Cybersecurity Headlines cover art

All Episodes

Cybersecurity Headlines — 1000 episodes

#
Title
1

Nvidia opens AI security tent, Microsoft adds cyber sprinter to MDASH, Fairlife ransomware spills data

2

Iran infrastructure warning, ChatGPT global outage, self-assembling malware

3

The Department of Know: OpenAI hacks Hugging Face, Chinese LLM ban, Kratos takedown

4

AI agents risk, Upbound Group breach, Dolphin X Stealer

5

OpenAI behind Hugging Face hack, TrickBot tunnels through DNS, Acrobat extension opens WhatsApp

6

Bit2Watt instability, AI models cheat, Chinese LLM ban

7

Hugging Face fights AI hacks, World Cup streamers get red cards, WordPress enters a patching race

8

Fairlife dairy cyberattack, ACR Stealer surge, Abbott Labs incidents

9

The Department of Know: CMMC suspended, ShareFile shutdown, Context Bombing strikes back

10

ClickLock's kill loops, TELEPUZ ClickFix tricks, 1Password's agentic login

11

Zoom's wake-up call, zero-day SonicWall patch, 23andMe's growing breach bill

12

CMMC Phase II suspended, tracking troops in Iran, defenders turn to context bombing

13

Russia's router access routes, MemGhost haunts AI memory, DHS alert got waved off twice

14

Multifunction Windows backdoor, NSA revives TAO, urgent ShareFile warning

15

The Department of Know: France gets ready for quantum, JadePuffer ransomware, UK's Cyber Shield

16

Interpol's global fraud sweep, China's Claude Code flag, old Github account tricks

17

Mexico's big cyber test, Roundcube mailserver snooped on, Cash App found lax

18

UK Cyber Shield, Japanese telco attack, China AI model limits

19

India tax RAT, prompt injection crypto scam, France pushes quantum-safe

20

First AI ransomware, AdaptHealth suffers cyberattack, UK cyber plan delayed

21

The Department of Know: PeopleSoft exploit, Ford brings back gray beards, LLM vetting

22

Consumer security worries, Vought supervises spy budgets, Fortibleed exposes Fortinet

23

Hide My Email bug shows real addresses, Fable 5 gets the greenlight, Microsoft Teams hits back on AI bots

24

Bash hits AI, DHS announces ANCHOR-CI, Aikido buys Root

25

US seizes illegal World Cup domains, WhatsApp offers usernames for phone privacy, $10M reward for Russia-based cyber campaign

26

CISA's Cisco deadline, China's Mythos competitor, Amazon Q flaw

27

ShinyHunters hits MSG, Cal Water confirms no damage, CISA SASE guide

28

Copilot AI attacks cybercrime tools, hackers exploit Cisco zero-day, China's 360 vs Mythos

29

Feds seize scam infrastructure, Dragos unveils AI for OT security, Scattered Spider hackers plead guilty

30

OpenAI takes on Mythos, Klue hits security shops, Five Eyes has eyes on AI

31

Brazil phone alert hack, Prinz Eugen ransomware, Congress deepfake bill

32

The Department of Know: SearchLeak, Check Point zero-day, and pulling the plug on Fable

33

Police clean WordPress sites, Klue OAuth breach, Warner's CISA warnings

34

Anthropic tells G7 to cooperate, Fortinet VPN leak exposes credentials, Crypto Clipper abuses reviews

35

Athena coalition, Estonia's quarantine, Arch hit with malware

36

Anthropic models defended, FBI shuts down massive phishing service, 1Password acquires Apono

37

Feds ban Fable, Maine portal disabled, ShinyHunters exploits Oracle

38

The Department of Know: CISA's quick patch, Miasma attacks, judge finds AI guilty

39

Fortinet patches FortiSandbox, GitHub disables npm scripts, Nottingham University breach

40

Big Patch Tuesday, 'Nightmare Eclipse' drops Windows 0-day, Claude Fable restricted at Microsoft

41

Fable 5, Tchap hacked, CISA priorities

42

Claude & Gemini malware, Mythos sneaky flaws, Instagram AI abuse

43

CISA Palantir Director, EU tech sovereignty, SolarWinds Serv-U flaw

44

The Department of Know: NVD audit, Meta's leaky AI, Microsoft is closer to quantum

45

Chinese cybercrime group, Cisco CM flaw, CISA faces changes

46

Illegal streamers, EU digital sovereignty, cost of a cyber force

47

Russia claims officials' surveillance, Project Glasswing expands, CISA flags two-year-old Oracle flaw

48

Meta AI hands over Instagram access, Dutch police dismantle botnet, RedHat packages backdoored

49

GlobalProtect VPN exploited, ChatGPT share links exploits, Feds criticize NIST

50

The Department of Know: Google's CodeMender, CISA's big leak, Torvalds open-source warning

51

World Cup fraud, US military location targets, IBM and Red Hat go Project Lightwell

52

Glassworm botnet shattered, China overhauls surveillance, Charter confirms ShinyHunters breach

53

Nimbus Manticore, real-time credential harvesting, the 12-hour patch

54

Megalodon infects GitHub repositories, Netherlands seizes 800 servers, Ghost CMS exploited for ClickFix attacks

55

Drupal KEV addition, Underminr revives domain fronting, Canadian KimWolf arrest

56

The Department of Know: Google's CodeMender, CISA's big leak, Torvalds open-source warning

57

Cisco's 10.0 vulnerability, Microsoft email spammed, Chrome vulnerability surge

58

GitHub VS Code extension breach, Shai-Hulud npm package compromise, Huawei/Luxembourg telecom link

59

Microsoft hits Fox Tempest, robotics OS flaw, CISA admins leaks keys

60

Linus Torvalds talks AI bug hunters, 7-Eleven ransom demand, MENA's new cybercrime op

61

Grafan GitHub extortion, Microsoft rejects Azure report, Funnel Builder flaw

62

The Department of Know: GemStuffer attack, AI SBOMs, and AI-created zero-days

63

G7 releases AI SBOM, DELL SupportAssist BSOD, Dirty Frag sequel

64

Foxconn confirms factory attacks, BitLocker zero-day accesses protected drives, MDASH patches Windows flaws

