Cybersecurity News
Stay up-to-date with the latest cybersecurity news and developments in the cybersecurity landscape. Be the first to know about the latest threats, current innovations, and major trends in the cyber universe. Check our Cyber News section for the freshest information.
Salesloft Drift OAuth Attack Exposes Salesforce Data at Major Firms
A large-scale supply-chain intrusion involving the Salesloft Drift integration platform led to the theft of OAuth and refresh tokens and ...
Adversaries Turn Velociraptor into a LotL Weapon via msiexec and VS Code Tunnels
Sophos Counter Threat Unit has observed a campaign where attackers weaponized the open‑source digital forensics and incident response (DFIR) tool ...
HexStrike AI Chatter Fuels Rapid n‑Day Exploitation of Citrix NetScaler CVEs
Check Point analysts warn that threat actors are discussing the use of HexStrike AI to accelerate exploitation of recent n‑day ...
Bridgestone Americas Probes Cyberattack Disrupting Manufacturing in the U.S. and Canada
Bridgestone Americas (BSA) is investigating a cyberattack that disrupted operations at select manufacturing sites. The incident became public on September ...
OldGremlin Ramps Up Ransomware Activity in 2025 With BYOVD and Node.js Tactics
Kaspersky researchers report a fresh surge in activity by the OldGremlin ransomware group in the first half of 2025. At ...
Cloudflare Stops Record 11.5 Tbps DDoS Attack: 5.1 Billion PPS UDP Flood Analyzed
Cloudflare reports it has mitigated the largest distributed denial‑of‑service (DDoS) attack observed to date, peaking at 11.5 Tbps and 5.1 ...
DOJ Sues Apitor Over Alleged COPPA Violations Linked to JPush SDK Geolocation Tracking
The U.S. Department of Justice (DOJ), acting on a referral from the Federal Trade Commission (FTC), has filed a complaint ...
WhatsApp patches 0‑day CVE‑2025‑55177 in iOS and macOS; suspected chain with Apple Image I/O zero‑click
WhatsApp has released security updates for iOS and macOS addressing a 0‑day vulnerability, CVE‑2025‑55177, that the company says was used ...
ACE and Egyptian Authorities Disrupt Streameast Pirate Sports Streaming Network
Egyptian law enforcement, working with the Alliance for Creativity and Entertainment (ACE), disrupted operations linked to Streameast, a prominent pirate ...
Passwordstate Critical Authentication Bypass: Update to 9.9 Build 9972 Immediately
Click Studios has issued an urgent update for the Passwordstate enterprise password manager, addressing a critical authentication bypass in the ...