Cyber Security
Malicious npm Packages Bypass Install-Script Detection
Researchers Escape OpenAI Codex Sandbox, Compromise Staff Accounts
Single Browser Extension Hijacks AI Assistants Across Five Browsers
North Korean WaterPlum Stole $10.7M After Infecting 30,000 Devices
ShinyHunters Breaches Clop Ransomware Leak Site, Threatens Gang
Viral AI Actress Service Face-Scans Callers, Tracks Emotions
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
GoldFactory and Mantax Otax Target Indonesian Android Bank Users
Thousands of Scam Apps Exploit Google Play Early Access Program
Four Nation-State Groups Deploy BlueMoon Kit Within 12 Days
NSA, CISA, FBI Accuse Six Chinese AI Firms of Model Distillation
UNC3569 Exploits Sogou Input Method to Deploy GRAYRABBIT Backdoor
Attackers Use BYOD Weaknesses to Access M365 via Graph API
Surfshark VPN Breach Exposes Internal Testing and Proxy Servers
Citrix NetScaler CVE-2026-19490 Exploited Since September 3
CISA Sets September 12 Deadline for Cisco, Citrix, Fortinet Flaws
Infostealer Logs Expose Replayable AI Tokens That Bypass MFA
Google Patches Seventh Chrome Zero-Day of 2026, CVE-2026-87491
PoisonedRefresh Rootkit Injects PHP Web Shells into F5 BIG-IP Memory
September Windows Server Updates Break Remote Desktop Services
Microsoft Excel KB5002914 Update Breaks Copy and Paste Functions
cPanel Critical RCE Enables Full Server Takeover via Mail Account
SAP Patches CVSS 10.0 Kernel RCE in Extended Passport Processing
Microsoft Ships Record 974 Security Patches in September Batch
ShinyHunters Claims Breach of Florida DMV DAVID Database
Grindr Settles UK HIV Data Sharing Lawsuit for £26 Million
Liquid Network Attackers Return 3,400 Bitcoin, Keep $47 Million
OpenAI Artifactory Flaw Enabled Cross-Account Data Theft
Boston Scientific Cyberattack Damages Q3 and Full-Year Earnings
Ohio Man Sentenced to 15 Years for AI-Generated Sextortion

Sorry, we couldn't find any posts. Please try a different search.

Issabel Framework Flaw Enables Unauthenticated OS Command Execution
CVE Vulnerability Alerts
Issabel Framework Flaw Enables Unauthenticated OS Command Execution
KREMLIN Banking Malware Hijacks Chrome and Edge for Credential Theft
Cybersecurity
KREMLIN Banking Malware Hijacks Chrome and Edge for Credential Theft
Application Security
GoldFactory and Mantax Otax Target Indonesian Android Bank Users

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Cybersecurity
Viral AI Actress Service Face-Scans Callers, Tracks Emotions
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

Podcasts

Sorry, we couldn't find any posts. Please try a different search.

