Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Bithumb’s 620,000 BTC Payout Error: A Critical Lesson in Crypto Exchange Operational Risk
On 6 February 2026, South Korean cryptocurrency exchange Bithumb experienced one of the most striking incidents in the history of ...
Critical n8n Vulnerability CVE-2026-25049 Enables Sandbox Escape and Remote Code Execution
A critical security flaw has been discovered in the popular workflow automation platform n8n. Tracked as CVE-2026-25049 with a CVSS ...
Microsoft Launches Backdoor Scanner to Secure Open-Weight LLMs
As attacks on artificial intelligence systems intensify, the security of large language models (LLMs) is becoming a critical concern for ...
Coinbase Confirms New Contractor Data Breach: What Happened and Why It Matters
The largest U.S. cryptocurrency exchange, Coinbase, has confirmed a new user data breach originating from an external contractor. According to ...
Stealth Nginx Traffic Hijacking Campaign Exploits React2Shell and Baota Servers
Datadog Security Labs has reported a large-scale malicious campaign in which attackers gain access to Nginx servers and silently route ...
Substack Data Breach: Emails, Phone Numbers and Account Metadata Exposed
Substack has notified users of a data breach in which email addresses, phone numbers and internal account metadata were exposed ...
Open VSX Introduces Pre-Publication Security Scanning for VS Code Extensions
The Open VSX extension registry, maintained by the Eclipse Foundation, is introducing automated, pre-publication security scanning for Visual Studio Code ...
Metro4Shell (CVE-2025-11953): Critical React Native Metro Server Vulnerability Exploited in the Wild
The critical vulnerability CVE-2025-11953, informally dubbed Metro4Shell, is being actively abused to compromise React Native development environments. Attackers are exploiting ...
Nitrogen Ransomware Bug on VMware ESXi Makes Data Recovery Impossible
A critical implementation error in Nitrogen ransomware targeting VMware ESXi hosts effectively converts each attack into a data‑wiping event rather ...
Incognito Darknet Marketplace Admin Rui‑Siang Lin Sentenced to 30 Years: A Critical Case for Cybercrime and Dark Web Security
A U.S. federal court has handed down one of the harshest sentences to date for online drug trafficking: 24‑year‑old Taiwanese ...