Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Juniper Fixes Junos OS Critical RCE Vulnerability in its SRX and EX Devices
Cybersecurity
Juniper Fixes Junos OS Critical RCE Vulnerability in its SRX and EX Devices
Juniper Networks has recently addressed a Critical RCE Vulnerability in their SRX Series firewalls and EX Series switches. This issue, ...
This Week in Cybersecurity: 8th Jan - 12th Jan - SEC X Account Hack Creates Chaos
News
This Week in Cybersecurity: 8th Jan – 12th Jan – SEC X Account Hack Creates Chaos
US SEC X Account Hacked, Hackers Post Fake Bitcoin ETF Approval Tweet The U.S. Securities and Exchange Commission’s X account ...
SEC Account Hack Again Catches News Spotlight Amidst Security Concerns
News
SEC Account Hack Again Catches News Spotlight Amidst Security Concerns
The recent SEC account hack on X has raised fresh concerns regarding the security of the social media platform. These ...
10 Major Data Breaches and Cyber Attacks 2023
Blog
10 Major Data Breaches and Cyber Attacks 2023
Cyber attacks today have become a daily occurrence in today’s hyperconnected world. With more users and devices getting online each ...
Ivanti Critical EPM Bug Allows Hackers to Hijack EPM Devices
Cybersecurity
Ivanti Critical EPM Bug Allows Hackers to Hijack EPM Devices
Ivanti has successfully addressed a critical remote code execution (RCE) vulnerability in its Endpoint Management software (EPM). The Ivanti critical ...
US SEC’s X Account Hacked, Hackers Post Fake Bitcoin ETF Approval Tweet
Security Spotlight
US SEC’s X Account Hacked, Hackers Post Fake Bitcoin ETF Approval Tweet
The U.S. Securities and Exchange Commission’s X account experienced a security breach. As a result, a false Bitcoin ETF Approval ...
LockBit Ransomware Claims Capital Health Attack, Threatens to Leak Sensitive Data
Security Spotlight
LockBit Ransomware Claims Capital Health Attack, Threatens to Leak Sensitive Data
The LockBit ransomware group has acknowledged their involvement in the Capital Health attack that took place in November 2023. The ...
Ukrainian Hacker Group Takes Down Moscow ISP as a Revenge for Kyivstar Cyber Attack
Security Spotlight
Ukrainian Hacker Group Takes Down Moscow ISP as a Revenge for Kyivstar Cyber Attack
A Ukrainian hacker group, believed to be connected to Ukraine’s intelligence took and carried out a destructive attack on the ...
Hackers Can Now Access Your Google Accounts without Password
News
Hackers Can Now Access Your Google Accounts Without Password
Security researchers have recently discovered a sophisticated hacking technique that enables cyber criminals to gain unauthorized entry into individuals’ Google ...
CISA Identifies Actively Exploited Bugs in Chrome and Excel Parsing Library
Cybersecurity
CISA Identifies Actively Exploited Bugs in Chrome and Excel Parsing Library
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified two Actively Exploited Bugs in Chrome and Excel Parsing Library ...
Mandiant Security Breached: Account on X Hacked for Crypto Scam
News
Mandiant Security Breached: Account on X Hacked for Crypto Scam
The X account of Mandiant, an American cybersecurity firm and subsidiary of Google, was compromised. The Mandiant Security Breach resulted ...
Russian Sandworm Hackers Lurked Inside KyivStar Systems in KyivStar Cyber Attack
News
Russian Sandworm Hackers Lurked Inside KyivStar Systems in KyivStar Cyber Attack
The Russian Sandworm hackers successfully breached Kyivstar and stayed inside KyivStar systems for several months. Ukraine’s largest telecommunications service provider, ...
HealthEC Data Breach Exposes Data of Almost 4.5 Million Patients
News
HealthEC Data Breach Exposes Data of Almost 4.5 Million Patients
HealthEC LLC, a New Jersey-based provider of health management solutions, has suffered a major data breach that exposed personally identifiable ...
Orbit Chain Lost $86 Million in a Cross-Chain Bridge Exploit Attack
News
Orbit Chain Lost $86 Million in a Cross-Chain Bridge Exploit Attack
Orbit Chain Lost $86 Million in cryptocurrency, specifically Ether, Dai, Tether, and USD Coin. Orbit Chain is a blockchain platform ...
Victoria Court Hack Exposes Victorian Court Recordings: Sensitive Witness Testimonies Stolen
News
Victoria Court Hack Exposes Victorian Court Recordings: Sensitive Witness Testimonies Stolen
The Victoria Court Hack resulted in hackers gaining unauthorized access to the audio-visual network and stealing Victorian court recordings. The ...
Ohio Lottery Cyber Attack: Another Cybersecurity Incident Claimed by DragonForce Ransomware
News
Ohio Lottery Cyber Attack: Another Cybersecurity Incident Claimed by DragonForce Ransomware
The Ohio Lottery cyber attack on Christmas Eve resulted in the shutdown of certain internal applications. While the exact details ...
Eagers Automotive Cyberattack Forces the Company to Suspend Trades
Security Spotlight
Eagers Automotive Cyberattack Forces the Company to Suspend Trades
Eagers Automotive cyberattack lead to a temporary suspension of trading on the stock exchange. Eagers Automotive operates a vast network ...