65

Instructure's agreement, Shai Hulud campaign, OpenAI's Daybreak

66

A.I. software flaw hackers, Forza Horizon 6 leak, Linux kernel hit again

67

New cPanel vulnerabilities, JDownloader delivers malware, Schumer pushes DHS

68

The Department of Know: AI "transformation paradox," Copy Fail chaos, hacked lawnmowers

69

PAN-OS RCE exploit , Poland water hacks, Ivanti EPMM flaw

70

Chrome installs AI model on devices, Daemon Tools disk app backdoored, crypto security exodus

71

Video game supply chain attack, Bleeding Llama, US gets early LLM access

72

Instructure discloses breach, DigiCert revokes certificates, Silver Fox targets Indian and Russian orgs

73

Telegram Mini Apps malware, cPanel is Sorry, patch wave warning

74

The Department of Know: GitHub drama, AI deletes production data, Claude Security Beta

75

Critical cPanel zero-day, Swiss Black Axe arrests, HHS data center questions

76

Roblox hackers arrested, Microsoft 0-day falls short, Dubai scam takedown

77

Agent payments, Russian phishing, LeRobot RCE flaw

78

PhantomRPC flaw, Checkmarx GitHub dark web data, PyPI package infostealer

79

ADT data breach, Toronto SMS blasting, pre-Stuxnet malware discovery

80

The Department of Know: Vercel breach, a "Contagious Interview," and ghost breaches

81

Rituals cosmetics breach, FBI iOS flaw fixed, Teams Helpdesk impersonation

82

New OpenAI cyber product, unauthorized Mythos access, insurers to cap LLMjacking payouts

83

CISA lacks Mythos, Lovable's leak by design, YouTube's deepfake detection

84

Vercel breach, ZionSiphon targets water infrastructure, Bluesky DDoS

85

London hospital ransomware legacy, PowerOFF takedown, Microsoft RedSun zero-day

86

The Department of Know: Mythos Mayhem, critical infrastructure targeted, NVD changes

87

Cisco Webex warning, Splunk's Enterprise fix, Git spoof tricks Claude

88

OpenAI's GPT-5.4-Cyber, McGraw Hill blames Salesforce for breach, signed adware disables antivirus

89

Ransomware drama, faked Ledger app, Treasury wants Mythos

90

Claude Mythos Preview's capabilities, Anodot breached companies face extortion, wolfSSL flaw enables forged certificates

91

The Department of Know is Moving to Fridays

92

Adobe patches zero-day, Marimo flaw exploited, Venice flood threat

93

Android API exposure, Acrobat Reader zero-day, Bitcoin Depot cyberattack

94

ChipSoft popped, APT28 updates, CIA cyber espionage elevation

95

Anthropic's Project Glasswing, CISA funding in doubt, routers hijacked for passwords

96

Drift blames exploit on North Korea, GitHub attacks target South Korea, Die Linke breach threatens data leak

97

Department of Know: Axios malware, TeamPCP campaign, New Storm infostealer

98

Malicious npm packages, CISA budget cuts, hackers exploit React2Shell

99

Texas hospital breach, CISA orders NetScaler patch, ISO file RAT warning

100

New iOS patches over DarkSword, FBI: surveillance hack is major incident, Cisco code stolen in Trivy-linked breach

101

Axios poisoned, TeamPCP details, Claude Code leaked

102

macOS Terminal ClickFix attacks, Russian court sentences 'Flint', CareCloud probes data breach

103

Department of Know: Gemini scours dark web, NSA worries about cybersecurity, APIs run loose

104

FBI email theft, Lloyds Bank glitch, API keys running loose

105

Alleged RedLine dev extradited, Red Menshen spies with BPFDoor, is US cybersecurity slipping?

106

Torg Grabber targets crypto, TeamPCP backdoors LiteLLM, GitHub AI bug detection

107

FCC router ban, drone hit AWS, Crunchroll leak

108

DarkSword exploit hits GitHub, Gemini AI agents scour dark web, Trivy supply chain attack expands

109

Department of Know: SaaS apps enable breaches, real-time cyber protection, IoT botnet takedown

110

International botnet takedown, California city ransomed, Azure Monitor phishing

111

Critical SharePoint flaw, real-time cyberattack prevention, CISA's Intune warning

112

DarkSword emerges, "ShieldGuard" dismantled, NK IT worker army rakes in money

113

Energy strategy, scammer accord, font-rendering attack

114

Stryker hospital tools safe, models apply to power AI scams, cybercrime up 245%

115

Department of Know: OpenAI vulnerability scanner, US new cyber strategy, VPN SEO poisoning

116

Royal Bahrain Hospital breach, Canada's Loblaw breached, New York water laws

117

Iran boosts cyberattacks, VENON targets Brazilian banks, England Hockey investigates breach

118

Meta apps offer new scam protection, Google's Wiz acquisition finalized, China curbs state-run OpenClaw use

119

New Cyber Command chief, Russia targets Signal, Codex Security

120

InstallFix spreads fake Claude sites, UNC4899 breaches crypto, UK cyber-fraud crackdown

121

Department of Know: Quantum-Safe certificates, Iranian cyberattack risks, 90 zero-days

122

FBI network breach, GitHub distributes stealer, Hackers abuse .arpa

123

Apple blocks ByteDance, Google's 90 zero-days, Iran backdoors U.S. organizations

124

Possible iPhone-hacking toolkit used by spies, Hacker mass-mails HungerRush extortion emails, Tycoon 2FA phishing platform dismantled

125

Quantum decryption, OpenAI's deal, South Korea leaks crypto keys

126

Chrome quantum-safe certificates, Gemini Live vulnerability, UK warns of Iranian cyberattacks

127

Department of Know: iPhone, iPad and Grok get greenlight, WiFi gets snitched

128

Gottumukkala ousted, Wyden blocks Rudd, Hackers weaponize Claude

129

NATO adopts Apple, Education and Healthcare backdoor, Apex One flaws

130

Google disrupts UNC2814, 3M+ impacted by TriZetto breach, Cisco bug exploited since 2023

131

Hacked in 30 minutes, Claude distillation, DeFi shutdown after attack

132

US healthcare breach affects 140k, experts warn against replicating humans, Shai-Hulud-like worm targets devs

133

Department of Know: Chrome zero-day, exploits, Copilot summarizes confidential emails, Identity abuse problems

