Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Bank of America Data Breached: Customers Warned After Vendor Hacked  
The Bank of America data breach exposed personal information after Infosys McCamish Systems (IMS), one of its service providers, was hacked last year. The compromised ...
Free Rhysida Ransomware Decryptor Released for Windows
South Korean researchers have recently made a discovery regarding the Rhysida ransomware encryptor. They have identified an encryption flaw in the system, which allowed the ...
New Fortinet RCE flaw in SSL VPN Exploited in the Wild
Fortinet has issued a warning regarding a serious vulnerability in FortiOS SSL VPN. This Fortinet RCE flaw, identified as CVE-2024-21762 / FG-IR-24-015, poses a significant ...
Black Basta Ransomware Attack Hits Hyundai Motor Europe
Hyundai Motor Europe, the European division of Hyundai Motor Company based in Germany, recently fell victim to a Black Basta ransomware attack known as Black ...
Raspberry Robin Malware Uses One-Day Exploits to Target Windows
Recent versions of the Raspberry Robin malware have become more covert and employ one-day exploits that specifically target vulnerable systems. One-day exploits refer to code ...
Ransomware Attack Takes 18 Romanian Hospitals Offline
A recent cyber attack has disrupted the operations of 18 hospitals in Romania. The targeted healthcare management system, known as the Hipocrate Information System (HIS), ...
CISA Confirms New Fortinet RCE Bug Being Actively Exploited
Today, the Cybersecurity and Infrastructure Security Agency (CISA) has confirmed the active exploitation of a critical remote code execution (RCE) vulnerability that was recently patched ...
French Healthcare Data Breach Puts Data of Millions at Risk
Viamedis, a French healthcare services firm, recently experienced a cyberattack that resulted in the exposure of data belonging to policyholders and healthcare professionals in the ...
Verizon Data Breach Compromises Data of 63,000 Employees, Insider Leaks Data
Verizon Communications, a prominent telecommunications and mass media company in the United States, has recently disclosed an insider data breach that has affected nearly half ...
Lurie Children’s Hospital Cyberattack Cripples Healthcare Systems
Lurie Children’s Hospital in Chicago recently encountered a cyberattack that led to a temporary shutdown of its IT systems. Consequently, regular operations were disrupted, and ...
HPE Data Breached: HPE Investigates Data Breach After Data Being Stolen from a ‘Test Environment’
Hewlett Packard Enterprise (HPE) is currently conducting an investigation into the HPE Data Breach that led to massive data theft. This comes after a threat ...
ResumeLooters Gang Steal Data of 2 Million in XSS Attacks Using SQL injection
A threat group known as ‘ResumeLooters’ has successfully stolen the personal information of over two million job seekers by exploiting vulnerabilities in 65 legitimate job ...
CISA Advises Vendors to Secure SOHO Routers Against Volt Typhoon Attacks
The Cybersecurity and Infrastructure Security Agency has advised SOHO router manufacturers to strengthen their security against the ongoing Volt Typhoon attacks. CISA’s Guidelines Against Volt ...
Ivanti Reveals Second Connect Secure zero-day Exploit, Urges Immediate Patching
Today, Ivanti issued a warning regarding two additional Connect Secure zero-day exploits that are affecting Connect Secure, Policy Secure, and ZTA gateways. One of these ...
Data of 750 million Indian Mobile Users Sold on the Dark Web
According to a report from cybersecurity company CloudSEK, a vast database containing the personal information of approximately 750 million Indian Mobile Users made available for ...
Cloudflare Hacked by a State Sponsored Hacker Using Auth Tokens Stolen in the Okta Attack
Cloudflare has announced that its internal Atlassian server was breached by a ‘nation state attacker’. Hacker performing the Cloudflare hack gained unauthorized access to Cloudflare’s ...
Blackbaud Data Breach: FTC Holds Blackbaud Responsible for Linient Data Protection Policies
Blackbaud has reached a settlement agreement with the Federal Trade Commission (FTC) following charges of inadequate security measures and irresponsible data retention practices that led ...
This Week in Cybersecurity: 29th Jan – 2nd Feb: Medusa Ransomware Strikes Again
Medusa Ransomware Attacks Kansas City Public Transportation Authority The Kansas City Area Transportation Authority (KCATA) revealed it was hit by a Medusa ransomware attack on ...
Fulton County Cyberattack: Cyberattack Hits Georgia County Where Trump Faces Charges
The recent Fulton County cyberattack on Georgia had a widespread impact on various departments, including the office of District Attorney Fani Willis. This incident disrupted ...
Schneider Electric Hit by Cactus Ransomware Attack
Schneider Electric ransomware attack has been claimed by Cactus ransomware. The attackers stole valuable corporate data from Sustainability Business division. Schneider Electric Ransomware Attack Schneider ...