Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
SlopAds Ad-Fraud Network Dismantled: 224 Android Apps Pulled from Google Play
Google has removed 224 malicious Android apps from Google Play linked to the SlopAds ad‑fraud operation. According to Satori Threat ...
Appeals Court Sends BreachForums Admin ‘Pompompurin’ to Prison: What It Means for Cybercrime and Enterprise Risk
A federal appeals court has vacated a previously lenient sentence and imposed a three‑year prison term on 22‑year‑old Connor Brian ...
KioSoft CVE-2025-8699: Vulnerable Prepaid NFC Cards Abused to Inflate Balances, Patch Arrived a Year Later
Security researchers at SEC Consult (Eviden) uncovered a critical flaw in certain KioSoft prepaid NFC cards that power self-service payments ...
Microsoft and Cloudflare Dismantle RaccoonO365 Phishing-as-a-Service Targeting Microsoft 365
Microsoft’s Digital Crimes Unit (DCU) and Cloudflare have jointly disrupted the RaccoonO365 phishing-as-a-service (PhaaS) operation used to steal Microsoft 365 ...
FinWise Bank Confirms Insider Data Breach Affecting American First Finance Customers
FinWise Bank has disclosed a data security incident dated May 31, 2024, in which a former employee accessed confidential information ...
Head Mare APT adopts multi‑stage backdoors and SSH tunneling in latest campaign
Researchers at Kaspersky have observed a fresh wave of targeted intrusion activity by the Head Mare threat group against organizations ...
ComicForm runs dual-vector phishing across CIS, delivering FormBook via multi-stage .NET loader
A new wave of targeted phishing in the CIS is being attributed to the threat group ComicForm. Active since at ...
Shai-Hulud npm Worm: Self-Spreading Attack Abuses GitHub Actions to Trojanize Dependencies and Steal Secrets
Security researchers have reported a large-scale compromise of more than 180 npm packages by a self-replicating malware strain that automatically ...
Samsung patches Android zero-day CVE-2025-21043 in Quramsoft image codec
Samsung has released a security update for CVE-2025-21043, a zero-day vulnerability rated CVSS 8.8 and confirmed as exploited in targeted ...
WhiteCobra abuses VS Code and Open VSX with malicious VSIX extensions targeting developers
Threat analysts at Koi Security have identified a coordinated WhiteCobra campaign abusing the VS Code Marketplace and Open VSX Registry. ...