Sept. 18, 2025 |
New iPhone Air Camera Flaw: What You Need to Know |
https://securityonline.info/new-iphone-air-camera-flaw-what-you-need-to-know/
|
Sept. 18, 2025 |
From mischief to malware: ICO warns schools about student hackers |
https://www.fortra.com/blog/mischief-malware-ico-warns-schools-about-student-hackers
|
Sept. 18, 2025 |
“Pompompurin” resentenced: BreachForums creator heads back behind bars |
https://www.bitdefender.com/en-us/blog/hotforsecurity/pompompurin-resentenced-breachforums-creator-heads-back-behind-bars
|
Sept. 18, 2025 |
Palo Alto Networks Acknowledges SquareX Research on Limitations of SWGs Against Last Mile Reassembly Attacks |
https://securityonline.info/palo-alto-networks-acknowledges-squarex-research-on-limitations-of-swgs-against-last-mile-reassembly-attacks/
|
Sept. 18, 2025 |
Notepad gets free AI features on Copilot+ PCs with Windows 11 |
https://www.bleepingcomputer.com/news/microsoft/notepad-gets-free-ai-features-on-copilot-plus-pcs-with-windows-11/
|
Sept. 18, 2025 |
The AI Fix #67: Will Smith’s AI crowd scandal, and gullible agents fall for scams |
https://grahamcluley.com/the-ai-fix-67/
|
Sept. 18, 2025 |
TikTok Deal Won't End Enterprise Risks |
https://www.darkreading.com/cyber-risk/tiktok-deal-enterprise-risks
|
Sept. 18, 2025 |
Target-rich environment: Why Microsoft 365 has become the biggest risk |
https://www.bleepingcomputer.com/news/security/target-rich-environment-why-microsoft-365-has-become-the-biggest-risk/
|
Sept. 18, 2025 |
Slow Charger? Your Apple Watch Now Has a New Warning for That |
https://securityonline.info/slow-charger-your-apple-watch-now-has-a-new-warning-for-that/
|
Sept. 18, 2025 |
Smashing Security podcast #435: Lights! Camera! Hacktion! |
https://grahamcluley.com/smashing-security-podcast-435/
|
Sept. 17, 2025 |
Microsoft rolls out Copilot Chat to Microsoft 365 Office apps |
https://www.bleepingcomputer.com/news/microsoft/microsoft-rolls-out-copilot-chat-to-microsoft-365-office-apps/
|
Sept. 17, 2025 |
Microsoft Still Uses RC4 |
https://www.schneier.com/blog/archives/2025/09/microsoft-still-uses-rc4.html
|
Sept. 17, 2025 |
AI-Powered Sign-up Fraud Is Scaling Fast |
https://www.darkreading.com/vulnerabilities-threats/ai-powered-sign-up-fraud-scaling-fast
|
Sept. 17, 2025 |
Airline data broker selling 5 billion passenger records to US government |
https://www.malwarebytes.com/blog/news/2025/09/airline-data-broker-selling-5-billion-passenger-records-to-us-government
|
Sept. 17, 2025 |
BreachForums hacking forum admin resentenced to three years in prison |
https://www.bleepingcomputer.com/news/security/breachforums-hacking-forum-admin-resentenced-to-three-years-in-prison/
|
Sept. 17, 2025 |
Microsoft: WMIC will be removed after Windows 11 25H2 upgrade |
https://www.bleepingcomputer.com/news/microsoft/microsoft-wmic-will-be-removed-after-windows-11-25h2-upgrade/
|
Sept. 17, 2025 |
SecurityScorecard Buys AI Automation Capabilities, Boosts Vendor Risk Management |
https://www.darkreading.com/cyber-risk/securityscorecard-buys-ai-automation-capabilities-boosts-vendor-risk-management
|
Sept. 16, 2025 |
Innovative FileFix Phishing Attack Proves Plenty Potent |
https://www.darkreading.com/cyberattacks-data-breaches/innovative-filefix-attack-potent
|
Sept. 16, 2025 |
NVIDIA CUDA is Coming to Ubuntu Repositories |
https://securityonline.info/nvidia-cuda-is-coming-to-ubuntu-repositories/
|
Sept. 16, 2025 |
Luxury fashion brands Gucci, Balenciaga and Alexander McQueen hacked – customer data stolen |
https://www.bitdefender.com/en-us/blog/hotforsecurity/luxury-fashion-brands-gucci-balenciaga-and-alexander-mcqueen-hacked-customer-data-stolen
|
Sept. 16, 2025 |
Malicious Update to Popular NPM Package TinyColor Exposes Software Supply Chains |
https://securityonline.info/malicious-update-to-popular-npm-package-tinycolor-exposes-software-supply-chains/
|
Sept. 16, 2025 |
Jaguar Land Rover extends shutdown after cyberattack by another week |
https://www.bleepingcomputer.com/news/security/jaguar-land-rover-extends-shutdown-after-cyberattack-by-another-week/
|
Sept. 16, 2025 |
Watch out for the “We are hiring” remote online evaluator message scam |
https://www.malwarebytes.com/blog/news/2025/09/watch-out-for-the-we-are-hiring-remote-online-evaluator-message-scam
|
Sept. 16, 2025 |
“A dare, a challenge, a bit of fun:” Children are hacking their own schools’ systems, says study |
https://www.malwarebytes.com/blog/news/2025/09/a-dare-a-challenge-a-bit-of-fun-children-are-hacking-their-own-schools-systems-says-study
|
Sept. 16, 2025 |
Apple Ends iCloud Support for Older Devices |
https://securityonline.info/apple-ends-icloud-support-for-older-devices/
|
Sept. 16, 2025 |
A week in security (September 8 – September 14) |
https://www.malwarebytes.com/blog/news/2025/09/a-week-in-security-september-8-september-14
|
Sept. 15, 2025 |
AI Content War: Penske Media Sues Google Over AI Overviews |
https://securityonline.info/ai-content-war-penske-media-sues-google-over-ai-overviews/
|
Sept. 15, 2025 |
Microsoft says Windows September updates break SMBv1 shares |
https://www.bleepingcomputer.com/news/microsoft/microsoft-says-windows-september-updates-break-smbv1-shares/
|
Sept. 15, 2025 |
Lawsuit About WhatsApp Security |
https://www.schneier.com/blog/archives/2025/09/lawsuit-about-whatsapp-security.html
|
Sept. 15, 2025 |
GitHub Actions: A Cloudy Day for Security - Part 2 |
https://www.reddit.com/r/netsec/comments/1nheq9r/github_actions_a_cloudy_day_for_security_part_2/
|
Sept. 15, 2025 |
Students Pose Inside Threat to Education Sector |
https://www.darkreading.com/insider-threats/students-inside-threat-education-sector
|
Sept. 15, 2025 |
Microsoft fixes Windows 11 audio issues confirmed in December |
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-11-audio-issues-confirmed-in-december/
|
Sept. 15, 2025 |
FinWise insider breach impacts 689K American First Finance customers |
https://www.bleepingcomputer.com/news/security/finwise-insider-breach-impacts-689k-american-first-finance-customers/
|
Sept. 14, 2025 |
FTC Probes Google, Amazon Over ‘Opaque’ Ad Practices |
https://securityonline.info/ftc-probes-google-amazon-over-opaque-ad-practices/
|
Sept. 14, 2025 |
SentinelOne Announces Plans to Acquire Observo AI |
https://www.darkreading.com/cybersecurity-operations/sentinelone-acquire-observo-ai
|
Sept. 14, 2025 |
A New Era for Developers: Microsoft Waives App Publishing Fees |
https://securityonline.info/a-new-era-for-developers-microsoft-waives-app-publishing-fees/
|
Sept. 14, 2025 |
Without Federal Help, Cyber Defense Is Up to the Rest of Us |
https://www.darkreading.com/cyberattacks-data-breaches/without-federal-help-cyber-defense-cisa
|
Sept. 14, 2025 |
Microsoft reminds of Windows 10 support ending in 30 days |
https://www.bleepingcomputer.com/news/microsoft/microsoft-reminds-of-windows-10-support-ending-in-30-days/
|
Sept. 14, 2025 |
New VoidProxy phishing service targets Microsoft 365, Google accounts |
https://www.bleepingcomputer.com/news/security/new-voidproxy-phishing-service-targets-microsoft-365-google-accounts/
|
Sept. 14, 2025 |
Is the Browser Becoming the New Endpoint? |
https://www.darkreading.com/endpoint-security/browser-becoming-new-endpoint
|
Sept. 14, 2025 |
Corsair Settles $5.5M Lawsuit Over Misleading Memory Speeds |
https://securityonline.info/corsair-settles-5-5m-lawsuit-over-misleading-memory-speeds/
|
Sept. 14, 2025 |
Microsoft Avoids EU Antitrust Fine with Teams Deal |
https://securityonline.info/microsoft-avoids-eu-antitrust-fine-with-teams-deal/
|
Sept. 14, 2025 |
Microsoft Drops Developer Fees to Revitalize Its App Store |
https://securityonline.info/microsoft-drops-developer-fees-to-revitalize-its-app-store/
|
Sept. 13, 2025 |
Firefox Finally Adds MKV Video Support After an 8-Year Wait |
https://securityonline.info/firefox-finally-adds-mkv-video-support-after-an-8-year-wait/
|
Sept. 13, 2025 |
PlayStation Launches Family App for Mobile Parental Controls |
https://securityonline.info/playstation-launches-family-app-for-mobile-parental-controls/
|
Sept. 13, 2025 |
Vyro AI Leak Reveals Poor Cyber Hygiene |
https://www.darkreading.com/cyberattacks-data-breaches/vyro-ai-leak-cyber-hygiene
|
Sept. 13, 2025 |
Apple Issues New Spyware Alerts for French Officials and Journalists |
https://securityonline.info/apple-issues-new-spyware-alerts-for-french-officials-and-journalists/
|
Sept. 13, 2025 |
French Advisory Sheds Light on Apple Spyware Activity |
https://www.darkreading.com/vulnerabilities-threats/french-sheds-light-apple-spyware-activity
|
Sept. 13, 2025 |
Man gets over 4 years in prison for selling unreleased movies |
https://www.bleepingcomputer.com/news/security/man-gets-over-4-years-in-prison-for-selling-unreleased-movies/
|
Sept. 13, 2025 |
F5 to Acquire CalypsoAI for Advanced AI Security Capabilities |
https://www.darkreading.com/cyber-risk/f5-calypsoai-advanced-ai-security-capabilities
|
Sept. 13, 2025 |
The End of an Era: Microsoft Is Finally Killing VBScript |
https://securityonline.info/the-end-of-an-era-microsoft-is-finally-killing-vbscript/
|
Sept. 13, 2025 |
Practice spotting typo squatted domains (Browser game: Typosquat Detective) |
https://www.reddit.com/r/netsec/comments/1ne4f2u/practice_spotting_typo_squatted_domains_browser/
|
Sept. 13, 2025 |
Windows 11 23H2 Home and Pro reach end of support in 60 days |
https://www.bleepingcomputer.com/news/microsoft/windows-11-23h2-home-and-pro-reach-end-of-support-in-60-days/
|
Sept. 12, 2025 |
A Cyberattack Victim Notification Framework |
https://www.schneier.com/blog/archives/2025/09/a-cyberattack-victim-notification-framework.html
|
Sept. 12, 2025 |
Undocumented Radios Found in Solar-Powered Devices |
https://www.darkreading.com/ics-ot-security/undocumented-radios-found-solar-powered-devices
|
Sept. 12, 2025 |
‘Astronaut-in-distress’ romance scammer steals money from elderly woman |
https://www.malwarebytes.com/blog/news/2025/09/astronaut-in-distress-romance-scammer-steals-money-from-elderly-woman
|
Sept. 12, 2025 |
Blast Radius of Salesloft Drift Attacks Remains Uncertain |
https://www.darkreading.com/cyberattacks-data-breaches/salesloft-drift-attacks-blast-radius-uncertain
|
Sept. 12, 2025 |
British rail passengers urged to stay on guard after hack signals failure |
https://www.bitdefender.com/en-us/blog/hotforsecurity/british-rail-passengers-hack-signals-failure
|
Sept. 12, 2025 |
From Fitbit to financial despair: How one woman lost her life savings and more to a scammer |