134

Arkanix was POC, 600 Fortinet firewalls breach, Russia heightens tension

135

CISA's DELL order, Android AI malware, browsers as weak link

136

Copilot summarizes confidential emails, ShinyHunters targets CarGurus, Texas sues TP-Link

137

Hacking protestors, UK "locks the door," Kenyan politician phone cracked

138

Eurail traveler data for sale, EU Parliament blocks AI features, Washington Hotel discloses ransomware hit

139

Department of Know: VoidLink threatens multi-cloud, flaw threatens Claude extension, China practices on infrastructure

140

Ivanti actor identified, search overviews manipulated, ClickFix leverages Nslookup

141

Hackers abuse Gemini, Apple patches ancient bug, CISA criticizes shutdown

142

Crazy gang abuses employee monitoring tool, Nevada unveils new data classification, Georgia healthcare breach impact grows

143

Google gets EU Wiz approval, Microsoft secures Secure Boot certificates, North Korean hackers target crypto exec

144

UNC3886 targets Singapore telecoms, VoidLink exhibits multi-cloud capabilities and AI code, 135,000+ OpenClaw instances exposed

145

Department of Know: GSA's CMMC requirements, AWS intruder AI heist, Moltbook raises the stakes

146

OpenClaw embraces VirusTotal, CISA EOL Deadline, ransomware hits BridgePay

147

Substack admits breach, Russian attacks target Winter Olympics, GitHub Codespaces enable RCE

148

Ukraine tightens controls on Starlink terminals, VMware ESXi flaw now exploited, SolarWinds Web Help Desk bug under attack

149

Metro bug, more social bans, leaky Moltbook

150

OpenClaw targets ClawHub users, Notepad++ update delivers malware, APT28 attackers abuse Microsoft Office zero-day

151

Department of Know: CISA's cryptography categories, Gottumukkala's ChatGPT gotcha, NTLM says goodbye

152

Police question Coupang CEO, Russia bakery cyberattack, Australian real estate scandal

153

France fines unemployment agency, Teams flags calls, UK pushes deterrence

154

Sandbox flaw exposes n8n instances, Fake Moltbot assistant drops malware, PeckBirdy takes flight for cross-platform attacks

155

US cyber chief uploaded sensitive files into public ChatGPT, Vibe-coded 'Sicarii' ransomware can't be decrypted, WhatsApp account feature combats spyware

156

Microsoft patches Office zero-day vulnerability, Indian users targeted by Blackmoon, Konni targets blockchain developers

157

Department of Know: Davos worries, UK-China tensions, calendar concerns

158

Microsoft Patch problems, Sandworm hits Poland, Dresden Museum cyberattack

159

Multi-stage SharePoint attack, SmarterMail bypass flaw, AI worries Davos

160

Tesla hacked at Pwn2Own Automotive, Everest sitting on Under Armour data? PurpleBravo fake jobs campaign targets IP addresses

161

UK-China forum, Iranian TV hijacked, VoidLink made by AI

162

Gemini prompt injection flaw exposes calendar info, hacker admits to Supreme Court data leak, researchers uncover PDFSIDER malware

163

Department of Know: Easterly helms RSAC, Third party apps report, Self-poisoning AI

164

NSA dual-hat question, third-party report, GhostPoster extension continues

165

Easterly helms RSAC, Windows update problems, Police Copilot gaffe

166

U.S. weighs cyberwarfare options, DeadLock uses smart contracts to hide work, China says stop using US and Israeli cybersecurity software

167

GoBruteforcer targets blockchain projects, Android bug causes volume key issues, Verizon to stop automatic phone unlocks

168

Instagram denies breach, Sweden detains spying suspect, n8n attack steals OAuth tokens

169

Department of Know: Brightspeed investigates breach, Prompt injection woes

170

BreachForums database leaked, Instagram breach worries, UK government exempts self

171

Microsoft enforces admin MFA, Cisco patches ISE, Illinois breaches self

172

ESA confirms new data heist, Ni8mare lets hackers hijack n8n servers, Taiwan blames 'cyber army' for intrusion attempts

173

UK cyber reset, no MFA is a problem, US cyberattacks on display

174

European hospitality blue screen of death, Brightspeed investigates breach, Convicted Bitfinex launderer freed

175

Department of Know: Sedgewick confirms incident, Coupang store credit only, AI needs generators

176

Palo Alto AI warning, Resecurity hack fiasco, Christmas ColdFusion attack

177

NYC Inauguration bans Flipper Zero, UK taxes crypto, Finland seizes ship

178

Unleash Protocol hackers drain millions, DarkSpectre campaigns exposed, Shai-Hulud attack led Trust Wallet heist

179

Silver Fox targets Indian users, Mustang Panda deploys ToneShell, will prompt injection ever be 'solved'?

180

Coupang recovers laptop in river, Trust Wallet reports 2k+ wallets drained, Sax discloses 2024 data breach

181

The Department of Know: year in review and predictions

182

Rainbow Six Siege breach, backup generators for AI, LastPass reverberations

183

Fortinet VPN exploit, Google gmail change, Aflac breach update

184

Scams target MENA region, pen testers accused of blackmail, DDoS protection faces fresh challenges

185

ServiceNow to acquire cybersecurity startup Armis, MacSync Stealer adopts quieter installation, Nissan customer data stolen in Red Hat raid

186

Spotify music library scraped, DDoS disrupts French postal services, Fake delivery sites hit holiday shoppers

187

Department of Know: President signs defense bill, time flies at NIST, Italian ferry malware

188

President's cyber bill, Iranian APT resurfaces, Kimwold DDoS attack

189

Windows RemoteApp problems, ferry malware arrest, Senator's open-source warning

190

FTC orders crypto to pay, New exploit of React2Shell, Ukraine fraud ring take down

191

Rogue NuGet package steals data, Venezuela's PDVSA suffers attack, patched Fortinet flaws exploited

192

US taps private firms in cyber offensive, Microsoft updates cause queuing failures, phishing campaign delivers Phantom Stealer

193

Department of Know: MITRE's weaknesses list, DoD goes postquantum, Coupang fallout

194

MongoDB records exposed, Apple WebKit patches, Coupang culprit identified

195

'DroidLock' demands ransom, Google fixes secret Chrome 0-day, UK fines LastPass over 2022 breach

196

Coupang CEO resigns, hactivists target US infrastructure, Israeli cybersecurity hits record funding