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Critical Jenkins RCE Flaw (CVE-2024-23897) Exploited in the Wild
Numerous proof-of-concept (PoC) exploits have been disclosed for the Critical Jenkins RCE flaw (CVE-2024-23897), which has recently been patched. There are indications that this vulnerability ...
This Week in Cybersecurity: 22nd Jan – 25th Jan: Mother of All Breaches Exposes 26 Billion Records
Mother of All Breaches (MOAB) Exposes 26 Billion Records Researchers found a data breach containing 26 billion records from various sources, dubbed “Mother of All ...
Blackwood Hackers Use AitM to Hijack WPS Office Update and Install NSPX30 Malware
The ‘Blackwood hackers’ have been engaging in cyberespionage attacks since 2018 and employs a highly sophisticated malware called NSPX30. Interestingly, the NSPX30 malware is built ...
Hackers Stole Raw Genotype Data, Health Reports in the 23andMe Data Breach
Raw genotype data of almost 5.1 million people was stolen in the 23andMe Data Breach that went unnoticed for months.   23andMe Data Breach Gave ...
HPE Hacked by Russian Hacker Group ‘Midnight Blizzard’ that Hacked Microsoft
The HPE hack was attributed to a group of suspected Russian hackers known as Midnight Blizzard, also referred to as Cozy Bear, APT29, and Nobelium. ...
Equilend Cyberattack Brings the Financial Tech Firm Down, Trades with Systems Offline
The EquiLend Cyberattack has forced the loan lending firm to trade manually with systems going offline. Lockbit ransomware gang is said to be behind the ...
Bucks County Cybersecurity Incident Disrupts Computer-Aided Dispatch System
The Bucks County Cybersecurity Incident impacted the county’s computer-aided dispatch (CAD) system leading to suspension of 911 call automation. Authorities in Bucks County, Pennsylvania, have ...
Jason’s Deli Breach Exposes Data of Over 350K Users in Credential Stuffing Attack
Jason’s Deli has recently discovered a data breach that has affected its online platform. In notifications sent to customers, the company has informed them that ...
Mother of All Breaches (MOAB) Exposes 26 Billion Records
The recently discovered supermassive leak is an extensive collection of data from various past breaches. It includes a staggering 12 terabytes of information, encompassing a ...
Veolia North America Water Service Provider Hit by Ransomware Attack
Veolia North America faced a Ransomware Attack that caused disruptions to the bill payment systems. The Veolia ransomware attack forced the organization to shut down ...
10 Common Types of Cyber Attacks and How to Prevent Them
The digital age has brought convenience and connection, but it’s also opened the door to a growing threat: cyberattacks. These malicious attempts can steal data, ...
SEC Says Sim Swapping Attack Caused X Account Hack
SEC SIM swapping attack reportedly the cause of SEC X account hack that resulted in a fake Bitcoin ETF Approval tweet. The U.S. Securities and ...
loanDepot Cyberattack Results in Data Breach of 16.6 Million
The mortgage lender has confirmed that loanDepot cyberattack resulted in a Data Breach that compromised sensitive information of 16.6 Million people. loanDepot, a mortgage lender, ...
Ukraine’s Monobank DDoS Attack Hits ‘Non Stop’ and Cripples Bank’s Operations
Over the weekend, Monobank, a prominent Ukraine’s largest mobile-only bank, experienced a distributed denial-of-service (DDoS) attack. This Monobank DDoS Attack is part of a series ...
CISA Issues Emergency Directive on Ivanti Zero-Day, Demands Immediate Action from Federal Agencies
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive to Federal Civilian Executive Branch (FCEB) agencies. The directive aims to address two ...
Tietoevry Ransomware Attack Causes Widespread Disruptions for Swedish Customers, Akira Ransomware Behind the Incident
Tietoevry, a Finnish IT services and enterprise cloud hosting provider, experienced a ransomware attack that affected their cloud hosting customers in one of their data ...
This Week in Cybersecurity: 15th Jan – 19th Jan: 178K SonicWall Firewalls Fell to DoS and RCE Attacks
Over 178K SonicWall Firewalls Exposed to DoS and RCE Attacks 178k SonicWall firewalls are exposed online and vulnerable to DoS and potential RCE attacks due ...
Trezor Security Breach Affects 66k Users in a Phishing Scam
Trezor Security Breach: What Happened? Trezor, a manufacturer of hardware wallets, recently reported a security breach. Approximately 66,000 user’s contact information was exposed due to ...
Ukraine Blackjack Hackers Steal 500 Russian MoD’s Objects
According to sources from RBC-Ukraine, Ukrainian Blackjack Hackers, who are believed to be associated with the Security Service of Ukraine (SSU), have successfully breached a ...
Kansas State University Cyberattack Disrupts Email, Phone, Payment Systems
The Kansas State University Cyberattack has disrupted IT network and services including Email, Phone and Payment Systems. Kansas State University cybersecurity incident has caused disruptions ...