https://www.malwarebytes.com/blog/scams/2025/09/from-fitbit-to-financial-despair-how-one-woman-lost-her-life-savings-and-more-to-a-scammer
|
Sept. 12, 2025 |
US charges suspected ransomware kingpin, and offers $10 million bounty for his capture |
https://www.fortra.com/blog/us-charges-suspected-ransomware-kingpin-offers-10-million-bounty
|
Sept. 12, 2025 |
The first three things you’ll want during a cyberattack |
https://www.bleepingcomputer.com/news/security/the-first-three-things-youll-want-during-a-cyberattack/
|
Sept. 12, 2025 |
WordPress Woes Continue Amid ClickFix Attacks, TDS Threats |
https://www.darkreading.com/vulnerabilities-threats/wordpress-woes-clickfix-attacks-tds-threats
|
Sept. 12, 2025 |
The Buyer’s Guide to Browser Extension Management |
https://www.bleepingcomputer.com/news/security/the-buyers-guide-to-browser-extension-management/
|
Sept. 12, 2025 |
Pre-approved GLP-1 prescription scam could be bad for your health |
https://www.malwarebytes.com/blog/news/2025/09/pre-approved-glp-1-prescription-scam-could-be-bad-for-your-health
|
Sept. 12, 2025 |
Microsoft adds malicious link warnings to Teams private chats |
https://www.bleepingcomputer.com/news/security/microsoft-adds-malicious-link-warnings-to-teams-private-chats/
|
Sept. 11, 2025 |
1.5 billion packets per second DDoS attack detected with FastNetMon |
https://securityonline.info/1-5-billion-packets-per-second-ddos-attack-detected-with-fastnetmon/
|
Sept. 11, 2025 |
Meta ignored child sex abuse in VR, say whistleblowers |
https://www.malwarebytes.com/blog/news/2025/09/meta-ignored-child-sex-abuse-in-vr-say-whistleblowers
|
Sept. 11, 2025 |
Apple warns customers targeted in recent spyware attacks |
https://www.bleepingcomputer.com/news/security/apple-warns-customers-targeted-in-recent-spyware-attacks/
|
Sept. 11, 2025 |
U.S. Senator accuses Microsoft of “gross cybersecurity negligence” |
https://www.bleepingcomputer.com/news/security/us-senator-accuses-microsoft-of-gross-cybersecurity-negligence/
|
Sept. 11, 2025 |
Microsoft investigates Exchange Online outage in North America |
https://www.bleepingcomputer.com/news/microsoft/microsoft-investigates-exchange-online-outage-in-north-america/
|
Sept. 11, 2025 |
Salesloft Breached via GitHub Account Compromise |
https://www.darkreading.com/cyberattacks-data-breaches/salesloft-breached-github-account-compromise
|
Sept. 11, 2025 |
Fake Bureau of Motor Vehicles texts are after your personal and banking details |
https://www.malwarebytes.com/blog/news/2025/09/fake-bureau-motor-vehicles-texts-are-after-your-personal-and-banking-details
|
Sept. 11, 2025 |
Smashing Security podcast #434: Whopper Hackers, and AI Whoppers |
https://grahamcluley.com/smashing-security-podcast-434/
|
Sept. 11, 2025 |
Community Notes: Meta Invites All Users to Test New Fact-Checking System |
https://securityonline.info/community-notes-meta-invites-all-users-to-test-new-fact-checking-system/
|
Sept. 11, 2025 |
Hackers Are Sophisticated & Impatient — That Can Be Good |
https://www.darkreading.com/cyberattacks-data-breaches/hackers-sophisticated-impatient-good
|
Sept. 10, 2025 |
The Quiet Revolution in Kubernetes Security |
https://www.darkreading.com/vulnerabilities-threats/quiet-revolution-kubernetes-security
|
Sept. 10, 2025 |
Hackers left empty-handed after massive NPM supply-chain attack |
https://www.bleepingcomputer.com/news/security/hackers-left-empty-handed-after-massive-npm-supply-chain-attack/
|
Sept. 10, 2025 |
Microsoft waives fees for Windows devs publishing to Microsoft Store |
https://www.bleepingcomputer.com/news/microsoft/microsoft-waives-fees-for-windows-devs-publishing-to-microsoft-store/
|
Sept. 10, 2025 |
DDoS defender targeted in 1.5 Bpps denial-of-service attack |
https://www.bleepingcomputer.com/news/security/ddos-defender-targeted-in-15-bpps-denial-of-service-attack/
|
Sept. 10, 2025 |
Pixel 10 fights AI fakes with new Android photo verification tech |
https://www.bleepingcomputer.com/news/security/pixel-10-fights-ai-fakes-with-new-android-photo-verification-tech/
|
Sept. 10, 2025 |
Qantas Reduces Executive Pay Following Cyberattack |
https://www.darkreading.com/cyberattacks-data-breaches/qantas-reduces-executive-pay-cyberattack
|
Sept. 10, 2025 |
Ransomware attack at blood center: Org tells users their data’s been stolen |
https://www.malwarebytes.com/blog/news/2025/09/ransomware-attack-at-blood-center-org-tells-users-their-datas-been-stolen
|
Sept. 10, 2025 |
Jaguar Land Rover confirms data theft after recent cyberattack |
https://www.bleepingcomputer.com/news/security/jaguar-land-rover-jlr-confirms-data-theft-after-recent-cyberattack/
|
Sept. 10, 2025 |
Google misled users about their privacy and now owes them $425m, says court |
https://www.malwarebytes.com/blog/news/2025/09/google-misled-users-about-their-privacy-and-now-owes-them-425m-says-court
|
Sept. 10, 2025 |
Popeyes, Tim Hortons, Burger King platforms have “catastrophic” vulnerabilities, say hackers |
https://www.malwarebytes.com/blog/news/2025/09/popeyes-tim-hortons-burger-king-platforms-have-catastrophic-vulnerabilities-say-hackers
|
Sept. 10, 2025 |
UAE to Implement Cyber Education Initiative |
https://www.darkreading.com/cybersecurity-operations/uae-cyber-education-initiative
|
Sept. 10, 2025 |
Plex users: Reset your password! |
https://www.malwarebytes.com/blog/news/2025/09/plex-users-reset-your-password
|
Sept. 10, 2025 |
The Open Web Is in “Rapid Decline,” Google Admits in Court |
https://securityonline.info/the-open-web-is-in-rapid-decline-google-admits-in-court/
|
Sept. 10, 2025 |
Southeast Asian Scam Centers Face More Financial Sanctions |
https://www.darkreading.com/cyber-risk/southeast-asian-scam-centers-financial-sanctions
|
Sept. 10, 2025 |
Why Manual Cyber Operations Can Create Dangerous Gaps |
https://www.recordedfuture.com/blog/why-manual-cyber-operations-can-create-dangerous-gaps
|
Sept. 9, 2025 |
U.S. sanctions cyber scammers who stole billions from Americans |
https://www.bleepingcomputer.com/news/security/us-sanctions-cyber-scammers-who-stole-billions-from-americans/
|
Sept. 9, 2025 |
The Critical Failure in Vulnerability Management |
https://www.darkreading.com/vulnerabilities-threats/the-critical-failure-in-vulnerability-management
|
Sept. 9, 2025 |
A Technical Analysis on How a Chinese Company is Exporting The Great Firewall to Autocratic Regimes |
https://www.reddit.com/r/netsec/comments/1ncsu89/a_technical_analysis_on_how_a_chinese_company_is/
|
Sept. 9, 2025 |
Action1 vs. Microsoft WSUS: A Better Approach to Modern Patch Management |
https://www.bleepingcomputer.com/news/security/action1-vs-microsoft-wsus-a-better-approach-to-modern-patch-management/
|
Sept. 9, 2025 |
iCloud Calendar infrastructure abused in PayPal phishing campaign |
https://www.malwarebytes.com/blog/news/2025/09/icloud-calendar-infrastructure-abused-in-paypal-phishing-campaign
|
Sept. 9, 2025 |
A week in security (September 1 – September 7) |
https://www.malwarebytes.com/blog/news/2025/09/a-week-in-security-september-1-september-7
|
Sept. 9, 2025 |
Lovesac confirms data breach after ransomware attack claims |
https://www.bleepingcomputer.com/news/security/lovesac-confirms-data-breach-after-ransomware-attack-claims/
|
Sept. 9, 2025 |
Signal adds secure cloud backups to save and restore chats |
https://www.bleepingcomputer.com/news/security/signal-adds-secure-cloud-backups-to-save-and-restore-chats/
|
Sept. 9, 2025 |
Intel’s 14A Process Will Be Its Most Expensive and Advanced Yet |
https://securityonline.info/intels-14a-process-will-be-its-most-expensive-and-advanced-yet/
|
Sept. 9, 2025 |
Plex tells users to reset passwords after new data breach |
https://www.bleepingcomputer.com/news/security/plex-tells-users-to-reset-passwords-after-new-data-breach/
|
Sept. 8, 2025 |
GitHub Actions: A Cloudy Day for Security - Part 1 |
https://www.reddit.com/r/netsec/comments/1nbgj2h/github_actions_a_cloudy_day_for_security_part_1/
|
Sept. 8, 2025 |
A New Threat to Artists: Hackers Threaten to Feed Stolen Art to AI |
https://securityonline.info/a-new-threat-to-artists-hackers-threaten-to-feed-stolen-art-to-ai/
|
Sept. 8, 2025 |
Jaguar Land Rover Shuts Down in Scramble to Secure 'Cyber Incident' |
https://www.darkreading.com/cyberattacks-data-breaches/jaguar-land-rover-cyber-incident
|
Sept. 8, 2025 |
18 Popular Code Packages Hacked, Rigged to Steal Crypto |
https://krebsonsecurity.com/2025/09/18-popular-code-packages-hacked-rigged-to-steal-crypto/
|
Sept. 8, 2025 |
Sports streaming piracy service with 123M yearly visits shut down |
https://www.bleepingcomputer.com/news/security/massive-calcio-sports-streaming-piracy-service-with-123m-yearly-visits-shut-down/
|
Sept. 8, 2025 |
Qualcomm CEO: Intel’s Foundry Is Not Ready for Our Chips |
https://securityonline.info/qualcomm-ceo-intels-foundry-is-not-ready-for-our-chips/
|
Sept. 8, 2025 |
Azure to Enforce MFA for All Resource Management Operations |
https://securityonline.info/azure-to-enforce-mfa-for-all-resource-management-operations/
|
Sept. 8, 2025 |
Hackers hijack npm packages with 2 billion weekly downloads in supply chain attack |
https://www.bleepingcomputer.com/news/security/hackers-hijack-npm-packages-with-2-billion-weekly-downloads-in-supply-chain-attack/
|
Sept. 8, 2025 |
This “insidious” police tech claims to predict crime (Lock and Code S06E18) |
https://www.malwarebytes.com/blog/podcast/2025/09/this-insidious-police-tech-claims-to-predict-crime-lock-and-code-s06e18
|
Sept. 8, 2025 |
Mozilla to End Support for Firefox on 32-bit Linux in 2026 |
https://securityonline.info/mozilla-to-end-support-for-firefox-on-32-bit-linux-in-2026/
|
Sept. 8, 2025 |
Mozilla Keeps Extending Firefox Support for Windows 7 |
https://securityonline.info/mozilla-keeps-extending-firefox-support-for-windows-7/
|
Sept. 7, 2025 |
Google to make it easier to access AI Mode as default |
https://www.bleepingcomputer.com/news/google/google-to-make-it-easier-to-access-ai-mode-as-default/
|
Sept. 7, 2025 |
JSON Config File Leaks Azure ActiveDirectory Credentials |
https://www.darkreading.com/cybersecurity-operations/public-file-leaks-azure-activedirectory-credentials
|
Sept. 7, 2025 |
Azure Services Disrupted After Red Sea Submarine Cables Severed |
https://securityonline.info/azure-services-disrupted-after-red-sea-submarine-cables-severed/
|
Sept. 7, 2025 |
iCloud Calendar abused to send phishing emails from Apple’s servers |
https://www.bleepingcomputer.com/news/security/icloud-calendar-abused-to-send-phishing-emails-from-apples-servers/
