Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Unencrypted GEO Satellite Backhaul Exposes Calls, Aviation Wi‑Fi, and Critical Infrastructure Data
Researchers from the University of California San Diego and the University of Maryland report that a significant portion of geostationary ...
Storm-2657 Targets U.S. Universities to Hijack Payroll via HR SaaS and SSO Abuse
Microsoft Threat Intelligence has linked a wave of account‑takeover campaigns against U.S. universities to the threat group Storm‑2657, active since ...
Google Won’t Patch ASCII Smuggling in Gemini: What It Means for LLM Security
Google has declined to issue a fix for ASCII smuggling in Gemini, a technique that hides machine-readable instructions using Unicode ...
ClayRat Android Spyware Targets Russian Users with Telegram Channels and Fake Play Pages
Security researchers have documented a large-scale Android espionage operation in Russia that uses convincing social engineering, Telegram distribution, and a ...
Qualcomm to Acquire Arduino: Implications for IoT, Edge AI, and Cybersecurity
Qualcomm announced its intent to acquire Arduino, the open-source hardware and software ecosystem used by millions of developers worldwide. The ...
North Korean Crypto Theft Hits Record $2B in 2025: Elliptic Analysis and Security Guidance
Blockchain analytics firm Elliptic estimates that North Korea–linked threat actors stole more than $2 billion in cryptocurrency during the first ...
Salesforce Rejects Ransom Demands as Scattered Lapsus$ Hunters Threaten Mass Data Leak via OAuth Exploits
Salesforce has notified customers it will not negotiate or pay ransom to the threat actors behind a wave of data ...
WireTap Attack Breaks Intel SGX DCAP Attestation with a Passive DDR4 Interposer
Researchers from the Georgia Institute of Technology and Purdue University have introduced WireTap, a physical-layer attack that compromises Intel Software ...
Solar 4RAYS identifies new East Asian cluster NGC4141 exploiting API logic to compromise federal web app
Solar 4RAYS has profiled a previously unidentified East Asian threat cluster, designated NGC4141, after the group compromised a federal agency’s ...
SORVEPOTEL Malware Abuses WhatsApp Web to Self‑Spread in Brazil
Trend Micro has identified a rapid‑propagation Windows threat dubbed SORVEPOTEL that weaponizes WhatsApp Web to distribute itself at scale. The ...