Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Health NZ Data Breach Compromises Personal Information of 12k Patients
Security Spotlight
Health NZ Data Breach Compromises Personal Information of 12k Patients
Around 12,000 individuals have been affected in the Health NZ Data Breach cause by a data leak at Te Whatu ...
RansomHouse Performs Automated VMware ESXi Attack with MrAgent Tool
Ransomware
RansomHouse Performs Automated VMware ESXi Attack with MrAgent Tool
The RansomHouse ransomware group recently developed a tool called ‘MrAgent’ for VMware ESXi attacks and streamline the deployment of their ...
Microsoft Critical Exchange Bug Exploited as ‘zero-day’
Security Spotlight
Microsoft Critical Exchange Bug Exploited as ‘zero-day’
Microsoft has issued an updated security advisory, warning about a critical vulnerability in Exchange Server. The Microsoft critical Exchange bug ...
Trans-Northern Pipelines Hit by ALPHV Ransomware Attack
Ransomware
Trans-Northern Pipelines Hit by ALPHV Ransomware Attack
Trans-Northern Pipelines (TNPI) has confirmed and ALPHV ransomware attack that caused a breach within its internal network in November 2023. ...
LockBit Ransomware Claims Cyberattack on Fulton County, Georgia
Ransomware
LockBit Ransomware Claims Cyberattack on Fulton County, Georgia
The cyberattack on Fulton County, Georgia has been attributed to the LockBit ransomware gang. They are claiming responsibility for the ...
Bumblebee Malware Attacks Re-Emerge After a 4 Month Pause, Target US Organizations
Security Spotlight
Bumblebee Malware Attacks Re-Emerge After a 4 Month Pause, Target US Organizations
Proofpoint research has revealed that the Bumblebee malware has resurfaced after being absent from the cyber threat landscape for four ...
Prudential Financial Breached in a Cyberattack, Hackers Stole Sensitive Data
Security Spotlight
Prudential Financial Breached in a Cyberattack, Hackers Stole Sensitive Data
Prudential Financial recently experienced a network breach where unauthorized individuals gained access to employee and contractor data. The Prudential Financial ...
Hackers Mint $290 Million PLA Tokens from PlayDapp Gaming Platform
Security Spotlight
Hackers Mint $290 Million PLA Tokens from PlayDapp Gaming Platform
Hackers have allegedly abused a stolen private key to generate and steal approximately $290 million worth of PLA tokens. These ...
What is the SLAM Method? Identify Phishing Emails with SLAM Method
Blog
What is the SLAM Method? Identify Phishing Emails with SLAM Method
SLAM method stands for: Stop, Look, Ask, and Manage. The method is four step framework that involves double-checking the Sender, ...
Roundcube Email Server Bug Actively Exploited in Attacks: CISA Issues Advisory
News
Roundcube Email Server Bug Actively Exploited in Attacks: CISA Issues Advisory
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding a recently detected vulnerability in Roundcube email servers. ...
Roundcube Email Server Bug Actively Exploited in Attacks: CISA Issues Advisory
News
Bank of America Data Breached: Customers Warned After Vendor Hacked  
The Bank of America data breach exposed personal information after Infosys McCamish Systems (IMS), one of its service providers, was ...
Free Rhysida Ransomware Decryptor Released for Windows
News
Free Rhysida Ransomware Decryptor Released for Windows
South Korean researchers have recently made a discovery regarding the Rhysida ransomware encryptor. They have identified an encryption flaw in ...
New Fortinet RCE flaw in SSL VPN Exploited in the Wild
Security Spotlight
New Fortinet RCE flaw in SSL VPN Exploited in the Wild
Fortinet has issued a warning regarding a serious vulnerability in FortiOS SSL VPN. This Fortinet RCE flaw, identified as CVE-2024-21762 ...
Black Basta Ransomware Attack Hits Hyundai Motor Europe
Security Spotlight
Black Basta Ransomware Attack Hits Hyundai Motor Europe
Hyundai Motor Europe, the European division of Hyundai Motor Company based in Germany, recently fell victim to a Black Basta ...
Raspberry Robin Malware Uses One-Day Exploits to Target Windows
Security Spotlight
Raspberry Robin Malware Uses One-Day Exploits to Target Windows
Recent versions of the Raspberry Robin malware have become more covert and employ one-day exploits that specifically target vulnerable systems. ...
Ransomware Attack Takes 18 Romanian Hospitals Offline
Security Spotlight
Ransomware Attack Takes 18 Romanian Hospitals Offline
A recent cyber attack has disrupted the operations of 18 hospitals in Romania. The targeted healthcare management system, known as ...
CISA Confirms New Fortinet RCE Bug Being Actively Exploited
Security Spotlight
CISA Confirms New Fortinet RCE Bug Being Actively Exploited
Today, the Cybersecurity and Infrastructure Security Agency (CISA) has confirmed the active exploitation of a critical remote code execution (RCE) ...
French Healthcare Data Breach Puts Data of Millions at Risk
Security Spotlight
French Healthcare Data Breach Puts Data of Millions at Risk
Viamedis, a French healthcare services firm, recently experienced a cyberattack that resulted in the exposure of data belonging to policyholders ...