|
Sept. 7, 2025 |
Czech cyber agency warns against Chinese tech in critical infrastructure |
https://www.bleepingcomputer.com/news/security/czech-cyber-agency-warns-against-chinese-tech-in-critical-infrastructure/
|
Sept. 7, 2025 |
Apple Sued for Training AI on Pirated Books |
https://securityonline.info/apple-sued-for-training-ai-on-pirated-books/
|
Sept. 7, 2025 |
Google Fined €325M by French Regulator for Privacy Violations |
https://securityonline.info/google-fined-e325m-by-french-regulator-for-privacy-violations/
|
Sept. 7, 2025 |
Hacked Routers Linger on the Internet for Years, Data Shows |
https://www.darkreading.com/endpoint-security/hacked-routers-linger-on-the-internet-for-years-data-shows
|
Sept. 7, 2025 |
Nexar dashcam video database hacked |
https://www.malwarebytes.com/blog/news/2025/09/nexar-dashcam-video-database-hacked
|
Sept. 7, 2025 |
Microsoft gives US students a free year of Microsoft 365 Personal |
https://www.bleepingcomputer.com/news/microsoft/microsoft-gives-us-students-a-free-year-of-microsoft-365-personal/
|
Sept. 7, 2025 |
UltraViolet Expands AppSec Capabilities With Black Duck's Testing Business |
https://www.darkreading.com/application-security/ultraviolet-expands-appsec-capabilities-black-duck-testing-business
|
Sept. 7, 2025 |
Czech Warning Highlights China Stealing User Data |
https://www.darkreading.com/cybersecurity-operations/czech-warning-highlights-china-stealing-user-data
|
Sept. 7, 2025 |
EU Fines Google $3.5B for Abusing Its Ad Tech Monopoly |
https://securityonline.info/eu-fines-google-3-5b-for-abusing-its-ad-tech-monopoly/
|
Sept. 6, 2025 |
How Has IoT Security Changed Over the Past 5 Years? |
https://www.darkreading.com/ics-ot-security/how-has-iot-security-changed-over-the-past-5-years-
|
Sept. 6, 2025 |
Don’t let outdated IGA hold back your security, compliance, and growth |
https://www.bleepingcomputer.com/news/security/dont-let-outdated-iga-hold-back-your-security-compliance-and-growth/
|
Sept. 6, 2025 |
Microsoft now enforces MFA on Azure Portal sign-ins for all tenants |
https://www.bleepingcomputer.com/news/microsoft/microsoft-now-enforces-mfa-on-azure-portal-sign-ins-for-all-tenants/
|
Sept. 6, 2025 |
GOP Cries Censorship Over Spam Filters That Work |
https://krebsonsecurity.com/2025/09/gop-cries-censorship-over-spam-filters-that-work/
|
Sept. 6, 2025 |
EU fines Google $3.5 billion for anti-competitive ad practices |
https://www.bleepingcomputer.com/news/google/eu-fines-google-35-billion-for-anti-competitive-ad-practices/
|
Sept. 6, 2025 |
Embracing the Next Generation of Cybersecurity Talent |
https://www.darkreading.com/cybersecurity-operations/embracing-next-generation-cybersecurity-talent
|
Sept. 6, 2025 |
Roblox introduces age checks to use communication features |
https://www.malwarebytes.com/blog/news/2025/09/roblox-introduces-age-checks-to-use-communication-features
|
Sept. 5, 2025 |
NIST Enhances Security Controls for Improved Patching |
https://www.darkreading.com/cybersecurity-operations/nist-enhances-security-controls-for-improved-patching
|
Sept. 5, 2025 |
France slaps Google with €325M fine for violating cookie regulations |
https://www.bleepingcomputer.com/news/security/france-slaps-google-with-325m-fine-for-violating-cookie-regulations/
|
Sept. 5, 2025 |
No we didn’t warn all Gmail users about imminent digital doom, says Google |
https://www.malwarebytes.com/blog/news/2025/09/no-we-didnt-warn-all-gmail-users-about-imminent-doom-says-google
|
Sept. 5, 2025 |
How Gray-Zone Hosting Companies Protect Data the US Wants Erased |
https://www.darkreading.com/cloud-security/how-gray-zone-hosting-companies-protect-data-us-wants-erased
|
Sept. 5, 2025 |
Parents warned that robot toys spied on children’s location without consent |
https://www.bitdefender.com/en-us/blog/hotforsecurity/parents-warned-that-robot-toys-spied-on-childrens-location-without-consent
|
Sept. 5, 2025 |
Germany charges hacker with Rosneft cyberattack in latest wake-up call for critical infrastructure |
https://www.exponential-e.com/blog/germany-charges-hacker-with-rosneft-cyberattack-in-latest-wake-up-call-for-critical-infrastructure
|
Sept. 5, 2025 |
A £100M Lawsuit: Tesco Sues Broadcom Over VMware License Dispute |
https://securityonline.info/a-100m-lawsuit-tesco-sues-broadcom-over-vmware-license-dispute/
|
Sept. 5, 2025 |
Federal Cuts Put Local, State Agencies at Cyber-Risk |
https://www.darkreading.com/cyber-risk/federal-cuts-local-state-agencies-risk
|
Sept. 5, 2025 |
Financial services firm Wealthsimple discloses data breach |
https://www.bleepingcomputer.com/news/security/financial-services-firm-wealthsimple-discloses-data-breach/
|
Sept. 5, 2025 |
Cloudflare 1.1.1.1 Hit by 12 Unauthorized Certificates: Fina CA’s Misissuance Raises Microsoft Trust Concerns |
https://securityonline.info/cloudflare-1-1-1-1-hit-by-12-unauthorized-certificates-fina-cas-misissuance-raises-microsoft-trust-concerns/
|
Sept. 4, 2025 |
Texas sues PowerSchool over breach exposing 62M students, 880k Texans |
https://www.bleepingcomputer.com/news/security/texas-sues-powerschool-after-massive-data-breach-hit-62-million-students/
|
Sept. 4, 2025 |
Bridgestone Americas Confirms Cyberattack |
https://www.darkreading.com/cyberattacks-data-breaches/bridgestone-americas-cyberattack
|
Sept. 4, 2025 |
Give your PC a fresh start: New free tools to boost your PC’s speed, security, and peace of mind |
https://www.malwarebytes.com/blog/product/2025/09/give-your-pc-a-fresh-start-new-free-tools-to-boost-your-pcs-speed-security-and-peace-of-mind
|
Sept. 4, 2025 |
ISC2 Aims to Bridge DFIR Skill Gap with New Certificate |
https://www.darkreading.com/cybersecurity-careers/isc2-aims-to-bridge-dfir-skill-gap-with-new-certificate
|
Sept. 4, 2025 |
Chess.com discloses recent data breach via file transfer app |
https://www.bleepingcomputer.com/news/security/chesscom-discloses-recent-data-breach-via-file-transfer-app/
|
Sept. 4, 2025 |
Popular Android VPN apps found to have security flaws and China links |
https://www.malwarebytes.com/blog/news/2025/09/popular-android-vpn-apps-found-to-have-security-flaws-and-china-links
|
Sept. 4, 2025 |
r/netsec monthly discussion & tool thread |
https://www.reddit.com/r/netsec/comments/1n5oqio/rnetsec_monthly_discussion_tool_thread/
|
Sept. 4, 2025 |
How They Got In — DaVita’s Data Breach |
https://www.reddit.com/r/netsec/comments/1n7efek/how_they_got_in_davitas_data_breach/
|
Sept. 4, 2025 |
PayPal users targeted in account profile scam |
https://www.malwarebytes.com/blog/news/2025/09/paypal-users-targeted-in-account-profile-scam
|
Sept. 4, 2025 |
US sues robot toy maker for exposing children's data to Chinese devs |
https://www.bleepingcomputer.com/news/security/us-sues-robot-toy-maker-for-exposing-childrens-data-to-chinese-devs/
|
Sept. 4, 2025 |
Japan, South Korea Take Aim at North Korean IT Worker Scam |
https://www.darkreading.com/cybersecurity-operations/japan-south-korea-north-korean-it-worker-scam
|
Sept. 4, 2025 |
Why you should upgrade to Windows 11 now, and how to do it |
https://www.malwarebytes.com/blog/news/2025/09/why-you-should-upgrade-to-windows-11-now-and-how-to-do-it
|
Sept. 3, 2025 |
Apple Intelligence Is Picking Up More User Data Than Expected, Researcher Finds |
https://www.darkreading.com/endpoint-security/apple-intelligence-more-data-than-expected-researchers
|
Sept. 3, 2025 |
Smashing Security podcast #433: How hackers turned AI into their new henchman |
https://grahamcluley.com/smashing-security-podcast-433/
|
Sept. 3, 2025 |
Cloudflare Holds Back the Tide on 11.5Tbps DDoS Attack |
https://www.darkreading.com/cyberattacks-data-breaches/cloudflare-ddos-attacks-new-heights
|
Sept. 3, 2025 |
Zscaler, Palo Alto Networks Breached via Salesloft Drift |
https://www.darkreading.com/cyberattacks-data-breaches/zscaler-palo-alto-networks-breached-salesloft-drift
|
Sept. 3, 2025 |
Varonis Acquires Email Security Provider SlashNext to Enhance BEC Defenses |
https://www.darkreading.com/endpoint-security/varonis-acquires-email-security-provider-slashnext-enhance-bec-defenses
|
Sept. 3, 2025 |
WhatsApp Bug Anchors Targeted Zero-Click iPhone Attacks |
https://www.darkreading.com/cyberattacks-data-breaches/whatsapp-bug-zero-click-iphone-attacks
|
Sept. 3, 2025 |
Hackers breach fintech firm in attempted $130M bank heist |
https://www.bleepingcomputer.com/news/security/hackers-breach-fintech-firm-in-attempted-130m-bank-heist/
|
Sept. 3, 2025 |
FBI warns seniors are being targeted in three-phase Phantom Hacker scams |
https://www.fortra.com/blog/fbi-warns-seniors-targeted-three-phase-phantom-hacker-scams
|
Sept. 3, 2025 |
Cloudflare hit by data breach in Salesloft Drift supply chain attack |
https://www.bleepingcomputer.com/news/security/cloudflare-hit-by-data-breach-in-salesloft-drift-supply-chain-attack/
|
Sept. 2, 2025 |
New Gmail Phishing Scam Uses AI-Style Prompt Injection to Evade Detection |
https://www.reddit.com/r/netsec/comments/1myccmq/new_gmail_phishing_scam_uses_aistyle_prompt/
|
Sept. 2, 2025 |
AI Agents in Browsers Light on Cybersecurity, Bypass Controls |
https://www.darkreading.com/application-security/ai-agentic-browsers-light-cybersecurity-bypass-controls
|
Sept. 2, 2025 |
CISA's New SBOM Guidelines Get Mixed Reviews |
https://www.darkreading.com/application-security/cisas-new-sbom-guidelines-mixed-reviews
|
Sept. 2, 2025 |
Apple Is Forcing Its Suppliers to Embrace Full Automation |
https://securityonline.info/apple-is-forcing-its-suppliers-to-embrace-full-automation/
|
Sept. 2, 2025 |
Tax refund scam targets Californians |
https://www.malwarebytes.com/blog/news/2025/09/tax-refund-scam-targets-californians
|
Sept. 2, 2025 |
The Largest DDoS Attack in History: Cloudflare Fights Back |
https://securityonline.info/the-largest-ddos-attack-in-history-cloudflare-fights-back/
|
Sept. 2, 2025 |
Interpol Arrests Over 1K Cybercriminals in 'Operation Serengeti 2.0' |
https://www.darkreading.com/cyberattacks-data-breaches/interpol-operation-serengeti-2-0
|
Sept. 2, 2025 |
Palo Alto Networks data breach exposes customer info, support tickets |
https://www.bleepingcomputer.com/news/security/palo-alto-networks-data-breach-exposes-customer-info-support-tickets/
|
Sept. 2, 2025 |
System Shocks? EV Smart Charging Tech Poses Cyber-Risks |
https://www.darkreading.com/iot/ev-smart-charging-cyber-risks
|
Sept. 2, 2025 |
A week in security (August 25 – August 31) |