197

Spain arrest over data records, goodbye dark Telegram, scammers poison AI search results

198

Ransomware costs billions, cybercrime leads to real violence, three arrested for hacking tools

199

Department of Know: CISO hiring warning, critical threat actor law, Microsoft Defender outage

200

Palo Alto VPN attacks, NATO cyberdefense exercise, Chinese exploit React2Shell

201

Predator spyware, Russia blocks FaceTime, US cyber strategy coming

202

Record-breaking DDoS attack, React bug puts servers at risk, RansomHouse attack

203

Microsoft Defender outage disrupts threats, Apple resists India's app order, MuddyWater strikes Israel

204

India orders web safety app, arrests over IP camera snooping, Albiriox shows up on dark web

205

Department of Know: Prompt injection problems, California browser law, Hacklore's security myths

206

Asahi ransomware details, California browser law, Windows Teams accelerated

207

Microsoft blocks Entra, AI scammer legislation, ASUS patches AiCloud

208

AWS outage botnet smacks 28 countries, LLMs help malware authors evade detection, Anthropic pressed over Claude espionage

209

CISA warns of app break-ins, StealC V2 spread through blender files, Russian entrepreneur arrested for treason

210

CISA orders feds to patch OIM, Delta Dental incurs breach, Ukraine postal operator systems down

211

Department of Know: Overconfidence new zero-day, FCC torches Salt Typhoon rules, AI uninsurable

212

CrowdStrike insider catch, Spanish airline breach, AI not insurable

213

Sturnus captures encrypted chats, PowerSchool schools blamed, SEC security bill

214

Cloudflare blames database, Crypto heist takedown, WhatsApp flaw exposed billions

215

FCC to torch Salt Typhoon rules, Group claims Danish party website hits, MI5 warns Chinese spies are on LinkedIn

216

Azure hit by DDoS, Kenyan government sites recover, EVALUSION emerges

217

Department of Know: Autonomous AI cyberattack, CISOs back to work, bus kill switches

218

Windows 10 update failure, autonomous AI cyberattack, Feds fumble Cisco patches

219

Cyber laws reprieved, Microsoft screen capture, FBI highlights Akira

220

Mobile blackout for Russian travelers, Windows 11 supports 3rd party passkeys, Synology patches BeeStation flaw

221

Google's remote-wipe weapon, Qilin ransomware activity surges, GootLoader is back

222

Reauthorizing CISA, Electric bus kill switches, GDPR for AI

223

Department of Know: Cybercriminals join forces, SleepyDuck" exploits Ethereum, passwords still awful

224

runC Docker threats, lost iPhone scam, Landfall spyware warning

225

Hackers use Hyper-V, Cisco UCCX flaw, The Louvre's password

226

Google uncovers PROMPFLUX, CISA warns of CentOS Web Panel bug, Threat group targets academics

227

Scattered Spider, LAPSUS$, ShinyHunters join forces, Nikkei data breach impacts 17k people, React Native NPM flaw leads to attacks

228

"SleepyDuck" uses Ethereum, SesameOp abuses OpenAI API, cybercrooks steal physical cargo

229

Department of Know: Azure security pitfalls, retailer cyberattack profits, Aardvark eats bugs

230

Australia BadCandy warning, Cisco firewall attack, Aardvark eats bugs

231

LinkedIn AI opt-out, NSA leadership candidates, Python foundation withdraws

232

LG Uplus confirms breach, Conduent attack impacts 10M+, hackers exploit tools against Ukraine

233

Android malware types like a human, sanctions weaken cyber ecosystems, side-channel extracts Intel, AMD secrets

234

Atlas browser hijacked, Bye, bye Twitter birdie, Dante spyware surfaces

235

Department of Know: Promoting passphrases, questioning international security conferences, gift card hackers

236

Microsoft WSUS vulnerability, LastPass death hoax, Copilot phishing technique

237

Week in Review: AI powered cyberattacks, Chinese time hacked, the 72 hour workweek

238

Jingle Thief exploit, Lazarus targets jobseekers, the 72 hour workweek

239

TP-Link urges updates, MuddyWater espionage campaign, flaw hits Adobe Commerce

240

Russian hackers replace malware with new tools, Windows updates cause login issues, campaign targets high-profile servers

241

AWS outage, NSA hacking accusations, High risk WhatsApp automation

242

Europol dismantles SIM farm, Envoy Air compromised, Everest claims Collins hack

243

Week in Review: Velociraptor pushes LockBit, Hartman loses nomination, Sotheby's cyberattack

244

Sotheby's suffers cyberattack, Cisco "Zero Disco' attacks, Microsoft revokes ransomware certificates

245

MANGO discloses data breach, Jewelbug infiltrates Russian IT network, nation-state behind F5 attack?

246

Legacy Windows protocols expose theft, Fortra admits GoAnywhere defect, Taiwan claims surge in Chinese attacks

247

Salesforce data leak, SimonMed breach, Chipmaker vs. Dutch government

248

Velociraptor pushes LockBit, Spain dismantles crime group, SonicWall SSL VPN breach

249

Week in Review: Crowdsourced ransomware campaign, Windows 10 woes, California opts out

250

Microsoft Azure outage, law firm cyberattack, Russian hacktivists pwned

251

DeepMind fixes vulnerabilities, California offers data opt-out, China-Nexus targets open-source tool

252

North Korean attackers steal crypto. Who's sending UK phones to China? Avnet confirms data breach

253

Unity vulnerability, Oracle zero-day patched, Discord user info exposed

254

ParkMobile breach settlement, UK schools vulnerable, Zimbra calendar attacks

255

Week in Review: Shutdown furloughs CISA, DoD risk framework, Oracle extortion problem

256

Shutdown furloughs CISA, Defender BIOS bug, Motilily dealership cyberattack

257

Breaches set for North America, Outlook bug needs Microsoft support, Air Force admits SharePoint issue

258

China-linked group linked to new malware, 2024 VMware zero-day still exploited, iOS fixes a bevy of glitches

259

Microsoft blocks AI code, Breach hits WestJet, Harrods suffers new data incident

260

Dutch espionage arrest, DOD risk management framework, Oyster malvertising

261

Week in Review: Jaguar Land Rover attack, indirect prompt injections, card farms in NYC

