Cyber Security
Self-Healing WordPress Backdoor Defies Standard Removal
Cisco Patches Actively Exploited Catalyst SD-WAN Flaw
MetaMask Discloses Incident, Exits Ethereum Validators
TeamViewer Patches Critical Access-Control Bypass Flaw
WatchGuard Patches Critical Root Code Execution Flaw
CISA Warns of Critical Pre-Auth Flaw in MikroTik Routers
FTC Confirms Probe Into OpenAI, Anthropic AI Agents
Teen Researcher’s AI Tool Gains Admin on Microsoft Titan
OpenSSL Patches High-Severity DTLS Memory Leak Flaw
CSuite Phishing Campaign Hijacks Microsoft 365 Sessions
Chrome, Firefox Patch Over 100 Flaws in Joint Update
Pentagon Records Agency Breach Exposes Data on 3 Million
France Tax Agency Breached Seven Weeks via Stolen Passwords
Citrix NetScaler Zero-Days Deployed WHIPSHOT, SLAPSHOT
FBI Tells ShinyHunters Members to Turn Themselves In
Russia’s Star Blizzard Targets 100+ Orgs With Fake Invites
New Spectre-v2 BTR Attack Leaks Linux Root Password Hashes
Autonomous AI Agent Breaches Cybersecurity Nonprofit DIVD
OpenAI Discloses Self-Replicating Worm-Style Prompt Injection
Fake ChatGPT Custom GPTs Push ClickFix Attacks to Drop RAT
101 Malicious npm Packages Add Developers to WhatsApp Groups
Glow Security Finds 13,000 Exposed AI Agent Screenshots
Kiteworks Patches Critical Flaw Found During Precautionary Shutdown
Ex-Air Force Members Sentenced to 189 Months for BEC Scams
Vietnamese National Charged in $16 Million Crypto Scam
Apple Patches CoreGraphics Zero-Day Used in Targeted Attacks
MCP Python SDK Flaw Exposes OAuth Credentials to Malicious Servers
OpenAI Shelves GPT-6.1 Astra After Safety Failures and Rogue Actions
Ransomware Attack Disrupts Keio Corporation Business Systems
Times Car Breach Exposes 6.6 Million Japanese Car-Sharing Accounts
Tech and Retail Giants Sign Global Pact to Combat Online Scams and Fraud
Cybersecurity
Tech and Retail Giants Sign Global Pact to Combat Online Scams and Fraud
Major tech and retail organizations have banded together to address online scams and fraud, establishing a first-of-its-kind industry accord designed ...
Tech Giants Invest $12.5 Million in Open Source Software Security
Cybersecurity
Tech Giants Invest $12.5 Million in Open Source Software Security
Major tech firms contribute $12.5 million to enhance open source software security.
Ongoing Python Package Attack Uses Stolen GitHub Tokens
Application Security
Ongoing Python Package Attack Uses Stolen GitHub Tokens
Attack leverages stolen GitHub tokens to introduce malware into numerous Python repositories.
Stryker's Internal Microsoft Environment Was Breached Last Week
Cybersecurity
Stryker’s Internal Microsoft Environment Was Breached Last Week
Stryker's internal Microsoft environment breach led to the remote wiping of tens of thousands of employee devices last week.
Payload Ransomware Group Claims Breach of Royal Bahrain Hospital
News
Payload Ransomware Group Claims Breach of Royal Bahrain Hospital
Royal Bahrain Hospital reportedly targeted by Payload ransomware, with 110 GB of sensitive data allegedly stolen.
DRILLAPP Backdoor Campaign Targets Ukrainian Organizations With Edge Debugging Abuse
Cybersecurity
DRILLAPP Backdoor Campaign Targets Ukrainian Organizations With Edge Debugging Abuse
Russian-linked threat actors deploy DRILLAPP backdoor campaign in Ukraine.
Phishing Attack Hits Intuitive's Internal IT Business Systems
News
Phishing Attack Hits Intuitive’s Internal IT Business Systems
Intuitive's internal systems hit by phishing attack; patient operations remain unaffected.
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Application Security
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Explore how new malware strains are targeting users with advanced methods and reverse engineering insights.
Companies House Restores WebFiling Service After Security Flaw Exposed Corporate Data
Cybersecurity
Companies House Restores WebFiling Service After Security Flaw Exposed Corporate Data
Companies House fixes a security flaw in WebFiling, protecting UK companies' data.
How AI Is Making Financial Fraud 4.5 Times More Profitable
Cybersecurity
How AI Is Making Financial Fraud 4.5 Times More Profitable
Financial fraud schemes using AI boost profitability by 4.5 times, Interpol reports.
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Application Security
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Microsoft is addressing an Exchange Online outage impacting mailbox and calendar access.
Signal Cyberattack in Germany Targets Politicians Through Impersonation
Cybersecurity
Signal Cyberattack in Germany Targets Politicians Through Impersonation
Cyberattack on Signal and WhatsApp targets high-profile German officials, including former BND VP, using impersonation tactics.
Targeted Phishing Attack Breaches Security Firm Executive
News
Targeted Phishing Attack Breaches Security Firm Executive
A phishing attack involved DKIM-signed emails, trusted infrastructures, and Cloudflare protection against a security firm executive.