https://www.malwarebytes.com/blog/news/2025/09/a-week-in-security-august-25-august-31
|
Sept. 1, 2025 |
FTC Chair Tells Tech Giants to Hold the Line on Encryption |
https://www.darkreading.com/cybersecurity-operations/ftc-chair-tech-giants-encryption
|
Sept. 1, 2025 |
Securing the Cloud in an Age of Escalating Cyber Threats |
https://www.darkreading.com/cyberattacks-data-breaches/securing-cloud-age-escalating-cyber-threats
|
Sept. 1, 2025 |
Data I/O Becomes Latest Ransomware Attack Victim |
https://www.darkreading.com/cyberattacks-data-breaches/data-io-ransomware-attack
|
Sept. 1, 2025 |
Zscaler data breach exposes customer info after Salesloft Drift compromise |
https://www.bleepingcomputer.com/news/security/zscaler-data-breach-exposes-customer-info-after-salesloft-drift-compromise/
|
Sept. 1, 2025 |
1M Farmers Insurance Customers' Data Compromised |
https://www.darkreading.com/cyberattacks-data-breaches/farmers-insurance-data-compromised
|
Sept. 1, 2025 |
Travelers to the UK targeted in ETA scams |
https://www.malwarebytes.com/blog/news/2025/09/travelers-to-the-uk-targeted-in-eta-scams
|
Sept. 1, 2025 |
When One Hospital Gets Ransomware, Others Feel the Pain |
https://www.darkreading.com/cybersecurity-operations/hospital-gets-ransomware-others-feel-pain
|
Sept. 1, 2025 |
Hacker suspected of trying to cheat his way into university is arrested in Spain |
https://www.bitdefender.com/en-us/blog/hotforsecurity/hacker-suspected-of-trying-to-cheat-his-way-into-university-is-arrested-in-spain
|
Sept. 1, 2025 |
African Law Enforcement Agencies Nab Cybercrime Syndicates |
https://www.darkreading.com/cyberattacks-data-breaches/african-law-enforcement-agencies-nab-cybercrime-syndicates
|
Sept. 1, 2025 |
Elon Musk’s xAI Sues Ex-Engineer Over Stolen Grok AI Secrets |
https://securityonline.info/elon-musks-xai-sues-ex-engineer-over-stolen-grok-ai-secrets/
|
Aug. 31, 2025 |
South Korea Fines SK Telecom $96.5M Over Massive Data Breach |
https://securityonline.info/south-korea-fines-sk-telecom-96-5m-over-massive-data-breach/
|
Aug. 31, 2025 |
Malicious npm Package Masquerades as Nodemailer, Drains Crypto Wallets |
https://securityonline.info/malicious-npm-package-masquerades-as-nodemailer-drains-crypto-wallets/
|
Aug. 31, 2025 |
Dark Reading Confidential: A Guided Tour of Today's Dark Web |
https://www.darkreading.com/cyber-risk/dark-reading-confidential-guided-tour-dark-web
|
Aug. 31, 2025 |
Malicious Scanning Waves Slam Remote Desktop Services |
https://www.darkreading.com/cyber-risk/malicious-scanning-remote-desktop-services
|
Aug. 31, 2025 |
Microsoft to enforce MFA for Azure resource management in October |
https://www.bleepingcomputer.com/news/microsoft/microsoft-to-enforce-mfa-for-azure-resource-management-in-october/
|
Aug. 31, 2025 |
Microsoft says recent Windows update didn't kill your SSD |
https://www.bleepingcomputer.com/news/microsoft/microsoft-says-recent-KB5063878-windows-update-didnt-kill-your-ssd/
|
Aug. 31, 2025 |
Why the U.S. Government Is Buying a Stake in Intel |
https://securityonline.info/why-the-u-s-government-is-buying-a-stake-in-intel/
|
Aug. 31, 2025 |
Google shares workarounds for auth failures on ChromeOS devices |
https://www.bleepingcomputer.com/news/google/google-shares-chromeos-workarounds-for-clever-classlink-auth-failures/
|
Aug. 31, 2025 |
Nevada's State Agencies Shutter in Wake of Cyberattack |
https://www.darkreading.com/cyberattacks-data-breaches/nevada-state-agencies-cyberattack
|
Aug. 31, 2025 |
Hackers Steal 4M+ TransUnion Customers' Data |
https://www.darkreading.com/cyberattacks-data-breaches/hackers-transunion-customer-data
|
Aug. 31, 2025 |
Microsoft fixes bug behind Windows certificate enrollment errors |
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-bug-behind-windows-certificate-enrollment-errors/
|
Aug. 30, 2025 |
Windows 11 KB5064081 update clears up CPU usage metrics in Task Manager |
https://www.bleepingcomputer.com/news/microsoft/windows-11-kb5064081-update-clears-up-cpu-usage-metrics-in-task-manager/
|
Aug. 30, 2025 |
Sweden scrambles after ransomware attack puts sensitive worker data at risk |
https://www.bitdefender.com/en-us/blog/hotforsecurity/sweden-scrambles-after-ransomware-attack-puts-sensitive-worker-data-at-risk
|
Aug. 29, 2025 |
77 malicious apps removed from Google Play Store |
https://www.malwarebytes.com/blog/news/2025/08/77-malicious-apps-removed-from-google-play-store
|
Aug. 29, 2025 |
CISA, FBI, NSA Warn of Chinese 'Global Espionage System' |
https://www.darkreading.com/cybersecurity-operations/cisa-fbi-nsa-warn-chinese-global-espionage-system
|
Aug. 29, 2025 |
Sliding into your DMs: Abusing Microsoft Teams for Malware Delivery |
https://www.reddit.com/r/netsec/comments/1n2fa6l/sliding_into_your_dms_abusing_microsoft_teams_for/
|
Aug. 29, 2025 |
Microsoft Word will save your files to the cloud by default |
https://www.bleepingcomputer.com/news/microsoft/microsoft-word-will-save-your-files-to-the-cloud-by-default/
|
Aug. 29, 2025 |
“No place in our networks”: FCC hangs up on thousands of voice operators in robocall war |
https://www.malwarebytes.com/blog/news/2025/08/no-place-in-our-networks-fcc-hangs-up-on-thousands-of-voice-operators-in-robocall-war
|
Aug. 29, 2025 |
Shadow IT Is Expanding Your Attack Surface. Here’s Proof |
https://www.bleepingcomputer.com/news/security/shadow-it-is-expanding-your-attack-surface-heres-proof/
|
Aug. 29, 2025 |
How Recorded Future Boosts Cybersecurity ROI & Efficiency |
https://www.recordedfuture.com/blog/improving-cybersecurity-productivity-threat-intelligence-recorded-future-drives-roi
|
Aug. 28, 2025 |
Google warns Salesloft breach impacted some Workspace accounts |
https://www.bleepingcomputer.com/news/security/google-warns-salesloft-breach-impacted-some-workspace-accounts/
|
Aug. 28, 2025 |
MATLAB dev says ransomware gang stole data of 10,000 people |
https://www.bleepingcomputer.com/news/security/matlab-dev-says-ransomware-gang-stole-data-of-over-10-000-people/
|
Aug. 28, 2025 |
Affiliates Flock to ‘Soulless’ Scam Gambling Machine |
https://krebsonsecurity.com/2025/08/affiliates-flock-to-soulless-scam-gambling-machine/
|
Aug. 28, 2025 |
Smashing Security podcast #432: Oops! I auto-filled my password into a cookie banner |
https://grahamcluley.com/smashing-security-podcast-432/
|
Aug. 28, 2025 |
The UK May Be Dropping Its Backdoor Mandate |
https://www.schneier.com/blog/archives/2025/08/the-uk-may-be-dropping-its-backdoor-mandate.html
|
Aug. 28, 2025 |
US targets North Korean IT worker army with new sanctions |
https://www.bleepingcomputer.com/news/legal/us-targets-north-korean-it-worker-army-with-new-sanctions/
|
Aug. 28, 2025 |
Microsoft wants to automatically save your Word docs to the cloud |
https://www.malwarebytes.com/blog/news/2025/08/microsoft-wants-to-automatically-save-your-word-docs-to-the-cloud
|
Aug. 28, 2025 |
Police seize VerifTools fake ID marketplace servers, domains |
https://www.bleepingcomputer.com/news/security/police-seize-veriftools-fake-id-marketplace-servers-domains/
|
Aug. 28, 2025 |
Developer verification: a promised lift for Android security |
https://www.malwarebytes.com/blog/news/2025/08/developer-verification-a-promised-lift-for-android-security
|
Aug. 28, 2025 |
More vulnerable stalkerware victims’ data exposed in new TheTruthSpy flaw |
https://www.malwarebytes.com/blog/news/2025/08/more-vulnerable-stalkerware-victims-data-exposed-in-new-thetruthspy-flaw
|
Aug. 28, 2025 |
Apple Revokes a Torrent Client’s Notarization, Sparking a New EU Dispute |
https://securityonline.info/apple-revokes-a-torrent-clients-notarization-sparking-a-new-eu-dispute/
|
Aug. 27, 2025 |
Apple’s Big AI Gamble: Internal Rift Over Perplexity and Mistral AI Acquisitions |
https://securityonline.info/apples-big-ai-gamble-internal-rift-over-perplexity-and-mistral-ai-acquisitions/
|
Aug. 27, 2025 |
Cybersecurity ROI: How Threat Intelligence Reduces Business & Brand Risk |
https://www.recordedfuture.com/blog/impact-cybersecurity-business-brand-risk-reduction
|
Aug. 26, 2025 |
Nevada closes state offices as cyberattack disrupts IT systems |
https://www.bleepingcomputer.com/news/security/nevada-closes-state-offices-as-cyberattack-disrupts-it-systems/
|
Aug. 26, 2025 |
Google to verify all Android devs to block malware on Google Play |
https://www.bleepingcomputer.com/news/security/google-to-verify-all-android-devs-to-block-malware-on-google-play/
|
Aug. 26, 2025 |
Warlock ransomware: What you need to know |
https://www.fortra.com/blog/warlock-ransomware-what-you-need-know
|
Aug. 26, 2025 |
Auchan retailer data breach impacts hundreds of thousands of customers |
https://www.bleepingcomputer.com/news/security/auchan-retailer-data-breach-impacts-hundreds-of-thousands-of-customers/
|
Aug. 26, 2025 |
The AI Fix #65: Excel Copilot will wreck your data, and can AI fix social media? |
https://grahamcluley.com/the-ai-fix-65/
|
Aug. 26, 2025 |
Alleged mastermind behind K-Pop celebrity stock heist extradited to South Korea |
https://www.bitdefender.com/en-us/blog/hotforsecurity/alleged-mastermind-behind-k-pop-celebrity-stock-heist-extradited-to-south-korea
|
Aug. 26, 2025 |
Yemen Cyber Army hacker jailed after stealing millions of people’s data |
https://grahamcluley.com/yemen-cyber-army-hacker-jailed-after-stealing-millions-of-peoples-data/
|
Aug. 26, 2025 |
Poor Password Choices |
https://www.schneier.com/blog/archives/2025/08/poor-password-choices.html
|
Aug. 26, 2025 |
Encryption Backdoor in Military/Police Radios |
https://www.schneier.com/blog/archives/2025/08/encryption-backdoor-in-military-police-radios.html
|
Aug. 26, 2025 |
Safeguarding VS Code against prompt injections |
https://www.reddit.com/r/netsec/comments/1mzzh21/safeguarding_vs_code_against_prompt_injections/
|
Aug. 25, 2025 |
Farmers Insurance data breach impacts 1.1M people after Salesforce attack |
https://www.bleepingcomputer.com/news/security/farmers-insurance-data-breach-impacts-11m-people-after-salesforce-attack/
|
Aug. 25, 2025 |
Online portal exposed car and personal data, allowed anyone to remotely unlock cars |
https://www.malwarebytes.com/blog/news/2025/08/online-portal-exposed-car-and-personal-data-allowed-anyone-to-remotely-unlock-cars
|
Aug. 25, 2025 |
Copilot Broke Your Audit Log, but Microsoft Won’t Tell You |
https://www.reddit.com/r/netsec/comments/1mv9gzq/copilot_broke_your_audit_log_but_microsoft_wont/
|
Aug. 25, 2025 |
Engineered to Fail: The DNA of Negligent Defenses Operations |
https://www.reddit.com/r/netsec/comments/1mvijcg/engineered_to_fail_the_dna_of_negligent_defenses/