262

Windows 10 extension, teenage Vegas hacker released, Boyd Gaming hacked

263

Suspect arrested over airport attack, DDoS attack hits new record, BRICKSTORM backdoor steals IPs

264

European airports restore services, CISA deals with GeoServer exploit, Jaguar Land Rover extends shutdown

265

EDR-Freeze, DeepMind persuasion, vendors exit ATT&CK

266

European airport cyberattack, SMS celltower scam, GPT4-powered ransomware

267

Week in Review: Student hackers increase, CISA wants CVE, Microsoft called hypocritical

268

Google patches zero-day, Copilot's forced installation, Scattered Spider arrests

269

Insight Partners warns thousands, Scattered Spider feigns retirement, Consumer Reports calls Microsoft 'hypocritical'

270

Cyber programs extended, older Apple devices attacked, chatbots aid phishing scams

271

Android security changes, CISA incentive audit, LLM usage

272

ShinyHunters hits Vietnam, Petya-NotPetya copycat appears, CISA wants CVE

273

Week in Review: Qantas penalizes executives, UK cyberlegislation delayed, SonicWall VPN flaws

274

SonicWall VPM exploits, Fed cyberchief's priorities, U.S spyware investment triples

275

npm update, Cursor Autorun flaw details, Microsoft probe over Ascension hack?

276

Blood center attack details emerge, Electoral Commission recovers, Plex suffers password breach

277

GhostAction campaign, scam centers grow, GPUGate hits IT

278

SVG phishing campaign, Anthropic piracy lawsuit, Qantas penalizes executives

279

Week in Review: Baltimore's expensive gaffe, ransomware takedown outcomes, Workiva Salesforce breach

280

France cookie fines, CISA TP-Link KEV, sports piracy takedown

281

Fintech foils bank heist, NotDoor backdoor, Salesloft-Drift impact continues drifting

282

Google: Gmail is secure, Cloudflare blocks largest DDoS attack, Amazon shutters theft campaign

283

LLM legalese prompts, Maryland Transit cyberattack, hacking into university

284

Velociraptor C2 tunnel, Baltimore's expensive con, ransomware gangs multiply

285

Week in Review: Citrix RCE flaw, steganography revived, major telecom fiasco

286

Malicious nx Packages, AI worker scam, Salt Typhoon attacks Netherlands

287

Salt Typhoon expands, AI-powered ransomware, Anthropic warns of vibe-hacking

288

DOGE puts critical SS data at risk? CISA warns of new exploited flaw, K-Pop stock heist attacker extradited to South Korea

289

Farmers Insurance also hit by Salesforce breach, UpCrypter phishing campaign, Pakistan hits Indian government agencies

290

Malicious Go module, new Mirai botnet, Silk Typhoon exploits cloud

291

Week in Review: Celebrating 5 years of Cyber Security Headlines

292

Apple's urgent update, Scattered Spider sentence, Microsoft seeks SSD feedback

293

Apple zero-day patch, Jailbreaking ChatGPT-5 Pro, 7-year old Cisco Vulnerability exploited

294

UK drops Apple backdoor mandate, Allianz Life breach impacts 1.1M, attack stifles speed cameras

295

Workday breach, post-quantum alliance, Chinese group targets Taiwan

296

Cisco firewall warning, Colt Telecom cyberattack, CISA's OT request

297

Week in Review: ShinyHunters-Scattered Spider merge, DARPA AI prize, Water infrastructure volunteers

298

NFC fraud reappears, Canada government breach, Zoom's critical flaw

299

Court filing system hack explained, PA AG weighs in on attack, Fortinet attacks raise concerns

300

Fortinet SSL VPNs getting hammered, The Netherlands critical infrastructure compromise, Africa the most targeted for cyber attacks

301

North Korean crypto theft, Microsoft rolls out back up, four charged in global scheme

302

DARPA code prize, ScarCruft adds ransomware, Columbia breach tally

303

Week in Review: UK LegalAid collapse, public ransomware approval, Salesforce breach impact

304

Hybrid Exchange flaw, France telecom breach, Dialysis company attack

305

Gemini AI hijacked, Nvidia rejects AI chip backdoors, phishers abuse Microsoft 365

306

PBS confirms data breach, TSMC fires engineers over theft, Cloudflare: Perplexity is web scraping

307

Microsoft & Google lead zero day exploits, Plague Linux malware maintains SSH access, panel to create US Cyber Force

308

Akira's SonicWall zero-day, UK Legal-Aid suffers, Luxembourg 5G attack

309

Week in Review: Surveillance camera vulnerabilities, data sovereignty conundrum, French submarine cyberattack

310

ATM Raspberry Pi breach, Easterly West Point cancellation, Chinese company-hacker link

311

Oh No! Lenovo, French submarine data breach, Russian pharmacy cyberattack

312

Telecom Orange hacked, $2.4M Bitcoin seized from Chaos, Scattered Spider's tactics evolve

313

Russian flights grounded, Naval group breach, dating app exposed

314

NASCAR announces breach, Plankey for CISA, 365 Admin outage

315

Week in Review: Aruba's hardcoded passwords, Clorox wipes supplier's mess, AI tool deletes everything

316

SonicWall releases patches, The Com warning, Compromised Amazon Q extension

317

Goodbye toha, AI deletes live data, Adobe apps advisory activated

318

Sharepoint hack linked to Chinese groups, NGOs targeted with phishing tactics, engineer admits US missile theft

319

SharePoint patched, World Leaks hits Dell, $44 million crypto theft

320

Aruba password warning, SharePoint zero day, Russian vodka maker attacked

321

Week in Review: Pentagon's Chinese Engineers, Gemini's email phish, 20-year-old railroad flaw persists

322

Taiwan semiconductor sector hacked, Salt Typhoon breaches National Guard, Congress ponders Stuxnet

323

Google's AI tool finds bugs, Europol disrupts hacktivist group, SquidLoader targets Hong Kong

324

Chinese engineers at Pentagon, HazyBeacon malware, MITRE framework: AADAPT

325

EU age verification, train brakes vulnerability, Grok-4 jailbroken

326

CitrixBleed2 urgent fix, Gemini email flaw, Louis Vuitton cyberattack

327

Week in Review: ChatGPT URL vulnerability, McDonald's password problem, Perfekt Bluetooth blunder

