Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Canadian Government's Data Security Compromised Affecting its Contractors
Cybersecurity
Canadian Government’s Data Security Compromised Affecting its Contractors
In a recent cybersecurity incident, the Canadian government has reported that two of its contractors, Brookfield Global Relocation Services (BGRS) ...
Security Spotlight
Microsoft Exchange Zero-Day Exploit: Experts Say Mitigation isn’t Enough
Microsoft has shared mitigations for two new Microsoft Exchange zero-day elevation of privelege vulnerability, tracked as CVE-2022-41040, and remote execution ...
Application Security
SAP Patches Zero-Day in Commerce Cloud Data Hub Adapter
Cybersecurity
Gunra Ransomware Exploits Fortinet and Schneider Flaws for MFA Bypass
Application Security
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
North Korean Hackers Exploit Chrome Zero-Day to Deploy Rootkit
North Korean hackers have successfully exploited a recently patched Google Chrome zero-day vulnerability (CVE-2024-7971) to deploy the FudModule rootkit.
Voldemort Malware: A New Threat Abusing Google Sheets for Data Exfiltration
A new malware campaign has emerged, targeting organizations across the globe with a previously undocumented backdoor named "Voldemort."
Park ‘N Fly Data Breach Impacts Nearly a Million Customers: Sensitive Information Compromised in Cyberattack
Park 'N Fly, a Canadian airport parking service, has confirmed a data breach affecting nearly a million customers. The cyberattack, occurring between July 11-13, 2024, ...
Cucamonga Valley Water District Hit by Ransomware Attack
The Cucamonga Valley Water District (CVWD) is investigating a ransomware attack that paralyzed its phone system earlier this month, preventing customers from making phone payments. ...
US Marshals Service Disputes Ransomware Gang’s Breach Claims
US Marshals Service Denies Recent Breach
BlackSuit Ransomware Exposes Data of 950,000 Individuals in Software Vendor Breach
A Major Data Breach Hits Atlanta-Based Software Solutions Provider, BlackSuit Ransomware Exposes Data of 950,000.
McDonald’s Instagram Hacked in $700,000 Fake Crypto Scheme
A brazen cyberattack targeting McDonald's social media accounts has resulted in a $700,000 loss for unsuspecting investors.
Connecticut Nonprofit Pays $1 Million Ransom After Sophisticated Cyberattack
A Connecticut-based nonprofit, the National Association for Amateur Radio (ARRL), has fallen victim to a sophisticated cyberattack that cost them $1 million in ransom.
Sea-Tac Airport Hit by Cyberattack, Disrupting Services and Websites
Airport and Port of Seattle Systems Down, Baggage Handling Disrupted after Sea-Tac Airport faces Cyberattack.
Patelco Credit Union Suffers Ransomware Data Breach, Affecting 726,000 Customers
Patelco Credit Union Faces Ransomware Attack and Data Theft
French Government Websites Under Siege Following Telegram CEO Arrest
A Cyberattack in the Wake of Durov's Detention
This Week in Cybersecurity: 19th August to 23rd August, Halliburton Hit by Cyberattack
Halliburton Hit by Cyberattack, Toyota, Microchip, CannonDesign, and Flint all faced significant cyberattacks in recent months, highlighting the growing threat of ransomware and data breaches. ...
The Financial Fallout of Ransomware in 2024
Ransomware has proved an immensely profitable criminal model in 2024. Statistics show ransoms totalling over $450 million already, putting this year on track to surpass ...
Qilin Ransomware Now Steals Credentials from Chrome Browsers
The Qilin ransomware group has adopted a dangerous new tactic, deploying a custom stealer to steal account credentials stored in Google Chrome browsers. This alarming ...
Halliburton Hit by Cyberattack, Operations Disrupted
Halliburton Oilfield Services Company Faces Cyber Disruption
QNAP Bolsters NAS Security with Enhanced Ransomware Protection in Latest QTS Update
QNAP's New Security Center Aims to Safeguard Against Growing Ransomware Threats
Toyota Confirms That Third-Party Data Breach Impacted its Customers
Toyota has confirmed that customer data was exposed in a third-party data breach after a threat actor leaked an archive of 240GB of stolen data ...
CannonDesign Confirms Avos Locker Ransomware Data Breach
CannonDesign, a renowned architectural, engineering, and consulting firm with a portfolio of high-profile projects, has confirmed a data breach that occurred in early 2023.
Microchip Technology Cyberattack: Manufacturing Incapacitated  
Microchip Technology Cyberattack Disrupts Manufacturing
What is Maze Ransomware? A Comprehensive Guide for Enterprise Businesses
This comprehensive guide covers the threat posed by Maze ransomware. It explores infection vectors, encryption process, extortion tactics, and examples of high-profile victims.