|
Aug. 25, 2025 |
Why the MITRE CVE Database Scare Proves Multi-Source Vulnerability Intelligence Is Essential |
https://www.recordedfuture.com/blog/when-vulnerability-information-flows-are-vulnerable-themselves
|
Aug. 25, 2025 |
FTC warns tech giants not to bow to foreign pressure on encryption |
https://www.bleepingcomputer.com/news/security/ftc-warns-tech-giants-not-to-bow-to-foreign-pressure-on-encryption/
|
Aug. 25, 2025 |
Embracing the Evolution of Cybersecurity | Recorded Future |
https://www.recordedfuture.com/blog/introducing-refreshed-recorded-future-brand
|
Aug. 25, 2025 |
How a scam hunter got scammed (Lock and Code S06E17) |
https://www.malwarebytes.com/blog/podcast/2025/08/how-a-scam-hunter-got-scammed-lock-and-code-s06e17
|
Aug. 25, 2025 |
Attaxion Releases Agentless Traffic Monitoring for Immediate Risk Prioritization |
https://securityonline.info/attaxion-releases-agentless-traffic-monitoring-for-immediate-risk-prioritization/
|
Aug. 24, 2025 |
RSAC 2025 Expo Recap: Goats, Puppies, and Threat Intelligence |
https://www.recordedfuture.com/blog/rsac-recap
|
Aug. 24, 2025 |
Beyond the Breach: Coinbase Cracks Down on Remote Work to Stop Hackers |
https://securityonline.info/beyond-the-breach-coinbase-cracks-down-on-remote-work-to-stop-hackers/
|
Aug. 24, 2025 |
Rate My Rizz: Elevating Cyber Resilience Beyond Compliance |
https://www.recordedfuture.com/blog/rate-my-rizz
|
Aug. 24, 2025 |
Friday Squid Blogging: Bobtail Squid |
https://www.schneier.com/blog/archives/2025/08/friday-squid-blogging-bobtail-squid.html
|
Aug. 24, 2025 |
Europol confirms $50,000 Qilin ransomware reward is fake |
https://www.bleepingcomputer.com/news/security/europol-confirms-that-qilin-ransomware-reward-is-fake/
|
Aug. 24, 2025 |
End of a Loophole: YouTube Cracks Down on Users Skirting Premium Prices |
https://securityonline.info/end-of-a-loophole-youtube-cracks-down-on-users-skirting-premium-prices/
|
Aug. 24, 2025 |
Countering EDRs With The Backing Of Protected Process Light (PPL) |
https://www.reddit.com/r/netsec/comments/1mxwfg1/countering_edrs_with_the_backing_of_protected/
|
Aug. 24, 2025 |
Microsoft: August Windows updates cause severe streaming issues |
https://www.bleepingcomputer.com/news/microsoft/microsoft-august-windows-updates-cause-severe-ndi-streaming-issues/
|
Aug. 24, 2025 |
Apple Sues Ex-Engineer, Alleging He Stole Apple Watch Secrets for Rival Oppo |
https://securityonline.info/apple-sues-ex-engineer-alleging-he-stole-apple-watch-secrets-for-rival-oppo/
|
Aug. 24, 2025 |
“The worst thing” for online rights: An age-restricted grey web (Lock and Code S06E16) |
https://www.malwarebytes.com/blog/podcast/2025/08/the-worst-thing-for-online-rights-an-age-restricted-grey-web-lock-and-code-s06e16
|
Aug. 23, 2025 |
Azure's Weakest Link - Full Cross-Tenant Compromise |
https://www.reddit.com/r/netsec/comments/1mwbimu/azures_weakest_link_full_crosstenant_compromise/
|
Aug. 23, 2025 |
Tea Dating Advice app spills sensitive data |
https://grahamcluley.com/tea-dating-advice-app-spills-sensitive-data/
|
Aug. 23, 2025 |
Ecosia’s “Zero-Dollar” Chrome Takeover: A Bold Proposal to Reshape the Web |
https://securityonline.info/ecosias-zero-dollar-chrome-takeover-a-bold-proposal-to-reshape-the-web/
|
Aug. 23, 2025 |
r/netsec monthly discussion & tool thread |
https://www.reddit.com/r/netsec/comments/1mewj4e/rnetsec_monthly_discussion_tool_thread/
|
Aug. 23, 2025 |
That “Amazon Safety Recall” message may well be a scam |
https://www.malwarebytes.com/blog/news/2025/08/that-amazon-safety-recall-message-may-well-be-a-scam
|
Aug. 23, 2025 |
Scam hunter scammed by tax office impersonators |
https://www.malwarebytes.com/blog/news/2025/08/scam-hunter-scammed-by-tax-office-impersonators
|
Aug. 23, 2025 |
I’m Spending the Year at the Munk School |
https://www.schneier.com/blog/archives/2025/08/im-spending-the-year-at-the-munk-school.html
|
Aug. 23, 2025 |
Blue Locker ransomware hits critical infrastructure – is your organisation ready? |
https://www.exponential-e.com/blog/blue-locker-ransomware-hits-critical-infrastructure-is-your-organisation-ready
|
Aug. 23, 2025 |
Smarter Cybersecurity with IPv6: How Drip Architecture Defeats Spray-and-Pray Attacks |
https://www.recordedfuture.com/blog/ipv6-drip-drowns-spray-and-pray
|
Aug. 23, 2025 |
Google settles YouTube lawsuit over kids’ privacy invasion and data collection |
https://www.malwarebytes.com/blog/news/2025/08/google-settles-youtube-lawsuit-over-kids-privacy-invasion-and-data-collection
|
Aug. 23, 2025 |
Windows 11 Update Causing SSD Failures: Microsoft Investigates Critical Storage Bug |
https://securityonline.info/windows-11-update-causing-ssd-failures-microsoft-investigates-critical-storage-bug/
|
Aug. 22, 2025 |
Enhanced Recorded Future Integrations Now Available for Google Security Operations |
https://www.recordedfuture.com/blog/introducing-extensive-updates-recorded-future-google-security-operations
|
Aug. 22, 2025 |
Europol says Telegram post about 50,000 Qilin ransomware award is fake |
https://www.bitdefender.com/en-us/blog/hotforsecurity/europol-says-telegram-post-about-50-000-qilin-ransomware-award-is-fake
|
Aug. 22, 2025 |
Live Q&A with an Author of the NIST Security Guidelines (SP 800-115) |
https://www.reddit.com/r/netsec/comments/1mu2c46/live_qa_with_an_author_of_the_nist_security/
|
Aug. 22, 2025 |
Clickjack attack steals password managers’ secrets |
https://www.malwarebytes.com/blog/news/2025/08/clickjack-attack-steals-password-managers-secrets
|
Aug. 22, 2025 |
/r/netsec's Q3 2025 Information Security Hiring Thread |
https://www.reddit.com/r/netsec/comments/1lq51ry/rnetsecs_q3_2025_information_security_hiring/
|
Aug. 22, 2025 |
Microsoft asks customers for feedback on reported SSD failures |
https://www.bleepingcomputer.com/news/microsoft/microsoft-asks-customers-for-feedback-on-ssd-failure-issues/
|
Aug. 22, 2025 |
DaVita says ransomware gang stole data of nearly 2.7 million people |
https://www.bleepingcomputer.com/news/security/davita-ransomware-attack-exposed-data-of-nearly-27-million-people/
|
Aug. 22, 2025 |
Massive anti-cybercrime operation leads to over 1,200 arrests in Africa |
https://www.bleepingcomputer.com/news/security/massive-anti-cybercrime-operation-leads-to-over-1-200-arrests-in-africa/
|
Aug. 22, 2025 |
Scattered Spider hacker gets sentenced to 10 years in prison |
https://www.bleepingcomputer.com/news/security/scattered-spider-hacker-gets-sentenced-to-10-years-in-prison/
|
Aug. 22, 2025 |
Smashing Security podcast #431: How to mine millions without paying the bill |
https://grahamcluley.com/smashing-security-podcast-431/
|
Aug. 21, 2025 |
Instagram Map: What is it and how do I control it? |
https://www.malwarebytes.com/blog/news/2025/08/instagram-map-what-is-it-and-how-do-i-control-it
|
Aug. 21, 2025 |
Dev gets 4 years for creating kill switch on ex-employer's systems |
https://www.bleepingcomputer.com/news/security/dev-gets-4-years-for-creating-kill-switch-on-ex-employers-systems/
|
Aug. 21, 2025 |
French submarine secrets surface after cyber attack |
https://www.bitdefender.com/en-us/blog/hotforsecurity/french-submarine-secrets-surface-after-cyber-attack
|
Aug. 21, 2025 |
Windows Update Is Reportedly Breaking SSDs, And Microsoft Is Finally Responding |
https://securityonline.info/windows-update-is-reportedly-breaking-ssds-and-microsoft-is-finally-responding/
|
Aug. 21, 2025 |
The AI Fix #61: Replit panics, deletes $1M project; AI gets gold at Math Olympiad |
https://grahamcluley.com/the-ai-fix-61/
|
Aug. 20, 2025 |
A week in security (August 11 – August 17) |
https://www.malwarebytes.com/blog/news/2025/08/a-week-in-security-august-11-august-17
|
Aug. 20, 2025 |
Microsoft fixes Windows upgrades failing with 0x8007007F error |
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-upgrades-failing-with-0x8007007f-error/
|
Aug. 20, 2025 |
Subverting AIOps Systems Through Poisoned Input Data |
https://www.schneier.com/blog/archives/2025/08/subverting-aiops-systems-through-poisoned-input-data.html
|
Aug. 20, 2025 |
Eavesdropping on Phone Conversations Through Vibrations |
https://www.schneier.com/blog/archives/2025/08/eavesdropping-on-phone-conversations-through-vibrations.html
|
Aug. 20, 2025 |
Microsoft releases emergency updates to fix Windows recovery |
https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-emergency-updates-to-fix-windows-recovery/
|
Aug. 20, 2025 |
Git 2.51: Preparing for the future with SHA-256 |
https://www.reddit.com/r/netsec/comments/1mukaxf/git_251_preparing_for_the_future_with_sha256/
|
Aug. 20, 2025 |
Firefox Switches to CRLite, Ditching OCSP for Better Speed and Privacy |
https://securityonline.info/firefox-switches-to-crlite-ditching-ocsp-for-better-speed-and-privacy/
|
Aug. 20, 2025 |
Massive Allianz Life data breach impacts 1.1 million people |
https://www.bleepingcomputer.com/news/security/massive-allianz-life-data-breach-impacts-11-million-people/
|
Aug. 20, 2025 |
National Public Data returns after massive Social Security Number leak |
https://www.malwarebytes.com/blog/news/2025/08/national-public-data-returns-after-massive-social-security-number-leak
|
Aug. 20, 2025 |
PyPI now blocks domain resurrection attacks used for hijacking accounts |
https://www.bleepingcomputer.com/news/security/pypi-now-blocks-domain-resurrection-attacks-used-for-hijacking-accounts/
|
Aug. 20, 2025 |
Google’s Big Concession: A New Policy Could Upend the Play Store in the EU |
https://securityonline.info/googles-big-concession-a-new-policy-could-upend-the-play-store-in-the-eu/
|
Aug. 20, 2025 |
AI website builder Lovable increasingly abused for malicious activity |
https://www.bleepingcomputer.com/news/security/ai-website-builder-lovable-increasingly-abused-for-malicious-activity/
|
Aug. 20, 2025 |
Romance scammers in Ghana charged with more than $100 million in theft |
https://www.malwarebytes.com/blog/news/2025/08/romance-scammers-in-ghana-arrested-charged-with-more-than-100-million-in-theft
|
Aug. 20, 2025 |
Hackers steal Microsoft logins using legitimate ADFS redirects |
https://www.bleepingcomputer.com/news/security/hackers-steal-microsoft-logins-using-legitimate-adfs-redirects/
|
Aug. 20, 2025 |
Windows Update is Breaking SSDs and Recovery, and Microsoft is Scrambling to Fix It |
https://securityonline.info/windows-update-is-breaking-ssds-and-recovery-and-microsoft-is-scrambling-to-fix-it/
|
Aug. 19, 2025 |
Nebraska man gets 1 year in prison for $3.5M cryptojacking scheme |