328

Outlook outage continues, Iranian APT activity, Russian ransomware arrest

329

AMD has CPU meltdown, Mozilla Thunderbird has vulnerabilities, Indian defense sector attacked

330

Rubio Spoofed, RondoDox Botnet, Batavia Spyware

331

Call of Duty game pulled, U.S. military gets cybersecurity boost, Bank employee helped hackers

332

Ingram Micro cyberattack, Telefonica possible breach, LLM URL recommendation problem

333

Undetectable Android spyware is detectable, Hunters ransomware quits, Salt Typhoon dormant

334

Columbia hack, hunger relief ransomware, Qantas breach

335

Google issues Chrome security update, ICC targeted by new attack, Microsoft nixes Authenticator password management

336

New Iran warning, Chinese surveillance company banned, CISA names new executive director

337

Hawaiian Airlines cyberattack, United Natural Foods update, Russia throttles Cloudflare

338

Week in Review: Qilin adds lawyers, Iranian spearphishing campaign, Microsoft Direct Send hack

339

Iranian-backed spearphishing campaign, Microsoft Outlook fix, Glasgow suffers cyberattack

340

Patient death linked to ransomware, BreachForums busted again, nOAuth vulnerability

341

70 Microsoft Exchange servers targeted, Apple, Netflix, Microsoft sites hacked, data breach hits Aflac

342

Retaliatory Iranian cyberattacks, steel giant confirms breach, ransomware hits healthcare system again

343

CMS retailer report, Aflac investigates activity, Russian dairy cyberattack

344

Week in Review: ClickFake deepfake scam, Krispy Kreme breach, NIST ZTA guidance

345

Cisco, Atlassian fixes, Ryuk member arrested, Viasat Typhoon attack

346

Episource Breach, Predatory Sparrow strikes again, Swiss banks data leak

347

Hackers exploit Langflow flaw, TP-Link routers still vulnerable, Russia detects SuperCard malware attacks

348

2FA middleman, Archetyp seized, Zoomcar hacked

349

Washington Post hacked, WestJet suffers cyberattack, Texas DoT breach

350

Week in Review: Google and Cloudflare outages, Copilot Zero-Click, Cloudflare's Claude flair

351

Microsoft Entra attack, Thursday's Cloud outages, Mark Green retires

352

CoPilot zero-click, Operation Secure, FIN6 targets recruiters

353

40K IoT cameras stream secrets to browsers, Marks & Spencer taking online orders post-cyberattack, PoC Code escalates Roundcube Vuln threat

354

Cybersecurity News: Brute forcing Google accounts, Guardian's Secure Messaging, UNFI cyberattack

355

Cyber executive order, Neuberger's infrastructure warning, Mirai botnet warning

356

Week in Review: Senators' CSRB bid, Deepfakes dodge detection, Microsoft-CrowdStrike collaboration

357

Kettering data published, Reddit sues Anthropic, North Face breached

358

Russian bomber maker popped, vishing targets Salesforce, MS helps out governments

359

Meta, Yandex take heat on browsing identifiers, Acreed malware makes gains, HPE warns of critical auth bypass

360

MS and CrowdStrike partner, Qualcomm bugs exploited, new CISA cut details

361

Cisco IOS XE exploit, Senators' CSRB request, Australia ransomware law

362

Week in Review: Chrome password replacer, Luna Moth exploits, ChatGPT declines shutdown command

363

Windows startup failures, Victoria's Secret cyberattack, stolen cookie threat

364

Microsoft updates Update, LexisNexis leak, cyber insurance premiums

365

MathWorks confirms ransomware attack, Adidas has data breach, Dutch intelligence warns of cyberattack

366

Malicious npm codes, Nova Scotia cyberattack, ChatGPT refuses shutdown command

367

CISA's Commvault warning, updated Killnet returns, fake VPN malware

368

Week in Review: Disabling Microsoft Defender, corrupted power inverters, bipartisan training bill

369

Signal shutters Recall, Windows Server vulnerability, pathology lab breach

370

Kettering Health outage, Lumma disrupted, Opexus "major lapse"

371

DOJ investigates Coinbase attack, Dutch cyber-espionage law passes, VanHelsing ransomeware leaked

372

Legal Aid breached, patients at risk from cyberattacks, 23andMe buyer

373

UK retailer update, Microsoft Defender disabler, deepfakes target officials

374

Week in Review: Hackers pump stocks, Microsoft stops screenshots, AI encrypts cybersecurity

375

Coinbase hackers bribe staff, Windows 11 hacked at Pwn2Own, Telegram purges black market group

376

Attack on steel producer, EUVD online, CISA advisory overhaul

377

Radware clarifies patch, retailer data stolen, Alabama suffers cyberattack

378

GlobalX breach, Google settles lawsuits, UK software security guidelines

379

Japan finance hacks, Pearson suffers cyberattack, Teams blocks screen captures

380

Week in Review: Agriculture ransomware increase, Congress challenges CISA cuts, Disney's slacker hacker

381

Cisco IOS XE vulnerability, Pentagon CIO nomination, new SonicWall vulnerability

382

Europol shuts down DDoS-for-hire services, CrowdStrike lays off 500 workers, GOV.UK embraces passkeys

383

Congress challenges CISA cuts, Texas school breached, NSO pays WhatsApp

384

Signal clones, easyjson warning, UK retail hacker

385

Microsoft Authenticator passkeys, StealC malware upgraded, CISA budget slashed

386

Week in Review: Cybersecurity CEO busted, Cloudflare's DDoS increase, FBI's help request

387

UK's Co-op cyberattack, LabHost domains released, NSO WhatsApp damages

388

Scattered Spider extradition, Telecom hack warnings, Impersonation scammer takedown

389

Apple Airplay-Enabled Devices Can Be Hacked, Google tracked 75 zero days, France ties Russian APT28 hackers to 12 cyberattacks

390

Uyghur software malware, DDoS jumps, 4chan back

391

SAP zero-day active, another OAuth exploit, cybersecurity CEO arrested

392

Week in Review: Secure by Design departure, Microsoft's security report, LLMs outrace vulnerabilities

393

Russian army map malware, edge tech attack report, Commvault flaw

394

Blue Shield of California shared private data,FBI IC3 report, Ex-Army sergeant jailed

395

Microsoft Recall updates, Russian orgs deal with networking software updates, SSL.com certificate issuance vulnerability

