Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Aerial view of San Francisco with digital network visuals illustrating tech issues.

Dark Applications and AI Agents: Closing the Identity Confidence Gap in Zero Trust Programs

CyberSecureFox

By 2026, many enterprises report mature identity and access management (IAM) and Zero Trust security programs on paper, yet their ...

Visual depiction of tech company interactions with icons representing updates and tools.

Axios npm Compromise Exposes Coordinated Supply Chain Attacks on Node.js Maintainers

CyberSecureFox

The recent Axios npm compromise has turned out not to be an isolated incident but part of a coordinated software ...

Geese by the waterfront with Toronto skyline and solar panels in view.

GPU RowHammer Attacks: GPUBreach, GDDRHammer and GeForge Threaten Cloud AI Security

CyberSecureFox

Recent academic research has shown that modern high‑performance graphics processing units (GPUs) are vulnerable to a new class of RowHammer ...

Aerial view of Hasbro building with maintenance sign and city skyline nearby.

Hasbro Cyber Attack: Analysis of the 2025 Security Incident and Supply Chain Risks

CyberSecureFox

Global toy and entertainment giant Hasbro has reported a significant cybersecurity incident that could disrupt parts of its operations for ...

Cyber attack scene featuring iconic landmarks with a dramatic backdrop.

Storm-1175 Uses Zero-Day Vulnerabilities to Deliver Medusa Ransomware in Rapid Attacks

CyberSecureFox

A China-based cybercriminal group tracked by Microsoft Threat Intelligence as Storm-1175 is conducting highly automated, high-speed attacks against internet-facing systems ...

USB drive with an API key tag connected to a computer, glowing light.

Flowise Vulnerability CVE-2025-59528: Critical RCE Threat to AI Infrastructure

CyberSecureFox

The open‑source AI orchestration platform Flowise has been hit by a critical security vulnerability, tracked as CVE-2025-59528 with the maximum ...

Tense discussion in a high-tech command center with multiple monitors and flags.

Chinese Cyber-Espionage Group TA416 Renews Attacks on EU, NATO and Middle East

CyberSecureFox

Chinese-aligned threat actor TA416 has restarted large-scale cyber-espionage operations against European governmental and diplomatic entities and is now extending its ...

Man looks stressed at a computer, facing a system update warning and coding screens.

Axios npm Package Compromised in Targeted Supply Chain Attack Linked to UNC1069

CyberSecureFox

The Axios JavaScript library, one of the most downloaded packages in the npm ecosystem with around 100 million weekly installs, ...

Dark digital landscape featuring a hooded figure and technology-themed plugin boxes.

Malicious npm Strapi Plugins Highlight Escalating Software Supply Chain Threats

CyberSecureFox

A campaign involving 36 malicious npm packages disguised as plugins for the Strapi CMS has exposed how easily attackers can ...

123183 Next