government healthcare social media service provider fine education law enforcement finance dark web web retail security app phama insurance telecoms charity travel manufacturing legal operating system tech law ransomware publishing
story hacked malware unauthorised access vulnerability accidental disclosure phishing unsecured database poor security insider threat unsecured server hacked email lost device hacking financial website hacked identity theft ddos stolen documents breached Trojans inside job RDP spear phishing spyware
cyber attack breach notification privacy security flaw legislation poor operations user credentials physical security customer data third party Cryptocurrency enforcement email hacked insecure storage court action encryption fraud VPN passwords zero day state hacking 3rd parties employee data remote working stolen data

Malicious npm Package indexedbtree Hid Its Loader in Runtime Code Before Removal
DORA Year Two Can Your SOC Actually See the Attack
AI Agents Are Rewriting the Rules of Lateral Movement
Microsoft Takes Down EvilTokens DeviceCode Phishing Service Tied to 12000 Inbox Compromises
Malicious npm Package Poses as Twilio BugBounty Probe Can Exfiltrate Credentials
WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some Servers
Early Scattered Spider member pleads guilty to cybercrime spree
Spokane Public Schools takes some systems offline after network security incident
Israeli cyber manager accused of remotely accessing cameras stealing passwords and infiltrating 26 companies
ShinyHunters escalates dispute with FBI claims to have seized job applicants site and acquired data 1
Elsevier Evolve ClinicalPharmacology and GSDD APIs Hijacked LAPSUS Redirect Campaign
Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors
ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure
TASKSTOMP PowerShell Backdoor Steals Documents WiFi Passwords and Clipboard Data
Weekly Recap Cisco 0Day AI Agent RCE ClickFix Attacks ClickFix Surge and Browser Hijacks
Contagious Interview Campaign Compromises 30000 Devices Steals 1071M in Crypto
Fake LastPass Authenticator Installer Abuses MicrosoftSigned Driver to Kill Antivirus and EDR
Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws
HHS Office for Civil Rights Settles HIPAA Investigation of Ambry Genetics for Security Rule Violations
Gemini Hacked Three Companies in First Known Breakout by Googles AI
National Cancer Centre email lapse allegedly exposes patients details
ShinyHunters hacks Clop leak site threatens to extort ransomware gang 1
Raon data leak Insider leak of 1894 cases went undetected for 4 years
The US military leaked more than 93000 tips via insecure P3 Global Intel Has anyone been notified
Foreign actors breach Colorado water systems
Ransomware attack on Kansas county will affect some services
Gyazo Breach Exposes 2362 Million User Records and 490 Million Image Metadata Records
Navigate360 may soon release a public notice about its horrific breach but will any individuals be notified
EU chief wants joint response to cyberattacks sabotage
Port of LA Fended Off 120 Million Cyberattacks in August
Canada Nipigon hospital hit by ransomware attack
Student photos bank details stolen by hackers after St James Anglican School in Perth hit by cyber attack
Members of Black Axe cybercriminal group extradited from South Africa
Hackers demand 10000 Bitcoin from Revolut following data breach
Ransomware group claims attack on Missouris Cedar County Memorial Hospital after IT outage
Revoluts paperwork breach shows why insurers are rethinking what counts as a cyber attack
Payroll system of mosques madrasahs hit by ransomware staff details potentially compromised
Silent Ransom Group Hacked Greenberg Traurig Who notifies the 126k Affected 1
Possible cyber incident disrupts Monroe schools in Wisconsin
HHS Releases Updated Security Risk Assessment Tool