Verizon Data Breach Compromises Data of 63,000 Employees, Insider Leaks Data
Security Spotlight
Verizon Data Breach Compromises Data of 63,000 Employees, Insider Leaks Data
Verizon Communications, a prominent telecommunications and mass media company in the United States, has recently disclosed an insider data breach ...
Lurie Children's Hospital Cyberattack Cripples Healthcare Systems
News
Lurie Children’s Hospital Cyberattack Cripples Healthcare Systems
Lurie Children’s Hospital in Chicago recently encountered a cyberattack that led to a temporary shutdown of its IT systems. Consequently, ...
Application Security
SAP Patches Zero-Day in Commerce Cloud Data Hub Adapter
Cybersecurity
Gunra Ransomware Exploits Fortinet and Schneider Flaws for MFA Bypass
Application Security
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Nidec Corporation Suffers Data Breach: Ransomware Attack Leaks Sensitive Information
Nidec Corporation confirms a ransomware attack leaked 50,694 files, including sensitive business documents, after negotiations with attackers failed.
Rocky Mountain Gastroenterology Suffers Triple Cyberattack, Exposing Data of Up to 169,000 Patients
Rocky Mountain Gastroenterology suffered a devastating triple cyberattack, exposing sensitive data of up to 169,000 patients, highlighting the urgent need for enhanced healthcare cybersecurity.
Intesa Sanpaolo Data Breach: What We Know So Far
Intesa Sanpaolo faced a significant data breach, with an employee allegedly accessing 3,500 customer accounts, including Prime Minister Giorgia Meloni's. No data was exported, but ...
Winnebago Public Schools Shuts Down After Devastating Cyberattack
The Winnebago school cyberattack forced the cancellation of classes. The district experienced widespread service disruptions, leading to early dismissal and Wednesday's school closure.
Transak Hit by Data Breach: 57,000 Users Affected by Stormous Ransomware Attack
Transak, a fiat-to-crypto payment gateway, suffered a data breach impacting 57,000 users. Stormous ransomware group claimed responsibility, exposing personal data despite no financial loss.
Cisco Confirms Data Breach: Public-Facing DevHub Targeted by Hackers
Cisco confirms a breach of its public-facing DevHub, exposing source code, credentials, and API tokens, raising concerns about future attacks despite no internal system compromise.
Internet Archive Breached Again: Stolen Access Tokens Expose Millions of Support Tickets
The Internet Archive suffered a second breach due to exposed GitLab tokens, granting access to 800,000+ Zendesk support tickets and potentially sensitive user data.
Cyberattack Targets Critical Sectors in Cyprus
A major cyberattack targeted critical sectors in Cyprus, causing significant concerns about national security and economic stability. The incident highlights the urgent need for enhanced ...
Cyprus Successfully Defends Against Wave of DDoS Cyberattacks
Cyprus successfully repelled a wave of cyberattacks targeting government and private sector institutions, including a DDoS attack on the gov.cy portal. Authorities responded swiftly, preventing ...
This Week In Cybersecurity: 14th October to 18th October
Live Nation Faces Class Action Lawsuit Following Ticketmaster Data Breach In April 2024, Ticketmaster experienced a significant data breach, exposing the personal information of up ...
Omni Family Health Data Breach: Thousands Affected
The Omni Family Health data breach exposed sensitive information of thousands. Levi & Korsinsky, LLP is investigating potential compensation for affected individuals.
Brazil Apprehends Hacker Responsible for FBI InfraGard and Massive National Public Data Breach
Brazilian police arrested USDoD, the hacker behind the FBI's InfraGard breach and the massive National Public Data breach, exposing the details of billions.
DPS Data Breach Exposes Sensitive Information of Over 115,000 Texans
DPS data breach exposed the personal information of over 115,000 Texans, including Social Security and driver's license numbers. The DPS has yet to notify victims.
Clorox 2023 Cyberattack: A Setback for Clorox’s Sustainability Goals
The Clorox 2023 cyberattack significantly impacted its 2030 sustainability goals, causing operational disruptions and delaying progress on reducing plastic waste.
Alliance Laundry Systems Data Breach: Sensitive Customer Data Compromised
Alliance Laundry Systems suffered a data breach, exposing customer names, Social Security numbers, financial information, and driver's license numbers. Data breach notification letters are being ...
Live Nation Faces Class Action Lawsuit Following Ticketmaster Data Breach
Live Nation faces a class-action lawsuit after a Ticketmaster data breach exposed the personal information of up to 560 million users, highlighting inadequate security measures. ...
Cisco Investigates Data Breach Following Alleged Sale of Stolen Data on Hacking Forum
Cisco investigates a potential data breach after a threat actor allegedly sold stolen data, including source code and customer information, on a hacking forum.
Axis Health System Suffers Rhysida Ransomware Attack
Axis Health System, a Colorado healthcare provider, suffered a Rhysida ransomware attack, temporarily shutting down its patient portal and raising concerns about patient data.
Calgary Public Library Cyberattack Limits Essential Services
A cyberattack on the Calgary Public Library has limited services, shutting down computer access, Wi-Fi, and the digital library. The library remains open, but with ...
7 Best Patch Management Tools for Streamlining Enterprise Security
Robust patch management is critical. This comprehensive guide explores the leading patch management tools, helping enterprise businesses choose the best solution for their needs. We ...