396

Google OAuth abused, Japan's trading scams, hijacking with Zoom

397

Microsoft Entra lockouts, wine tasting malware, job scam solution

398

Week in Review: CISA workforce cuts, AI slopsquatting risk, CVE funding saga

399

Cyberthreat sharing law renewal, APTs love ClickFix, GoDaddy mutes Zoom

400

MITRE bailout, Krebs exits SentinelOne, Apple fixes zero-days

401

BREAKING: CVE Funding Doesn't Lapse

402

Government CVE funding set to end, 4chan down following an alleged hack, China accuses US of launching advanced cyberattacks

403

Slopsquatting risks, Morocco leak, EC ups US-based staff security

404

CISA cuts planned, Windows 'inetpub' warning, health lab breach

405

Week in Review: Fake ChatGPT passport, Apple appeals UK encryption, Oracle's obsolete servers

406

Krebs probed, Nissan Leaf hack, Typhoon tariff warning

407

OCC major incident, Oracle confirms hack, Smokeloader servers seized

408

New WhatsApp vulnerability, Microsoft patches 125 Windows Vulns, Fake Microsoft Office add-in tools push malware

409

Apple encryption appeal, Xanthorox AI tool, weaponizing CRM

410

NSA Haugh fired, New WinRAR flaw, ChatGPT fake passport

411

Week in Review: Microsoft's account bypass, CrushFTP CVE clash, 23andMe warning

412

Google patches Quick Share, ChatGPT temporary outage, UK Mail breach

413

North Korean IT workers move into Europe, Stripe API skimming unveils theft techniques, Verizon API flaw exposes call history

414

Mozilla Thunderbird takes on Gmail, surge in scans on PAN GlobalProtect VPNs, Microsoft uncovers bootloader vulnerabilities

415

FTC's warning to 23andMe buyer, global phishing threats, Samsung breach

416

Document converter warning, Resurge exploits Ivanti, Blacklock hackers exposed

417

Week in Review: Microsoft Trust abuse, 23andMe bankruptcy risks, NIST's growing backlog

418

JavaScript injection campaign, solar power vulnerabilities, SIM swap lawsuit

419

Ransomware group claims attack on US telecom firm, New ReaderUpdate malware variants target macOS users, Oracle customers claim stolen data

420

EncryptHub exploit, Copilot agents, PETs in government

421

Hundreds of cyber criminals arrested, 23andMe data, Ukraine railway partially taken down

422

Tornado cash sanctions lifted, Russia Cloudflare outage, Microsoft Trust abused

423

Week in Review: Google acquires Wiz, water utility improvements, more GitHub attacks

424

Stalkerware company breach, Microsoft Zero Day, Global Jira attack

425

PA teachers union breach, Infosys settles lawsuit, Sperm bank data theft

426

Google Acquires Wiz, CISA must reinstate terminated employees, Commerce Department bans DeepSeek

427

GitHub repositories targeted, Apache Tomcat RCE exploit, BEC campaigns target Microsoft 365

428

VPN brute-force attacks, water utilities bill, LockBit developer extradited

429

Week in Review: ONCD dominates cyber, undocumented Bluetooth commands, DoJ Google breakup

430

Medusa ransoms infrastructure, Google breakup sought, more Booking.com phishing

431

Microsoft patches 57 security flaws, Sola aims to build the 'Stripe for security', US council wants to counter China threats

432

New CISA head, Ballista botnet, PowerSchool breach report

433

Healthcare breaches expose thousands, X outage, MGM suit dropped

434

ONCD consolidates power, undocumented Bluetooth commands, Japan NTT Breach

435

Week in Review: Hegseth orders stand down, ransomware by snailmail, Mark Cuban's lifeline

436

Company hacked via webcam, Toronto Zoo update, federal contractor obligations

437

Probationary firing protest, hacker names frustration, conversational scam detector

438

Apple vs UK encryption backdoor, VMware bugs allow sandbox escape, JavaGhost targets AWS

439

CISA denies claims, Ransomware group claims attack, Latin America's security crisis

440

Hegseth orders standdown, Microsoft terminates Skype, Cuban offers lifeline

441

Week in Review: Apple encryption, gamification for security, DISA breach

442

Cyber espionage increase, Nakasone cyber warning, PolarEdge exploits Cisco

443

GitHub repos exposed, HaveIBeenPwned adds 244M stolen passwords, Anagram gamifies cybersecurity training

444

DISA breach, Swedish backdoors, Dems looking into system access

445

Australia bans Kaspersky, Government screens hijacked, EU sanctions Lazarus Group

446

$1.5B Bybit hack, UK E2E pulled, PayPal phishing emails

447

Week in Review: More telecoms breached, Chase blocks Zelle, more DeepSeek bans

448

NioCorp BEC scam, Australian IVF breach, SEC's cyber unit

449

Signal conversations hacked, Ransomware group hits infrastructure, Patch Palo Alto flaw

450

OpenSSH flaws enable new attacks, Microsoft prepares for deprecation, Zwipe files for bankruptcy

451

Zservers takedown, Zelle payment blocks, Finastra data breach

452

Device code attacks, phone TOAD solution, more telecoms breached

453

Week in Review: CISA officials furloughed, DeepSeek's weak security, Cairncross as cyberdirector

454

Apple backdoor spat, Sarcoma hits Unimicron, Sault Tribe attacked

455

DOGE hacks America? U.S. adversaries turn to cybercriminals? New LiDAR system ID faces a km away?

