Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
FBI Warns of AI‑Powered Virtual Kidnapping Scams Using Deepfake Evidence
The FBI is warning about a growing wave of AI‑powered virtual kidnapping scams in which criminals use manipulated photos and ...
Google Patches New Chrome Zero-Day in LibANGLE Metal Renderer
Google has released an out-of-band security update for Google Chrome to close a new zero-day vulnerability that is already being ...
PCIe IDE Vulnerabilities Expose Weaknesses in Hardware-Level Encryption
Three newly disclosed vulnerabilities in the PCI Express Integrity and Data Encryption (PCIe IDE) mechanism highlight that even modern hardware ...
Trojan.ChimeraWire: New Windows Malware Turns Chrome into a Stealth SEO Click Fraud Engine
Security analysts at Doctor Web have reported the discovery of Trojan.ChimeraWire, an unusual Windows-focused Trojan that weaponizes the Google Chrome ...
DroidLock Android Malware Combines Ransomware and Full Remote Control
Security researchers at Zimperium have identified a new family of Android malware dubbed DroidLock. The threat stands out because it ...
Global Password Leaks 2023–2025: Persistent Weaknesses in Password Security
A large-scale analysis of credential leaks from 2023 to 2025 conducted by Kaspersky Lab highlights a long‑standing problem in password ...
CVE-2025-8110 in Gogs: Critical Remote Code Execution Threat for Self‑Hosted Git Servers
A critical zero‑day vulnerability in Gogs, a lightweight self‑hosted Git service written in Go and widely deployed as an alternative ...
React2Shell (CVE-2025-55182): Critical React and Next.js RCE Now Weaponized by EtherRAT Malware
Within days of the disclosure of the critical React2Shell (CVE-2025-55182) vulnerability, threat hunters from Sysdig have observed active exploitation against ...
Microsoft December 2025 Patch Tuesday: Windows Zero-Day, GitHub Copilot, PowerShell and Office Flaws Fixed
Microsoft has closed 57 security vulnerabilities in its December 2025 Patch Tuesday release, including three zero‑day issues affecting Windows, GitHub ...
Google Strengthens Chrome AI Agents with Multi-Layer Defense Against Prompt Injection
Google has unveiled a multi-layer security architecture for Chrome AI agents powered by Gemini, targeting one of the most pressing ...