Black Basta Decryptor Recovers Files Exploiting a Ransomware Flaw
Blog
Black Basta Decryptor Recovers Files Exploiting a Ransomware Flaw
A team of researchers has developed a Black Basta decryptor that takes advantage of a vulnerability in the Black Basta ...
Google Settles $5 Billion Lawsuit for Tracking Users in 'Incognito' Mode
Cybersecurity
Google Settles $5 Billion Lawsuit for Tracking Users in Incognito Mode
Google settles $5 billion lawsuit that revolved around Google’s Chrome browser’s “incognito” mode. The plaintiffs argued that this feature misled ...
Albanian Parliament Cyber Attack: Homeland Justice Hits Albanian Parliament and One Albania Telecom
Cybersecurity
Albanian Parliament Cyber Attack: Homeland Justice Hits Albanian Parliament and One Albania Telecom
In the complex realm of cyber warfare, the Albanian Parliament and One Albania Telecom have made the headlines. As the ...
Application Security
SAP Patches Zero-Day in Commerce Cloud Data Hub Adapter
Cybersecurity
Gunra Ransomware Exploits Fortinet and Schneider Flaws for MFA Bypass
Application Security
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Dell Investigates Data Breach Claims After Hacker Leaks Employee Info
Dell Data Breach: Hacker Leaks Employee Information, Company Investigates
23andMe Board Resigns Amidst CEO’s Takeover Bid: A Battle for Control
All independent directors of 23andMe have resigned, citing disagreements with CEO Anne Wojcicki's plan to take the company private. This leaves Wojcicki as the sole ...
CrowdStrike Outage Sparks Security Vendor Switches: Businesses Seek Resilience After Widespread Downtime
A CrowdStrike outage in July left millions of Windows devices offline, prompting some businesses to switch security vendors.
Change Healthcare Data Breach Class Action Lawsuits Update
Change Healthcare, a major healthcare technology company, suffered a massive data breach in February 2024, exposing the personal and medical information of an estimated 100 ...
Change Healthcare Data Breach Letter: What You Need to Know and How to Protect Yourself
Many in the Ozarks have received letters from Change Healthcare notifying them of a data breach. The letter details the breach, which occurred in February, ...
Disney’s Slack Data Breach Forces Disney’s to Ditch Slack
Disney is severing ties with Slack after a major data breach exposed sensitive company information, highlighting the growing cybersecurity threat landscape.
DFA Data Breach: Cybersecurity Issues Put 28 Million Passports at Risk
The Department of Foreign Affairs (DFA) in the Philippines faces a potential DFA data breach affecting over 28 million passport holders due to a lack ...
38,000 Tools Shoppers Compromised in Total Tools Data Breach
Australian hardware retailer Total Tools has confirmed a data breach affecting 38,000 customers, potentially exposing sensitive information including names, login details, and credit card information.
Harvey Nichols Data Breach: High-End Retailer Confirms Customer Data Exposure in Cyberattack
High-end British department store Harvey Nichols has confirmed a data breach affecting its customers, exposing personal information including names, addresses, phone numbers, and email addresses. ...
What is Secure by Design? A Guide for Enterprise Businesses
Secure by Design is a philosophy that emphasizes building security into the very core of software development, from the initial conceptualization to deployment and beyond. ...
Dr.Web Suffers Major Data Breach, Disconnects All Servers
Dr.Web, A Cybersecurity Firm Was Targeted in a Cyberattack Resulting in Data Breach
Vanilla Tempest Hackers Use INC Ransomware to Target Healthcare
A recent report from Microsoft reveals that a ransomware affiliate known as Vanilla Tempest has been observed using the INC ransomware to target U.S. healthcare organizations.
Compass Group Hit by Medusa Ransomware
The Compass Group, a leading global food services company headquartered in Sydney, has confirmed a significant cyberattack targeting its systems.
German Radio Station Hit by Cyberattack: “Emergency Tape” Plays On as Hackers Demand Ransom
Radio Geretsried, a local radio station in Bavaria, has been forced to broadcast music from emergency backups after a ransomware attack crippled its systems.
Hunters International Ransomware Claims Breach of ICBC London, Threatens Data Leak
The ransomware group Hunters International has claimed responsibility for a data breach at the London branch of the Industrial and Commercial Bank of China (ICBC), ...
Data Breaches Surge to Three-Year High in Australia: A Growing Threat to Privacy and Security
Data Breaches Surge to Three-Year High in Australia
23andMe to Pay $30 Million in Class Action Settlement for Data Breach Exposing 6.4 Million Customers
DNA testing giant 23andMe has agreed to pay $30 million to settle a class-action lawsuit stemming from a data breach that compromised the personal ...
FlyCASS Cockpit Security Breach: A Case Study of SQL Injection and its Impact on Critical Infrastructure
The recent discovery of a critical SQL injection vulnerability in the FlyCASS cockpit access security system should serve as a stark reminder for enterprise businesses: cybersecurity ...
This Week In Cybersecurity: 9th September to 13th September
Avis has reported a data breach involving unauthorized access to its business application, exposing customer names and potentially sensitive information.
What is a Whaling Phishing Attack?
Whaling phishing, also known simply as whaling, is a highly targeted and sophisticated form of phishing attack that specifically targets high-level executives within an organization, such ...