https://www.bleepingcomputer.com/news/security/nebraska-man-gets-1-year-in-prison-for-35m-cryptojacking-scheme/
|
Aug. 19, 2025 |
Elastic rejects claims of a zero-day RCE flaw in Defend EDR |
https://www.bleepingcomputer.com/news/security/elastic-rejects-claims-of-a-zero-day-rce-flaw-in-defend-edr/
|
Aug. 19, 2025 |
How to spot the latest fake Gmail security alerts |
https://www.malwarebytes.com/blog/news/2025/08/how-to-spot-the-latest-fake-gmail-security-alerts
|
Aug. 19, 2025 |
Beware the false false-positive: how to distinguish HTTP pipelining from request smuggling |
https://www.reddit.com/r/netsec/comments/1mukfs9/beware_the_false_falsepositive_how_to_distinguish/
|
Aug. 19, 2025 |
Gmail Phishing Campaign Analysis – “New Voicemail” Email with Dynamics Redirect + Captcha |
https://www.reddit.com/r/netsec/comments/1mrolka/gmail_phishing_campaign_analysis_new_voicemail/
|
Aug. 19, 2025 |
Ransomware plunges insurance company into bankruptcy |
https://www.fortra.com/blog/ransomware-plunges-insurance-company-bankruptcy
|
Aug. 19, 2025 |
Okta open-sources catalog of Auth0 rules for threat detection |
https://www.bleepingcomputer.com/news/security/okta-open-sources-catalog-of-auth0-rules-for-threat-detection/
|
Aug. 19, 2025 |
DOGE Denizen Marko Elez Leaked API Key for xAI |
https://krebsonsecurity.com/2025/07/doge-denizen-marko-elez-leaked-api-key-for-xai/
|
Aug. 19, 2025 |
NY Business Council discloses data breach affecting 47,000 people |
https://www.bleepingcomputer.com/news/security/business-council-of-new-york-state-discloses-data-breach-affecting-47-000-people/
|
Aug. 19, 2025 |
TeaOnHer copies everything from Tea – including the data breaches |
https://www.bitdefender.com/en-us/blog/hotforsecurity/teaonher-copies-everything-from-tea-including-the-data-breaches
|
Aug. 19, 2025 |
Smashing Security podcast #427: When 2G attacks, and a romantic road trip goes wrong |
https://grahamcluley.com/smashing-security-podcast-427/
|
Aug. 19, 2025 |
Speed cameras knocked out after cyber attack |
https://www.bitdefender.com/en-us/blog/hotforsecurity/speed-cameras-knocked-out-after-cyber-attack
|
Aug. 19, 2025 |
Microsoft’s Azure Used for Mass Surveillance in Gaza and West Bank |
https://securityonline.info/microsofts-azure-used-for-mass-surveillance-in-gaza-and-west-bank/
|
Aug. 19, 2025 |
The “Incriminating Video” Scam |
https://www.schneier.com/blog/archives/2025/08/the-incriminating-video-scam.html
|
Aug. 19, 2025 |
Microsoft shares workaround for Teams "couldn't connect" error |
https://www.bleepingcomputer.com/news/microsoft/microsoft-shares-workaround-for-teams-couldnt-connect-error/
|
Aug. 19, 2025 |
Microsoft Kills Volume Discounts: Is Your Business Facing a Price Hike? |
https://securityonline.info/microsoft-kills-volume-discounts-is-your-business-facing-a-price-hike/
|
Aug. 19, 2025 |
UK to ban public sector from paying ransomware demands |
https://www.bitdefender.com/en-us/blog/hotforsecurity/uk-to-ban-public-sector-from-paying-ransomware-demands
|
Aug. 19, 2025 |
Automatic License Plate Readers Are Coming to Schools |
https://www.schneier.com/blog/archives/2025/08/automatic-license-plate-readers-are-coming-to-schools.html
|
Aug. 19, 2025 |
Allianz Life hit by hackers, customer and staff personal data stolen |
https://grahamcluley.com/allianz-life-hit-by-hackers-customer-and-staff-personal-data-stolen/
|
Aug. 19, 2025 |
Friday Squid Blogging: Squid-Shaped UFO Spotted Over Texas |
https://www.schneier.com/blog/archives/2025/08/friday-squid-blogging-squid-shaped-ufo-spotted-over-texas.html
|
Aug. 19, 2025 |
Hospital fined after patient data found in street food wrappers |
https://grahamcluley.com/hospital-fined-after-patient-data-found-in-street-food-wrappers/
|
Aug. 19, 2025 |
Smashing Security podcast #428: Red flags, leaked chats, and a final farewell |
https://grahamcluley.com/smashing-security-podcast-428/
|
Aug. 19, 2025 |
UK sentences “serial hacker” of 3,000 sites to 20 months in prison |
https://www.bleepingcomputer.com/news/legal/uk-sentences-serial-hacker-of-3-000-sites-to-20-months-in-prison/
|
Aug. 19, 2025 |
Smashing Security podcast #430: Poisoned Calendar invites, ChatGPT, and Bromide |
https://grahamcluley.com/smashing-security-podcast-430-poisoned-calendar-invites-chatgpt-and-bromide/
|
Aug. 19, 2025 |
A German Court Just Revived a Lawsuit That Could Make Ad Blockers Illegal |
https://securityonline.info/a-german-court-just-revived-a-lawsuit-that-could-make-ad-blockers-illegal/
|
Aug. 18, 2025 |
How Exposed TeslaMate Instances Leak Sensitive Tesla Data |
https://www.reddit.com/r/netsec/comments/1msrpi6/how_exposed_teslamate_instances_leak_sensitive/
|
Aug. 18, 2025 |
New Firmware Flaw in AMI Aptio UEFI Threatens Persistent System Compromise |
https://securityonline.info/new-firmware-flaw-in-ami-aptio-uefi-threatens-persistent-system-compromise/
|
Aug. 18, 2025 |
Elastic EDR 0-day: Microsoft-signed driver can be weaponized to attack its own host |
https://www.reddit.com/r/netsec/comments/1mryiha/elastic_edr_0day_microsoftsigned_driver_can_be/
|
Aug. 18, 2025 |
The MedusaLocker ransomware gang is hiring penetration testers |
https://www.fortra.com/blog/medusalocker-ransomware-gang-hiring-penetration-testers
|
Aug. 18, 2025 |
Intel Outside: Hacking every Intel employee and various internal websites |
https://www.reddit.com/r/netsec/comments/1mtnqme/intel_outside_hacking_every_intel_employee_and/
|
July 24, 2025 |
T-Mobile & Starlink Launch “T-Satellite”: Eradicating Dead Zones for US Mobile Users |
https://securityonline.info/t-mobile-starlink-launch-t-satellite-eradicating-dead-zones-for-us-mobile-users/
|
June 23, 2025 |
Microsoft Family Safety Blocks Google Chrome in Windows 11: Workarounds Revealed |
https://securityonline.info/microsoft-family-safety-blocks-google-chrome-in-windows-11-workarounds-revealed/
|
April 10, 2025 |
Flipper Zero maker unveils ‘Busy Bar,’ a new ADHD productivity tool |
https://www.bleepingcomputer.com/news/technology/flipper-zero-maker-unveils-busy-bar-a-new-adhd-productivity-tool/
|
April 7, 2025 |
Cyber Forensic Expert in 2,000+ Cases Faces FBI Probe |
https://krebsonsecurity.com/2025/04/cyber-forensic-expert-in-2000-cases-faces-fbi-probe/
|
March 6, 2025 |
U.S. Soldier Charged in AT&T Hack Searched “Can Hacking Be Treason” |
https://krebsonsecurity.com/2025/02/u-s-soldier-charged-in-att-hack-searched-can-hacking-be-treason/
|
March 6, 2025 |
The Combined Cipher Machine |
https://www.schneier.com/blog/archives/2025/03/the-combined-cipher-machine.html
|
March 6, 2025 |
Notorious Malware, Spam Host “Prospero” Moves to Kaspersky Lab |
https://krebsonsecurity.com/2025/02/notorious-malware-spam-host-prospero-moves-to-kaspersky-lab/
|
Feb. 15, 2025 |
Hacker leaks account data of 12 million Zacks Investment users |
https://www.bleepingcomputer.com/news/security/hacker-leaks-account-data-of-12-million-zacks-investment-users/
|
Feb. 15, 2025 |
Chinese espionage tools deployed in RA World ransomware attack |
https://www.bleepingcomputer.com/news/security/chinese-espionage-tools-deployed-in-ra-world-ransomware-attack/
|
Jan. 25, 2025 |
PayPal to pay $2 million settlement over 2022 data breach |
https://www.bleepingcomputer.com/news/security/paypal-to-pay-2-million-settlement-over-2022-data-breach/
|
Jan. 22, 2025 |
MasterCard DNS Error Went Unnoticed for Years |
https://krebsonsecurity.com/2025/01/mastercard-dns-error-went-unnoticed-for-years/
|
Jan. 22, 2025 |
Mirai Botnet Unleashes Record-Breaking DDoS Attack, Cloudflare Thwarts Threat |
https://securityonline.info/mirai-botnet-unleashes-record-breaking-ddos-attack-cloudflare-thwarts-threat/
|
Dec. 2, 2024 |
Cyber Monday Scams: Unmasking the Shadows of Online Shopping |
https://securityonline.info/cyber-monday-scams-unmasking-the-shadows-of-online-shopping/
|
Dec. 2, 2024 |
The fascinating security model of dark web marketplaces |
https://www.reddit.com/r/netsec/comments/1h47up9/the_fascinating_security_model_of_dark_web/
|
Nov. 12, 2024 |
Microsoft blames Windows Server 2025 automatic upgrades on 3rd-party tools |
https://www.bleepingcomputer.com/news/microsoft/microsoft-blames-windows-server-2025-automatic-upgrades-on-third-party-tools/
|
Nov. 12, 2024 |
iPhones now auto-restart to block access to encrypted data after long idle times |
https://www.bleepingcomputer.com/news/security/iphones-now-auto-restart-to-block-access-to-encrypted-data-after-long-idle-times/
|
Nov. 12, 2024 |
Halliburton reports $35 million loss after ransomware attack |
https://www.bleepingcomputer.com/news/security/halliburton-reports-35-million-loss-after-ransomware-attack/
|
Nov. 12, 2024 |
VMware makes Workstation and Fusion free for everyone |
https://www.bleepingcomputer.com/news/software/vmware-makes-workstation-and-fusion-free-for-everyone/
|
Nov. 4, 2024 |
Sophos Versus the Chinese Hackers |
https://www.schneier.com/blog/archives/2024/11/sophos-versus-the-chinese-hackers.html
|
Nov. 4, 2024 |
EDRsandblast Exploited: How Attackers are Weaponizing Open-Source Code |
https://securityonline.info/edrsandblast-exploited-how-attackers-are-weaponizing-open-source-code/
|
Sept. 20, 2024 |
macOS Sequoia Update Disrupts Major Cybersecurity Tools |
https://securityonline.info/macos-sequoia-update-disrupts-major-cybersecurity-tools/
|
Sept. 10, 2024 |
CISA Alerts on Active Exploitation of Flaws in ImageMagick, Linux Kernel, and SonicWall |
https://securityonline.info/cisa-alerts-on-active-exploitation-of-flaws-in-imagemagick-linux-kernel-and-sonicwall/
|
Sept. 9, 2024 |
Security Researcher Sued for Disproving Government Statements |
https://www.schneier.com/blog/archives/2024/09/security-researcher-sued-for-disproving-government-statements.html
|
Sept. 9, 2024 |
Owners of 1-Time Passcode Theft Service Plead Guilty |
https://krebsonsecurity.com/2024/09/owners-of-1-time-passcode-theft-service-plead-guilty/
|
Aug. 31, 2024 |
National Public Data Published Its Own Passwords |
https://krebsonsecurity.com/2024/08/national-public-data-published-its-own-passwords/
|
Aug. 23, 2024 |
SolarWinds fixes hardcoded credentials flaw in Web Help Desk |
https://www.bleepingcomputer.com/news/security/solarwinds-fixes-hardcoded-credentials-flaw-in-web-help-desk/
|
Aug. 23, 2024 |
Phrack hacker zine publishes new edition after three years |
https://www.bleepingcomputer.com/news/security/phrack-hacker-zine-publishes-new-edition-after-three-years/
|
Aug. 23, 2024 |
QNAP adds NAS ransomware protection to latest QTS version |
