Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Raspberry Pi 500+: NVMe Storage, 16GB RAM, and QMK Keyboard — Security Implications and Hardening Guide
Raspberry Pi is doubling down on the “computer-in-a-keyboard” concept with the Raspberry Pi 500+. Beyond a performance bump, the device ...
ShadowV2 Turns Misconfigured Docker and GitHub Codespaces into a DDoS-as-a-Service Platform
Darktrace has profiled ShadowV2, a new DDoS botnet that targets exposed Docker environments and monetizes access through a DDoS‑as‑a‑Service model. ...
Stellantis Confirms Contact Data Exposure Amid Broader Salesforce Ecosystem Threats
Stellantis has disclosed unauthorized access to a third‑party platform that supports its customer service operations in North America. According to ...
Steam removes BlockBlasters after StealC infostealer campaign targeting crypto users
Steam has delisted the game BlockBlasters, published by a developer using the name Genesis Interactive, after researchers uncovered a malicious ...
Valve pulls BlockBlasters from Steam after malicious update targets cryptocurrency owners
Valve has alerted Steam users to a compromised build of the game BlockBlasters that was used to steal cryptocurrency from ...
CVE-2025-10035 Zero‑Day in Fortra GoAnywhere MFT: Active Exploitation and What Security Teams Should Do Now
Threat actors are actively exploiting CVE-2025-10035, a CVSS 10.0 vulnerability in Fortra GoAnywhere MFT that enables unauthenticated remote command execution. ...
Malicious Rust crates on Crates.io siphon developer secrets via Cloudflare Workers
Two malicious Rust packages on Crates.io—faster_log and async_println—were removed after collecting roughly 8,500 downloads and quietly harvesting private keys and ...
GitHub moves to proactive defenses against software supply chain attacks across GitHub and npm
GitHub has outlined a package of safeguards to blunt escalating software supply chain attacks hitting GitHub repositories and the npm ...
NCA arrests suspect after Collins Aerospace cyberattack disrupts ARINC vMUSE across Europe
The UK’s National Crime Agency (NCA) has arrested a 40-year-old man in West Sussex as part of its investigation into ...
US Secret Service Seizes SIM Farms Near New York, Citing Risk to Cellular Networks
The US Secret Service has seized more than 300 SIM boxes and 100,000 SIM cards across the New York region ...