic potentially exposed millions of customers' personal information, highlighting