Cybersecurity News
Latest updates from top security sources
1595 articles, page 14 of 54
The U.S. Department of Justice announced on Wednesday the takedown of two Chinese state-sponsored hacking platforms, "QScan" and "QTRouter," operated by Nanjing Xinjiuwei Network T...
Cybersecurity researchers at Group-IB have uncovered fresh infrastructure and previously undocumented malware tied to Nimbus Manticore, an Iranian state-sponsored APT group operati...
For decades, the security operations center (SOC) has been defined by its alert queue—a backlog that, according to industry surveys, can balloon to thousands of tickets per day in ...
The Cybersecurity and Infrastructure Security Agency (CISA) has disclosed that more than 100 internet-exposed water and wastewater systems were targeted in malicious cyber activity...
Aikido Security has recreated the Australian gym-booking incident first surfaced in chat logs shared with ABC News on August 10, confirming that Anthropic's Claude Opus 4.6 running...
With some simple HTML that's invisible to users, attackers can manipulate AI-powered email summarizers into producing malicious information....
Attackers can exploit a security bug in Nvidia's tool to gain unauthenticated access to the local model server through the Ollama API, paving the way for persistent AI agent corrup...
As breach costs reach record highs and defense spending nears $240 billion, small businesses are dangerously exposed, threatening supply chain security....
A sweeping phishing-as-a-service operation known as Mirage2FA has compromised or targeted an estimated 4,532 unique corporate email domains across the United States and Europe betw...
Paylogix, a New York-based benefits management platform serving employers and insurance firms, has disclosed that the Akira ransomware gang stole sensitive personal, financial, and...
Cybersecurity researchers at OX Security have uncovered a phishing campaign leveraging 24 malicious npm packages as free infrastructure to host fake Cloudflare CAPTCHA verification...
The U.S. Department of the Treasury has imposed fresh sanctions on Iranian cyber actors as part of Operation Economic Outcast, an "unprecedented, whole-of-government, economic camp...
AI trust and safety company Alice, formerly operating as ActiveFence, announced a $140 million funding round this week, bringing its total capital raised to $280 million. The round...
Interpol has concluded Operation Jackal IV, an eight-month coordinated effort that resulted in 58 arrests and the identification of hundreds of additional suspects across four cont...
Marimo has patched a high-severity code injection vulnerability in its open-source notebook platform that allows a specially crafted notebook to execute attacker-supplied Model Con...
Researchers at Oasis Security have disclosed a serious vulnerability in NVIDIA's NemoClaw reference stack that allows an attacker-controlled webpage to seize control of a local Oll...
The Linux Foundation announced Tuesday that it will assume governance of TRACE (Trust, Runtime Attestation and Compliance Evidence), a new open specification designed to produce ve...
Ukraine has agreed to grant the United Kingdom access to a massive trove of battlefield intelligence collected during its war with Russia, enabling British companies and researcher...
Meta announced a suite of WhatsApp account security enhancements on Tuesday, headlined by support for multiple passkeys on a single account, enabling users on both iOS and Android ...
Attackers are actively scanning for WordPress sites running vulnerable versions of the Xecurify miniOrange SAML 2.0 Single Sign-On plugin, exploiting two unauthenticated authentica...
Security researchers at Kaspersky have identified what they believe is the first malware strain built specifically to target automotive head units, and it carries strong links to t...
Norway's public digital infrastructure faced severe disruption this week after a large-scale distributed denial-of-service (DDoS) attack knocked government services offline for mor...
CISA has added the Oracle HTTP Server and Oracle WebLogic Server Proxy Plug-in vulnerability CVE-2026-21962 to its Known Exploited Vulnerabilities catalog after evidence of active ...
ClickFix-style threat campaigns are using a new trick to evade detection and deliver Amatera, an increasingly prevalent infostealer....
An advanced, multilingual malware family brings back a trick from yesteryear — screen hijacking — for effective password theft, along with a slew of novel features....
The latest version of the Android malware has new features that expand its global reach and put more than users' financial applications at risk....
The combination of AI both discovering more vulnerabilities at a faster pace and the tightening regulatory environment is making this an all-hands-on-deck moment for the cybersecur...
Red Hat and the Keycloak project have shipped urgent patches for a flaw in the open-source identity and access management platform that allows unauthenticated remote attackers to t...
The Dutch Data Protection Authority (Autoriteit Persoonsgegevens) has fined Uber 825 million euros (approximately $964 million) for violating the EU's General Data Protection Regul...
New Zealand Prime Minister Christopher Luxon announced Monday that his government plans to introduce legislation banning children under 16 from accessing major social media platfor...