Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Silhouettes of three figures in front of a Microsoft building with a fiery background.

Microsoft Patch Tuesday: 81 fixes, two zero‑days, and critical Azure, HPC Pack, and NTLM vulnerabilities

CyberSecureFox 🦊

Microsoft’s September Patch Tuesday delivers security fixes for 81 vulnerabilities across its product stack. The release includes nine critical issues, ...

Aerial view of a city with a large sign announcing the AI Darwin Awards.

AI Darwin Awards Open Nominations: Lessons for LLM Security After the Replit Incident

CyberSecureFox 🦊

AI Darwin Awards, a new initiative that documents high-impact failures in artificial intelligence deployments, has opened nominations with a clear ...

Adobe headquarters with the Golden Gate Bridge and vibrant autumn scenery.

CVE-2025-54236 “SessionReaper” in Adobe Commerce/Magento: Critical REST API Flaw Enables Account Takeover

CyberSecureFox 🦊

A critical vulnerability tracked as CVE-2025-54236 and informally dubbed SessionReaper impacts Adobe Commerce and Magento, earning a CVSS 9.1 severity. ...

Digital security theme featuring a locked phone, rodents, and a hooded figure.

RuStore and F6 Disrupt DeliveryRAT Android MaaS Campaign, Blocking 604 Domains

CyberSecureFox 🦊

F6 researchers, in coordination with RuStore, have dismantled one of the most active Android-focused cybercrime operations of 2024 by blocking ...

Red downward trend indicator over urban skyline showing financial decline.

Pirated Video Revenues Fall 14.5% in H1 2025 as Anti-Piracy and Brand-Safety Squeeze CPM

CyberSecureFox 🦊

The underground market for pirated video is shrinking financially even as its infrastructure expands. According to F6 estimates, distributors of ...

Man showing frustration at a laptop with a warning symbol for Plex.

Plex confirms database access incident: what was exposed and how to secure your account

CyberSecureFox 🦊

Streaming platform Plex has notified users about unauthorized access to one of its databases. According to the company, the intruder ...

Close-up of a weathered button labeled "2FA" on a rusty surface.

Malicious Releases of chalk and strip-ansi Expose npm’s Transitive Dependency Risk in Web3‑Focused Supply Chain Attack

CyberSecureFox 🦊

A coordinated phishing campaign against a high-profile npm maintainer enabled attackers to publish malicious versions of widely used JavaScript packages, ...

Comparison of Google and AI search interfaces on contrasting backgrounds.

Google’s AI Mode in Search: What Changes, Who’s Affected, and the Security Risks to Plan For

CyberSecureFox 🦊

Google is preparing a notable shift in its Search interface: users will soon be able to set an AI mode ...

Router surrounded by a glowing skull made of binary code, representing digital threats.

TP-Link confirms TR‑069/CWMP zero‑day in consumer routers: what to know and how to mitigate

CyberSecureFox 🦊

TP-Link has confirmed a previously unknown (0‑day) vulnerability in its implementation of the TR‑069/CWMP remote management protocol used by consumer ...

Young man anxiously stares at laptop in a dimly lit office.

Largest npm Supply Chain Attack Reaches 10% of Cloud Environments—but Nets Only Dollars

CyberSecureFox 🦊

A record-scale npm supply chain incident briefly inserted malicious code into widely used JavaScript libraries, touching an estimated 10% of ...