Cyber Security
Sandworm Fake Job Interview Campaign Targets Ukrainian IT Workers
Kimwolf v7 Android Botnet Evades DDoS Mitigation Using HTTP/2 C2
SharePoint RCE CVE-2026-55040 First Confirmed Ransomware Exploit
Polish Power Plant Turbine Stopped After Cellular ICS Network Breach
Metabase Zero-Day SQL Injection Exploited Against Framework, Tally
Attackers Reach Managed Endpoints as N-able Ships N-central Hotfix 2
CISA Adds Exploited Kemp LoadMaster Command Injection to KEV
Atlassian Rovo One-Click Flaw Exposes Jira, Confluence Data
CSS Attacks Break Webmail Boundaries to Capture Passwords, Tokens
Head Mare Breaches TrueConf Servers, Trojanizes Client Installers
Belgian Connective eID Flaws Let Websites Forge Signatures
Solidity Pro VS Code Extensions Steal Wallets, API Keys From Devs
OpenAI Pauses Astra Work After Evaluation Flags Cyber Capabilities
AitM Phishing Campaign Steals Microsoft 365 Finance Emails
Swiss Government SharePoint Breach Compromised 200 Accounts
UNC6671 Extortion Group Rebrands After Targeting Hedge Funds
3.8 Million Impacted by Unlimited Technology Systems Breach
4,407 Rockwell PLCs Exposed Online, 22 in Water Cities
Zapscape KVM Flaw Lets Privileged L1 Guest Escape to Host
TONTOU Interrupt Injection Bypasses Spectre v2 Fixes on AMD Zen 2
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT
Claude Code and Gemini CLI Flaws Expose CI Workflow Secrets
AI-Assisted HTTP Terminator Finds Apache Traffic Server Zero-Day
TeamPCP Tied to Redis Attacks Dating Back to 2020
CryptoJS Weak RNG Behind $5.7M in Five Wallet App Drains
iCloud Private Relay WebKit Bypasses Expose Users’ Real IPs
ClickFix Campaign Pushes Go-Based macOS Crypto Drainer
China Launches Probe Into Palo Alto Networks Product Security
Attackers Compile khunt Inside Oracle to Reach Windows SYSTEM
Zbtlink Routers Ship With ENDLESSDOORS Backdoor Opening Root Shells
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
DarkGate Malware Pushed in Phishing Attacks via Group Chats of Microsoft Teams
Recent phishing attacks have exploited Microsoft Teams group chat requests to distribute malicious attachments containing DarkGate malware. The attackers exploited a compromised Teams user or ...
Linux glibc Flaw Lets Attackers Exploit Root Access on Major Linux Distros
A newly discovered vulnerability in the GNU C Library (glibc) enables attackers to gain root access on default configurations of major Linux distributions. This Linux ...
Johnson Controls Ransomware Attack Cost $27 Million After Data Breach
Johnson Controls Ransomware Attack Cost $27 Million in total and data was breached with sensitive corporate data stolen. According to official confirmation from Johnson Controls ...
Keenan Warns 1.5 Million People of Data Breach: Personal Information Stolen
Keenan Warns 1.5 Million People of a significant data breach. Keenan Data Breach compromised the data of 1.5 Million customers and employees Keenan Data Breach ...
Ukrainian Hackers Wiped 2 Petabytes of Data from Russian Research Center
Pro-Ukrainian Hackers wiped 2 petabytes of data from Russian Center for Space Hydrometeorology, a state research center that uses satellite data to monitor climatic activities ...
Medusa Ransomware Attacks Kansas City Public Transportation Authority
The Kansas City Area Transportation Authority (KCATA) disclosed that it experienced a targeted Medusa ransomware attack on Tuesday, January 23. KCATA (Kansas City Area Transportation ...
Critical Jenkins RCE Flaw (CVE-2024-23897) Exploited in the Wild
Numerous proof-of-concept (PoC) exploits have been disclosed for the Critical Jenkins RCE flaw (CVE-2024-23897), which has recently been patched. There are indications that this vulnerability ...
This Week in Cybersecurity: 22nd Jan – 25th Jan: Mother of All Breaches Exposes 26 Billion Records
Mother of All Breaches (MOAB) Exposes 26 Billion Records Researchers found a data breach containing 26 billion records from various sources, dubbed “Mother of All ...
Blackwood Hackers Use AitM to Hijack WPS Office Update and Install NSPX30 Malware
The ‘Blackwood hackers’ have been engaging in cyberespionage attacks since 2018 and employs a highly sophisticated malware called NSPX30. Interestingly, the NSPX30 malware is built ...
Hackers Stole Raw Genotype Data, Health Reports in the 23andMe Data Breach
Raw genotype data of almost 5.1 million people was stolen in the 23andMe Data Breach that went unnoticed for months.   23andMe Data Breach Gave ...
HPE Hacked by Russian Hacker Group ‘Midnight Blizzard’ that Hacked Microsoft
The HPE hack was attributed to a group of suspected Russian hackers known as Midnight Blizzard, also referred to as Cozy Bear, APT29, and Nobelium. ...
Equilend Cyberattack Brings the Financial Tech Firm Down, Trades with Systems Offline
The EquiLend Cyberattack has forced the loan lending firm to trade manually with systems going offline. Lockbit ransomware gang is said to be behind the ...
Bucks County Cybersecurity Incident Disrupts Computer-Aided Dispatch System
The Bucks County Cybersecurity Incident impacted the county’s computer-aided dispatch (CAD) system leading to suspension of 911 call automation. Authorities in Bucks County, Pennsylvania, have ...
Jason’s Deli Breach Exposes Data of Over 350K Users in Credential Stuffing Attack
Jason’s Deli has recently discovered a data breach that has affected its online platform. In notifications sent to customers, the company has informed them that ...
Mother of All Breaches (MOAB) Exposes 26 Billion Records
The recently discovered supermassive leak is an extensive collection of data from various past breaches. It includes a staggering 12 terabytes of information, encompassing a ...
Veolia North America Water Service Provider Hit by Ransomware Attack
Veolia North America faced a Ransomware Attack that caused disruptions to the bill payment systems. The Veolia ransomware attack forced the organization to shut down ...
10 Common Types of Cyber Attacks and How to Prevent Them
The digital age has brought convenience and connection, but it’s also opened the door to a growing threat: cyberattacks. These malicious attempts can steal data, ...
SEC Says Sim Swapping Attack Caused X Account Hack
SEC SIM swapping attack reportedly the cause of SEC X account hack that resulted in a fake Bitcoin ETF Approval tweet. The U.S. Securities and ...
loanDepot Cyberattack Results in Data Breach of 16.6 Million
The mortgage lender has confirmed that loanDepot cyberattack resulted in a Data Breach that compromised sensitive information of 16.6 Million people. loanDepot, a mortgage lender, ...
Ukraine’s Monobank DDoS Attack Hits ‘Non Stop’ and Cripples Bank’s Operations
Over the weekend, Monobank, a prominent Ukraine’s largest mobile-only bank, experienced a distributed denial-of-service (DDoS) attack. This Monobank DDoS Attack is part of a series ...