https://www.bleepingcomputer.com/news/security/qnap-adds-nas-ransomware-protection-to-latest-qts-version/
|
Aug. 23, 2024 |
Microsoft confirms August updates break Linux boot in dual-boot systems |
https://www.bleepingcomputer.com/news/microsoft/microsoft-confirms-august-updates-break-linux-boot-in-dual-boot-systems/
|
Aug. 23, 2024 |
Microsoft: August updates cause Windows Server boot issues, freezes |
https://www.bleepingcomputer.com/news/microsoft/microsoft-august-updates-cause-windows-server-boot-issues-freezes/
|
Aug. 8, 2024 |
CrowdStrike Identifies Root Cause of Massive Windows Outage |
https://securityonline.info/crowdstrike-identifies-root-cause-of-massive-windows-outage/
|
Aug. 7, 2024 |
Security Boost: Apple Strengthens Gatekeeper Protections in macOS Sequoia |
https://securityonline.info/security-boost-apple-strengthens-gatekeeper-protections-in-macos-sequoia/
|
Aug. 3, 2024 |
Google Chrome bug breaks drag and drop from Downloads bubble |
https://www.bleepingcomputer.com/news/google/google-chrome-bug-breaks-drag-and-drop-from-downloads-bubble/
|
July 26, 2024 |
Why Multivendor Cybersecurity Stacks Are Increasingly Obsolete |
https://www.bleepingcomputer.com/news/security/why-multivendor-cybersecurity-stacks-are-increasingly-obsolete/
|
July 20, 2024 |
CrowdStrike Reveals Technical Details of Update Causing Windows Systems Crash |
https://securityonline.info/crowdstrike-reveals-technical-details-of-update-causing-windows-systems-crash/
|
July 20, 2024 |
CrowdStrike Falcon Sensor Crash Triggers Global IT Outage, Emergency Workaround Released |
https://securityonline.info/crowdstrike-falcon-sensor-crashes-triggers-global-it-outage-emergency-patch-released/
|
July 9, 2024 |
Evolve Bank says data breach impacts 7.6 million Americans |
https://www.bleepingcomputer.com/news/security/evolve-bank-says-data-breach-impacts-76-million-americans/
|
June 21, 2024 |
Biden bans Kaspersky antivirus software in US over security concerns |
https://www.bleepingcomputer.com/news/security/biden-bans-kaspersky-antivirus-software-in-us-over-security-concerns/
|
June 20, 2024 |
CDK Global hacked again while recovering from first cyberattack |
https://www.bleepingcomputer.com/news/security/cdk-global-hacked-again-while-recovering-from-first-cyberattack/
|
June 20, 2024 |
AMD investigates breach after data for sale on hacking forum |
https://www.bleepingcomputer.com/news/security/amd-investigates-breach-after-data-for-sale-on-hacking-forum/
|
June 20, 2024 |
Microsoft says bug causes Windows 10 apps to display Open With dialogs |
https://www.bleepingcomputer.com/news/microsoft/microsoft-says-bug-causes-windows-10-apps-to-display-open-with-dialogs/
|
June 20, 2024 |
"Researchers" exploit Kraken exchange bug, steal $3 million in crypto |
https://www.bleepingcomputer.com/news/security/researchers-exploit-kraken-exchange-bug-steal-3-million-in-crypto/
|
June 20, 2024 |
Advance Auto Parts confirms data breach exposed employee information |
https://www.bleepingcomputer.com/news/security/advance-auto-parts-confirms-data-breach-exposed-employee-information/
|
June 20, 2024 |
T-Mobile denies it was hacked, links leaked data to vendor breach |
https://www.bleepingcomputer.com/news/security/t-mobile-denies-it-was-hacked-links-leaked-data-to-vendor-breach/
|
June 13, 2024 |
Beware the Windows Search Scam: Clever Phishing Campaign Exploits User Trust |
https://securityonline.info/beware-the-windows-search-scam-clever-phishing-campaign-exploits-user-trust/
|
June 7, 2024 |
LastPass says 12-hour outage caused by bad Chrome extension update |
https://www.bleepingcomputer.com/news/security/lastpass-says-12-hour-outage-caused-by-bad-chrome-extension-update/
|
May 13, 2024 |
LLMs’ Data-Control Path Insecurity |
https://www.schneier.com/blog/archives/2024/05/llms-data-control-path-insecurity.html
|
May 9, 2024 |
Microsoft: April Windows Server updates also cause crashes, reboots |
https://www.bleepingcomputer.com/news/microsoft/microsoft-april-windows-server-updates-also-cause-crashes-reboots/
|
May 9, 2024 |
Russian FSB Counterintelligence Chief Gets 9 Years in Cybercrime Bribery Scheme |
https://krebsonsecurity.com/2024/04/russian-fsb-counterintelligence-chief-gets-9-years-in-cybercrime-bribery-scheme/
|
May 5, 2024 |
Google rolls back reCaptcha update to fix Firefox issues |
https://www.bleepingcomputer.com/news/security/google-rolls-back-recaptcha-update-to-fix-firefox-issues/
|
April 28, 2024 |
Researchers sinkhole PlugX malware server with 2.5 million unique IPs |
https://www.bleepingcomputer.com/news/security/researchers-sinkhole-plugx-malware-server-with-25-million-unique-ips/
|
April 28, 2024 |
Google lays off its Python team |
https://securityonline.info/google-lays-off-its-python-team/
|
April 23, 2024 |
Synlab Italia suspends operations following ransomware attack |
https://www.bleepingcomputer.com/news/security/synlab-italia-suspends-operations-following-ransomware-attack/
|
April 22, 2024 |
Malware dev lures child exploiters into honeytrap to extort them |
https://www.bleepingcomputer.com/news/security/malware-dev-lures-child-exploiters-into-honeytrap-to-extort-them/
|
April 22, 2024 |
Ransomware payments drop to record low of 28% in Q1 2024 |
https://www.bleepingcomputer.com/news/security/ransomware-payments-drop-to-record-low-of-28-percent-in-q1-2024/
|
April 17, 2024 |
Microsoft: Copilot ‘app’ on Windows Server mistakenly added by Edge |
https://www.bleepingcomputer.com/news/microsoft/microsoft-copilot-app-on-windows-server-mistakenly-added-by-edge/
|
April 15, 2024 |
Cloudflare Turnstile Update - Apache2 retirement · fin3ss3g0d/evilgophish@6bf9f29 |
https://www.reddit.com/r/netsec/comments/1c3h8zt/cloudflare_turnstile_update_apache2_retirement/
|
April 15, 2024 |
Chromium developing device bound session tokens to combat session token theft techniques |
https://www.reddit.com/r/netsec/comments/1c3hq7j/chromium_developing_device_bound_session_tokens/
|
April 14, 2024 |
The Hidden Economy of Open Source Software |
https://www.reddit.com/r/netsec/comments/1c2aqni/the_hidden_economy_of_open_source_software/
|
April 14, 2024 |
Firebird RAT creator and seller arrested in the U.S. and Australia |
https://www.bleepingcomputer.com/news/security/firebird-rat-creator-and-seller-arrested-in-the-us-and-australia/
|
April 14, 2024 |
CISA makes its "Malware Next-Gen" analysis system publicly available |
https://www.bleepingcomputer.com/news/security/cisa-makes-its-malware-next-gen-analysis-system-publicly-available/
|
Feb. 29, 2024 |
GitHub enables push protection by default to stop secrets leak |
https://www.bleepingcomputer.com/news/security/github-enables-push-protection-by-default-to-stop-secrets-leak/
|
Jan. 31, 2024 |
Fla. Man Charged in SIM-Swapping Spree is Key Suspect in Hacker Groups Oktapus, Scattered Spider |
https://krebsonsecurity.com/2024/01/fla-man-charged-in-sim-swapping-spree-is-key-suspect-in-hacker-groups-oktapus-scattered-spider/
|
Dec. 13, 2023 |
A new, modern, and secure print experience from Windows |
https://techcommunity.microsoft.com/t5/security-compliance-and-identity/a-new-modern-and-secure-print-experience-from-windows/ba-p/4002645
|
Nov. 29, 2023 |
Four things to know about (Apple) Lockdown Mode |
https://www.glitchcat.xyz/p/four-things-to-know-about-lockdown
|
Nov. 15, 2023 |
CacheWarp is a new software fault attack on AMD SEV-ES and SEV-SNP. It allows attackers to hijack control flow, break into encrypted VMs, and perform privilege escalation inside the VM. |
https://cachewarpattack.com/
|
Oct. 30, 2023 |
Netsupport Intrusion Results in Domain Compromise |
https://thedfirreport.com/2023/10/30/netsupport-intrusion-results-in-domain-compromise/
|
Sept. 11, 2023 |
MGM Resorts shuts down IT systems after cyberattack |
https://www.bleepingcomputer.com/news/security/mgm-resorts-shuts-down-it-systems-after-cyberattack/
|
Aug. 29, 2023 |
Keystroke timing obfuscation added to ssh |
https://undeadly.org/cgi?action=article;sid=20230829051257
|
Aug. 22, 2023 |
Introducing Python in Excel: The Best of Both Worlds for Data Analysis and Visualization |
https://techcommunity.microsoft.com/t5/microsoft-365-blog/introducing-python-in-excel-the-best-of-both-worlds-for-data/ba-p/3905482
|
Aug. 10, 2023 |
Rapid7 prepares to toss 18% of workforce to cut costs |
https://www.theregister.com/2023/08/09/rapid_7_redundancies/
|
Aug. 7, 2023 |
Exclusive: North Korean hackers breached top Russian missile maker |
https://www.reuters.com/technology/north-korean-hackers-breached-top-russian-missile-maker-2023-08-07/?taid=64d16bc12669aa000106af05&utm_campaign=trueAnthem:+Trending+Content&utm_medium=trueAnthem&utm
|
Aug. 7, 2023 |
Microsoft hits back at Tenable criticism of its infosec practices |
https://www.theregister.com/2023/08/07/microsoft_power_platform_tenable_criticism/
|
Aug. 5, 2023 |
Two US Navy sailors charged with giving Chinese spies secret military info |
https://www.theregister.com/2023/08/04/us_navy_sailors_china_spies/
|
Aug. 5, 2023 |
Sumerian Proverbs |
https://buttondown.email/grugq/archive/sumerian-proverbs-7260/
|
Aug. 3, 2023 |
New Collide+Power side-channel attack impacts almost all CPUs |
https://www.bleepingcomputer.com/news/security/new-collide-pluspower-side-channel-attack-impacts-almost-all-cpus/
|
Aug. 1, 2023 |
Cloud company assisted 17 different government hacking groups -US researchers |
https://www.reuters.com/technology/cloud-company-assisted-17-different-government-hacking-groups-us-researchers-2023-08-01/
|
Aug. 1, 2023 |
National Cyber Workforce and Education Strategy |
https://www.whitehouse.gov/wp-content/uploads/2023/07/NCWES-2023.07.31.pdf
|
July 30, 2023 |
Israel's largest oil refinery website offline after DDoS attack |
https://www.bleepingcomputer.com/news/security/israels-largest-oil-refinery-website-offline-after-ddos-attack/
|
July 29, 2023 |
U.S. Hunts Chinese Malware That Could Disrupt American Military Operations |
https://www.nytimes.com/2023/07/29/us/politics/china-malware-us-military-bases-taiwan.html
|
July 27, 2023 |
The GRU's Disruptive Playbook |
https://www.mandiant.com/resources/blog/gru-disruptive-playbook
|
July 26, 2023 |
ETSI and TCCA Statement to TETRA Security Algorithms Research Findings Publication on 24 July 2023 |
https://www.etsi.org/newsroom/news/2260-etsi-and-tcca-statement-to-tetra-security-algorithms-research-findings-publication-on-24-july-2023
|
July 26, 2023 |
SiegedSec Allegedly Breached NATO’s COI Portal Affecting 31 Nations Leaked Sensitive Data |
