Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Malicious npm Packages theGhost: New Node.js Supply Chain Attacks Target Crypto Wallets and Developer Credentials
A new wave of malicious npm packages is targeting the Node.js ecosystem, focusing on the theft of cryptocurrency wallets and ...
Google Gemini Launches AI-Powered Dark Web Threat Intelligence and SOC Agents
Google is expanding its Threat Intelligence ecosystem with a new Gemini-based dark web monitoring service designed to automatically scan underground ...
FCC Moves Against Foreign-Made Wi‑Fi Routers: Cybersecurity and Supply Chain Implications
According to recent reports, the US Federal Communications Commission (FCC) has updated its Covered List of communications equipment deemed a ...
PolyShell Vulnerability in Magento and Adobe Commerce: Unauthenticated File Upload, RCE and Defacement Risks
A newly disclosed critical vulnerability dubbed PolyShell exposes all current versions of Magento Open Source and Adobe Commerce 2.x to ...
AI Music, Botnets and VPNs: How a $10M Streaming Fraud Scheme Exploited Royalty Systems
A recent US criminal case has exposed how a combination of AI-generated music, large-scale bot traffic and cloud infrastructure can ...
CISA Warns of Zimbra and SharePoint Exploits as Interlock Ransomware Targets Cisco Zero‑Day
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added new vulnerabilities in Synacor Zimbra Collaboration Suite (ZCS) and Microsoft ...
Google Introduces 24-Hour Delay for Android Sideloading from Unverified Developers
Google is preparing a significant change to Android sideloading security: a new advanced flow that enforces a mandatory 24-hour waiting ...
OFAC Targets North Korean Remote IT Worker Scheme Fueling WMD Programs
The U.S. Department of the Treasury, acting through the Office of Foreign Assets Control (OFAC), has imposed sanctions on six ...
Tax Season Phishing Attacks Exploit IRS Brand and Remote Access Software
In the run-up to the US tax filing deadline, Microsoft researchers have identified a wave of tax season phishing attacks ...