government social media healthcare service provider fine education law enforcement finance dark web web retail security phama app insurance telecoms charity travel manufacturing legal operating system tech publishing gaming transport
story hacked malware unauthorised access ransomware vulnerability accidental disclosure phishing unsecured database poor security insider threat unsecured server hacked email lost device hacking website hacked identity theft ddos stolen documents financial Trojans breached inside job RDP spear phishing
cyber attack breach notification privacy security flaw legislation poor operations user credentials physical security customer data third party Cryptocurrency enforcement email hacked insecure storage court action encryption fraud VPN passwords zero day spyware 3rd parties state hacking employee data remote working

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
Worlds Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent
SonicWall SMA ZeroDays Exploited Before Disclosure to Gain Root Access
UAC0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution
Medical giant Abbott investigates two cyber incidents as ShinyHunters and ShadowByt3 both claim breaches
NY Attorney General James Secures 18 Million From 23andMe for Failing to Protect Customers Genetic Data
CISA Adds Exploited SharePoint RCE ZeroDay CVE202658644 to KEV
New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage
ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files
Armenia Detains Russian Tourist on US Warrant for REvil Hacker Lawyers Say Wrong Man
The Race to Field Military Autonomy Is On Can Trusted Information Infrastructure Keep Pace
EU Orders Google to Open Android Mic Camera and Screen to Rival AI Assistants
Fake Coding Tests Deliver OtterCookieAligned Malware Hidden in SVG Flag Images
GoldenEyeDog Subgroup Linked to DigiCert Breach and CodeSigning Certificate Theft
New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens
Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT
OpenSSL HollowByte Flaw Could Freeze Server Memory with 11Byte TLS Requests
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code
FBI arrests man accused of using Steam games to drain victims crypto wallets
Zoom Patches Critical Windows Flaw That Could Enable Account Takeover
OpenAIs GPTRed Automates Prompt Injection Testing to Harden GPT56 Sol
Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums RegionWide
AI Can Find Bugs But Human Knowledge Still Proves Them
Daxin Resurfaces in Taiwan Alongside Stupig PreLogin SYSTEM Backdoor
New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker Commands
20 Hijacked Government Websites Became
an Attack Channel
New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password
New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands
n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another Issuer
ThreatsDay Game Cheat Spyware 24Hour Ransomware Chrome Sync Stalking 12 More Stories
Two Scattered Spider Hackers Get 55 Years Each for 29 Million TfL Hack
Thalha Jubair and Owen Flowers sentenced to prison
AU Regulators preliminary findings did not indicate Qantas breached privacy obligations
Italy fines WINDTRE 17 million over data breaches
The Breach That Wont End An Update on Canvas and how they created an EdTechs Vendor Trust Problem
Two SonicWall SMA 1000 ZeroDays Exploited One Could Enable Admin Commands
Compromised AsyncAPI npm Packages Deliver MultiStage Botnet Malware
Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code Execution
New Webinar Closing the Approval Gap in AIEra Ad Tech