https://www.cloudsek.com/threatintelligence/siegedsec-allegedly-breached-natos-coi-portal-affecting-31-nations-leaked-sensitive-data
|
July 25, 2023 |
Norway says Ivanti zero-day was used to hack govt IT systems |
https://www.bleepingcomputer.com/news/security/norway-says-ivanti-zero-day-was-used-to-hack-govt-it-systems/
|
July 24, 2023 |
How Drones Are Changing the Nature of Warfare in Ukraine |
https://podcast.silverado.org/episodes/how-drones-are-changing-the-nature-of-warfare-in-ukraine
|
July 24, 2023 |
Pro-PRC HaiEnergy Campaign Exploits U.S. News Outlets via Newswire Services to Target U.S. Audiences; Evidence of Commissioned Protests in Washington, D.C. |
https://www.mandiant.com/resources/blog/pro-prc-haienergy-us-news
|
July 21, 2023 |
China’s Hacking of Government Email Was Traditional Espionage, Official Says |
https://www.nytimes.com/2023/07/20/us/politics/china-hacking-official-email.html
|
July 21, 2023 |
Roblox Data Breach: PII of Thousands of Developers Stolen |
https://www.hackread.com/roblox-data-breach-developers-pii-data-stolen/
|
July 21, 2023 |
Compromised Microsoft Key: More Impactful Than We Thought |
https://www.wiz.io/blog/storm-0558-compromised-microsoft-key-enables-authentication-of-countless-micr
|
July 21, 2023 |
Chinese hackers breached US ambassador to China’s email account |
https://www.cnn.com/2023/07/20/politics/chinese-hackers-us-ambassador/index.html
|
July 20, 2023 |
Estée Lauder beauty giant breached by two ransomware gangs |
https://www.bleepingcomputer.com/news/security/est-e-lauder-beauty-giant-breached-by-two-ransomware-gangs/
|
July 20, 2023 |
Microsoft Relents, Offers Free Critical Logging to All 365 Customers |
https://www.darkreading.com/application-security/microsoft-relents-offers-free-key-logging-365-customers
|
July 20, 2023 |
Microsoft expanding cloud logging to give customers deeper security visibility |
https://www.microsoft.com/en-us/security/blog/2023/07/19/expanding-cloud-logging-to-give-customers-deeper-security-visibility/
|
July 19, 2023 |
Executive Order on Prohibition on Use by the United States Government of Commercial Spyware that Poses Risks to National Security |
https://www.whitehouse.gov/briefing-room/presidential-actions/2023/03/27/executive-order-on-prohibition-on-use-by-the-united-states-government-of-commercial-spyware-that-poses-risks-to-national-securi
|
July 19, 2023 |
The US Cyber Trust Mark Aims to Label Internet of Things Products Built with Security in Mind |
https://www.hackster.io/news/the-us-cyber-trust-mark-aims-to-label-internet-of-things-products-built-with-security-in-mind-166c82e1da9c
|
July 19, 2023 |
Facebook behavioral ads banned by Norwegian privacy watchdog |
https://www.bleepingcomputer.com/news/technology/facebook-behavioral-ads-banned-by-norwegian-privacy-watchdog/
|
July 19, 2023 |
US innovates app to counter growing drone threats in MidEast - analysis |
https://m.jpost.com/middle-east/article-751644
|
July 19, 2023 |
Bad.Build Flaw in Google Cloud Build Raises Concerns of Privilege Escalation |
https://thehackernews.com/2023/07/badbuild-flaw-in-google-cloud-build.html?m=1
|
July 19, 2023 |
US adds Euro spyware makers to export naughty list |
https://www.theregister.com/2023/07/18/us_sanctions_commercial_spyware/
|
July 18, 2023 |
CISA orders govt agencies to mitigate Windows and Office zero-days |
https://www.bleepingcomputer.com/news/security/cisa-orders-govt-agencies-to-mitigate-windows-and-office-zero-days/
|
July 18, 2023 |
Data leak exposes data of registered Virustotal customers |
https://borncity.com/win/2023/07/17/data-leak-exposes-data-of-registered-virustotal-customers/
|
July 17, 2023 |
Beijing wants to make the Great Firewall of China even greater |
https://www.theregister.com/2023/07/17/great_firewall_even_greater/
|
July 15, 2023 |
Microsoft under fire for hacks! |
https://www.reuters.com/technology/microsoft-under-fire-after-hacks-us-state-commerce-departments-2023-07-13/
|
July 14, 2023 |
New Avrecon Botnet Remained Under The Radar For Two Years While Targeting Soho Routers |
https://securityaffairs.com/148447/cyber-crime/avrecon-botnet-targets-soho.html?amp=1
|
July 14, 2023 |
Supply-Chain Attack Targeting Pakistani Government Delivers Shadowpad |
https://www.trendmicro.com/en_us/research/23/g/supply-chain-attack-targeting-pakistani-government-delivers-shad.html
|
July 13, 2023 |
Hackers Target Chinese Gamers With Microsoft-Signed Rootkit |
https://www.darkreading.com/attacks-breaches/researchers-discover-microsoft-signed-rootkit-for-loading-2nd-stage-kernel-module
|
July 12, 2023 |
Hackers Steal Over $55 Million in Mexican Financial Fraud |
https://perception-point.io/blog/hackers-steal-over-55-million-in-mexican-financial-fraud/
|
July 12, 2023 |
Hackers Steal Over $55 Million in Mexican Financial Fraud |
https://perception-point.io/blog/hackers-steal-over-55-million-in-mexican-financial-fraud/
|
July 12, 2023 |
China-based hackers have breached government and individual email accounts, Microsoft says |
https://www.seattletimes.com/business/china-based-hackers-breached-western-european-government-email-accounts-microsoft-says/?amp=1
|
July 11, 2023 |
Government is Moving on Memory Safety |
https://www.nextgov.com/cybersecurity/2022/12/federal-government-moving-memory-safety-cybersecurity/381275/
|
July 7, 2023 |
Nickelodeon investigates breach after leak of 'decades old’ data |
https://www.bleepingcomputer.com/news/security/nickelodeon-investigates-breach-after-leak-of-decades-old-data/
|
July 6, 2023 |
Researchers Uncover New Linux Kernel 'StackRot' Privilege Escalation Vulnerability |
https://thehackernews.com/2023/07/researchers-uncover-new-linux-kernel.html?m=1
|
July 6, 2023 |
Microsoft investigates Outlook.com bug breaking email search |
https://www.bleepingcomputer.com/news/microsoft/microsoft-investigates-outlookcom-bug-breaking-email-search/
|
July 3, 2023 |
Avast released a free decryptor for the Windows version of the Akira ransomware |
https://securityaffairs.com/148007/cyber-crime/akira-ransomware-decryptor.html
|
June 28, 2023 |
(Telesign) Software company accused of illegally profiling millions of mobile phone users |
https://www.malwarebytes.com/blog/news/2023/06/software-company-accused-of-illegally-profiling-millions-of-mobile-phone-users
|
June 28, 2023 |
Company finds lost SSD—and confidential data—for sale on eBay |
https://www.malwarebytes.com/blog/news/2023/06/company-finds-lost-ssd-and-confidential-data-for-sale-on-ebay
|
June 28, 2023 |
Hackers Hiding DcRAT Malware in Fake OnlyFans Content |
https://www.hackread.com/hackers-dcrat-malware-fake-onlyfans-content/
|
June 28, 2023 |
8Base ransomware gang escalates double extortion attacks in June |
https://www.bleepingcomputer.com/news/security/8base-ransomware-gang-escalates-double-extortion-attacks-in-june/
|
June 24, 2023 |
NSA: BlackLotus BootKit Patching Won't Prevent Compromise |
https://www.darkreading.com/vulnerabilities-threats/nsa-blacklotus-bootkit-patchings-prevent-compromise
|
June 24, 2023 |
CISA orders govt agencies to fix recently disclosed flaws in Apple devices |
https://securityaffairs.com/147782/hacking/known-exploited-vulnerabilities-catalog-apple-bugs.html
|
June 23, 2023 |
Feds seize notorious and shuttered hacking site BreachForums |
https://techcrunch.com/2023/06/23/feds-seize-notorious-and-shuttered-hacking-site-breachforums/
|
June 22, 2023 |
Military Satellite Access Sold on Russian Hacker Forum for $15,000 |
https://www.hackread.com/military-satellite-access-russian-hacker-forum/
|
June 22, 2023 |
Camaro Dragon Hackers Strike with USB-Driven Self-Propagating Malware |
https://thehackernews.com/2023/06/camaro-dragon-hackers-strike-with-usb.html
|
June 22, 2023 |
Bipartisan Bill Proposes Cybersecurity Funds for Rural Water Systems |
https://www.securityweek.com/bipartisan-bill-proposes-cybersecurity-funds-for-rural-water-systems/
|
June 22, 2023 |
Microsoft warns of rising NOBELIUM credential attacks on defence sector |
https://www.hackread.com/microsoft-nobelium-credential-attacks-defense/
|
June 22, 2023 |
Explainer: Dominion vulns reported by Halderman |
https://cybersect.substack.com/p/explainer-dominion-vulns-reported
|
June 22, 2023 |
New DoJ Cyber Prosecution Team Will Go After Nation-State Threat Actors |
https://www.darkreading.com/attacks-breaches/new-doj-natsec-cyber-prosecution-team-will-go-after-nation-state-threat-actors
|
June 22, 2023 |
UPS discloses data breach after exposed customer info used in SMS phishing |
https://www.bleepingcomputer.com/news/security/ups-discloses-data-breach-after-exposed-customer-info-used-in-sms-phishing/
|
June 21, 2023 |
Chinese Hacker Group 'Flea' Targets American Ministries with Graphican Backdoor |
https://thehackernews.com/2023/06/chinese-hacker-group-flea-targets.html
|
June 21, 2023 |
Volt Typhoon targets US critical infrastructure with living-off-the-land techniques |
https://www.microsoft.com/en-us/security/blog/2023/05/24/volt-typhoon-targets-us-critical-infrastructure-with-living-off-the-land-techniques/
|
June 21, 2023 |
Critical 'nOAuth' Flaw in Microsoft Azure AD Enabled Complete Account Takeover |
https://thehackernews.com/2023/06/critical-noauth-flaw-in-microsoft-azure.html?m=1
|
June 21, 2023 |
U.S. Energy Dept gets two ransom notices as MOVEit hack claims more victims |
https://news.yahoo.com/us-energy-dept-got-two-201406903.html
|
June 20, 2023 |
Researchers uncovered a set of malicious files with backdoor capabilities that they believe is part of a toolkit targeting Apple macOS systems. |
https://securityaffairs.com/147622/malware/macos-attacks-toolkit.html
|
June 20, 2023 |
HBSQLI is an automated command-line tool for performing Header Based Blind SQL injection attacks on web applications. |
https://github.com/SAPT01/HBSQLI
|
June 19, 2023 |
Ukrainian Cyber Police Dismantle Large-Scale Pro-Russian Bot Farm, Targeting Disinformation and Manipulation |
https://www.vice.com/en/article/4awq8m/video-ukraine-busts-alleged-russian-bot-farm-using-thousands-of-sim-cards
|
June 19, 2023 |
Army Expands Surveillance Powers: Social Media Monitoring and Location Tracking Included in Protective Services for Top Military Brass |
https://theintercept.com/2023/06/17/army-surveillance-social-media/
|
June 19, 2023 |
China's Digital Offensive: Cyberattacks and Disinformation Target Taiwan, Undermining U.S. Alliance |
https://www.cbsnews.com/news/china-cyber-assault-taiwan-60-minutes-2023-06-18/
|