Silence from the Corporate Giants Four Companies Yet to Comment on Oracle EBS Hack
Application Security
Silence from the Corporate Giants: Four Companies Yet to Comment on Oracle EBS Hack
Four major corporations, Broadcom, Bechtel, Estée Lauder, and Abbott, remain silent amid Oracle EBS hack.
FBI Seeks Gamer Help in Steam Malware Investigation
Cybersecurity
FBI Seeks Gamer Help in Steam Malware Investigation
The FBI seeks gamers affected by malware-infected Steam games to join an ongoing investigation.
Shadow AI Is Quietly Spreading Across SaaS Environments
Application Security
Shadow AI Is Quietly Spreading Across SaaS Environments
Explore the growing trend of Shadow AI in SaaS environments as employees adopt AI tools without IT oversight, and learn how security teams can respond...
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Application Security
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Microsoft improves control over third-party bots in Teams meetings.
Canadian Outsourcing Leader Telus Digital Faces a Severe Data Breach
Cybersecurity
Canadian Outsourcing Leader Telus Digital Faces a Severe Data Breach
Telus Digital hit by data breach, with claims of nearly 1 petabyte stolen over months.
VENON Banking Malware Targets Brazilian Users With Rust-Based Code
Cybersecurity
VENON Banking Malware Targets Brazilian Users With Rust-Based Code
New banking malware VENON targets Brazilian users, developed in Rust, diverging from traditional Delphi-based threats.
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Application Security
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Apple issues iOS and iPadOS updates to address vulnerabilities, safeguarding against the Coruna exploit.
CVE Vulnerability Alerts
Critical FortiMail Zero-Day Exploited With No Patch Yet
Cybersecurity
Pentagon Records Agency Breach Exposes Data on 3 Million
Cybersecurity
Police Dismantle KillSec Ransomware Gang, Nab Teen Leader
Cybersecurity
Ransomware Attack Disrupts Keio Corporation Business Systems

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Cybersecurity
FTC Confirms Probe Into OpenAI, Anthropic AI Agents
Cybersecurity
CSuite Phishing Campaign Hijacks Microsoft 365 Sessions
Cybersecurity
Pentagon Records Agency Breach Exposes Data on 3 Million
Cybersecurity
OpenAI Shelves GPT-6.1 Astra After Safety Failures and Rogue Actions
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Stryker’s Internal Microsoft Environment Was Breached Last Week
Stryker's internal Microsoft environment breach led to the remote wiping of tens of thousands of employee devices last week.
Payload Ransomware Group Claims Breach of Royal Bahrain Hospital
Royal Bahrain Hospital reportedly targeted by Payload ransomware, with 110 GB of sensitive data allegedly stolen.
Phishing Attack Hits Intuitive’s Internal IT Business Systems
Intuitive's internal systems hit by phishing attack; patient operations remain unaffected.
DRILLAPP Backdoor Campaign Targets Ukrainian Organizations With Edge Debugging Abuse
Russian-linked threat actors deploy DRILLAPP backdoor campaign in Ukraine.
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Explore how new malware strains are targeting users with advanced methods and reverse engineering insights.
Companies House Restores WebFiling Service After Security Flaw Exposed Corporate Data
Companies House fixes a security flaw in WebFiling, protecting UK companies' data.
How AI Is Making Financial Fraud 4.5 Times More Profitable
Financial fraud schemes using AI boost profitability by 4.5 times, Interpol reports.
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Microsoft is addressing an Exchange Online outage impacting mailbox and calendar access.
Signal Cyberattack in Germany Targets Politicians Through Impersonation
Cyberattack on Signal and WhatsApp targets high-profile German officials, including former BND VP, using impersonation tactics.
Targeted Phishing Attack Breaches Security Firm Executive
A phishing attack involved DKIM-signed emails, trusted infrastructures, and Cloudflare protection against a security firm executive.
Silence from the Corporate Giants: Four Companies Yet to Comment on Oracle EBS Hack
Four major corporations, Broadcom, Bechtel, Estée Lauder, and Abbott, remain silent amid Oracle EBS hack.
FBI Seeks Gamer Help in Steam Malware Investigation
The FBI seeks gamers affected by malware-infected Steam games to join an ongoing investigation.
Shadow AI Is Quietly Spreading Across SaaS Environments
Explore the growing trend of Shadow AI in SaaS environments as employees adopt AI tools without IT oversight, and learn how security teams can respond...
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Microsoft improves control over third-party bots in Teams meetings.
Canadian Outsourcing Leader Telus Digital Faces a Severe Data Breach
Telus Digital hit by data breach, with claims of nearly 1 petabyte stolen over months.
VENON Banking Malware Targets Brazilian Users With Rust-Based Code
New banking malware VENON targets Brazilian users, developed in Rust, diverging from traditional Delphi-based threats.
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Apple issues iOS and iPadOS updates to address vulnerabilities, safeguarding against the Coruna exploit.
Veeam Software Fixes Critical RCE Vulnerabilities in Backup & Replication Solution
Veeam Software addresses critical security flaws in their Backup & Replication tool, preventing potential remote code execution risks.
England Hockey Investigates Possible Data Breach by AiLock Ransomware Group
England Hockey is assessing a potential data breach by the AiLock ransomware gang that listed it on its data leak site.
International Operation Dismantles the Dangerous SocksEscort Proxy Service
Global law enforcement dismantles SocksEscort proxy service involved in digital fraud, impacting numerous networks worldwide.