Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Iran-Linked Dust Specter Targets Iraqi Government with .NET Backdoors and Fileless PowerShell
A suspected Iran-aligned threat group known as Dust Specter is conducting a targeted cyber espionage campaign against Iraqi government officials ...
Why MFA Alone Cannot Secure Windows and Active Directory Authentication
Many organizations assume that once multi-factor authentication (MFA) is deployed, the risk of account compromise drops to an acceptable level. ...
Chrome’s New Two‑Week Stable Release Cycle: Security and Enterprise Impact
Google is overhauling the release model for its Chrome browser, shifting the stable channel from a four‑week to a two‑week ...
Critical Google Chrome Gemini Live Vulnerability (CVE-2026-0628) Exposed AI Panel to Malicious Extensions
Researchers from Palo Alto Networks Unit 42 have disclosed a critical vulnerability in Google Chrome that allowed malicious browser extensions ...
DHS and ICE Contracts Data Breach Exposes Deep Cyber Supply Chain Risks
A hacktivist collective calling itself Department of Peace has claimed responsibility for compromising information systems of the U.S. Department of ...
Max Android Messenger Telemetry: VPN Detection and Privacy Implications
Analysis of the Android client of the messenger Max has raised serious questions in the information security community. Reverse engineering ...
Tycoon 2FA Takedown: Inside a Leading Phishing-as-a-Service Platform That Bypassed MFA
An international coalition of law-enforcement agencies and cybersecurity companies has dismantled Tycoon 2FA, one of the most prolific phishing-as-a-service (PhaaS) ...
Cloud Imperium Games Confirms Star Citizen Data Breach and Warns of Phishing Risks
Cloud Imperium Games (CIG), the studio behind the space sim Star Citizen and the single-player title Squadron 42, has disclosed ...
CyberStrikeAI: Open-Source AI Platform Implicated in Automated Fortinet FortiGate Attacks
Open-source AI-driven offensive tools are rapidly moving from lab experiments into real attack chains. According to research by Team Cymru, ...
Google and Cloudflare Pilot Merkle Tree Certificates to Secure Chrome HTTPS Against Post‑Quantum Attacks
Google has unveiled a detailed roadmap to protect Chrome HTTPS certificates from post‑quantum attacks, centered on a new scheme called ...