456

LockBit host sanctions, DeepSeek security, trojanized KMS

457

Urgent iOS update, CISA officials on administrative leave, newspaper operations impacted

458

DOGE outrage and lawsuit, CISA KEV additions, DeepSeek encryption lapses

459

Week in Review: APTs using Gemini, ransomware payments decrease, abandoned AWS risk

460

Outlook RCE bug, Kimsuky forceCopy malware, Treasury tightens DOGE

461

Spain arrests hacker, FCC Robocallers, Ransoms decrease 35%

462

Meta identifies risky AI systems, Ferret malware joins 'Contagious Interview' campaign, credential theft rises as a target

463

Exploited vulnerabilities rising, ban on DeepSeek, crypto scams make comeback

464

APTs using Gemini, India's Tata cyberattack, new WhatsApp spyware

465

Week in Review: Google vishing response, DeepSeek peak week, ransomware victim costs

466

Blood Center cyberattack, DeepSeek data leak, CISA's future unclear

467

Tenable acquires Vulcan Cyber, Chinese and Iranian hackers are using U.S. AI, US Navy bans use of DeepSeek

468

Ransomware shutdowns, GRU sanctions, Lynx ransomware details

469

Sophisticated voice phishing, Opengrep consortium, DeepSeek suspends registrations

470

CISA Board closed, UnitedHealth numbers rise, Llama's LLM vulnerability

471

Week in Review: Tik Tok's return, Noem's CISA plans, failed startup risks

472

TSA's Pekoske ousted, CISOs' boardroom gain, Cisco vulnerability fix

473

DHS terminates the Cyber Security Review Board, Major cybersecurity vendors' credentials found on Dark Web, Trump pardons creator of Silk Road

474

7-Zip flaw, CERT-UA impersonation, AI EO revoked

475

HPE breach claims, CIA analyst guilty, Hotel data exposed

476

Tik Tok returns, Noem's CISA plans, Avery labels breach

477

Week in Review: IRS PIN available, AI ransomware group, UK ransomware ban

478

Biden EO, Star Blizzard Using WhatsApp, Healthcare Breaches

479

Get Meta out of your life, GoDaddy slapped, TikTok could stay alive

480

Snyk's mysterious package, Baltic cable suspicions, second BeyondTrust vulnerability

481

Telefonica breach, new ransomware group leverages AI, Allstate accused of selling data

482

IRS PIN available, CISA infrastructure enrollments, Winston-Salem cyberattack

483

Week in Review: Flax Typhoon sanctioned, French military ransomware, ICAO breach claims

484

Worldwide Proton outage, Baymark Health breach, Treasury breach update

485

PowerSchool hacked, Cyber Force study, EC gets GDPR fine

486

Cyber Trust label, UK deepfake laws, Treasury attack details

487

Wallet drainer impact, U.S. telecom breach list grows, Moxa router vulnerabilities

488

Flax Typhoon sanctions, Atos dismisses ransomware, German airport outage

489

Week in Review: China hacks Treasury, Chrome extension hijack, tanker sabotages cables

490

China hacks Treasury, Russian tanker sabotage, Lumen ejects Typhoon

491

U.S. soldier arrested, Election interference sanctions, RI data leak

492

Cisco data leak, Microsoft domain transition, stories of the year

493

Cyberhaven extension hacked, ZAGG data breach, Volkswagen cloud leak

494

Week in Review: Microsoft deactivation flaw, BeyondTrust on KEV, LLM generated malware

495

General Dynamics phished, Japan Airlines attack, Addiction Centers breach

496

Disinformation office closes, Pittsburgh Transit cyberattack, Mirai NNVR botnet

497

Government to name witness in encrypted chat sting

498

FlowerStorm attacks Microsoft 365, BeyondTrust on KEV, Ascension Health fallout

499

Week in Review: Data breach impact study, US weighs TP-Link ban, BeyondTrust cyberattack

500

Amazon health malware, BeyondTrust suffers cyberattack, FortiNet wireless vulnerability

501

Interpol romance baiting, TikTok at court, TP-Link investigation

502

CISA cloud directive, Texas Tech breach, Meta GDPR fine

503

Serbian authorities use spyware, Ransomware impacts Rhode Island, ConnectOnCall breach

504

Health chatbot exposed, credit union cyberattack, infrastructure cyberweapon attack

505

Week in Review: Salt Typhoon saga, Microsoft MFA bypass, Yahoo cuts Paranoids

506

Microsoft MFA bypass, cybercrime marketplace takedown, Sophos hacker charged

507

Operation PowerOFF, FCC telco rules, ZLoader returns

508

Telecom security bill, Google's quantum chip, Chinese cyber firm sanctions

509

Romanian energy attack, medical device disruption, Deloitte responds to data theft claims

510

Massachusetts hospital breach, Recall's next deployment, Blue Yonder restoration

511

Week in Review: Cloudflare's lost logs, cyber-unsafe employees, FBI encryption request

512

Feds investigate group 764, Russians hack hackers, AWS PQC migration

513

Phone encryption urged, Pegasus spyware discoveries, Japan I-O Data 0-day

514

Stoli U.S. bankrupts, German Crimenetwork seized, FBI telecom advisory

515

Hydra Market leader sentenced, Pegasus spyware arrest, SpyLoan malware targets millions

516

Ransomware affiliate arrested, UK hospital hacked, Cloudflare's lost logs

517

Advantech WiFi flaws, T-Mobile block attack, UK hospital cyberattack

518

Interpol's African operation, Blue Yonder ransomwared, Snowflake suspect update

519

Microsoft 365 outage update, China's cyber campaign fallout, Fake IT worker scheme

520

DoJ seizes PopeyeTools, IGT suffers cyberattack, Windows update blocked

521

Week in Review: Drinking water threat, CISO liability insurance, Microsoft zero-day event

522

MITRE's danger list, CISO liability insurance, BianLian changes tack

523

Scattered Spider arrest, telcos attacked, Apple exploit

524

Easterly to step down, Maxar discloses breach, Microsoft hacking event

525

EPA warns of critical risks, Four million WordPress sites exposed, Sextortion scams bypass filters

526

T-Mobile confirms breach, AnnieMac data stolen, NewGlove malware threat

527

Week in Review: Most common passwords, Secure-by-design, DNA firm vanishes

528

NordPass popular passwords, Healthcare extortion sentence, China breached telecoms

529

Volt Typhoon's new botnet, China APT hits Tibet, DoD leaker sentenced

530

Giant Food cyberattack, Snowflake suspects indicted, zero-day vulnerability surge

531

Halliburton cyberattack costs, Israel credit card DDoS, Forth announces breach

532

Regulator limits phone use, Hacked police emails, UK seniors scammed

533

Week in Review: Sophos Chinese hacker warning, AI flaws and vulnerabilities

534

Interlock targets healthcare, Canada dissolves TikTok, HP critical flaws

535

Nokia investigates breach claims, Nigerian cybercrime bust, SelectBlinds e-skimmer breach

536

ElizaRAT hits India, Washington court outage, Snowflake hacker arrested

537

Schneider Electric breached again, Russia behind fake video, Ohio's ransomware lawsuits

538

Entra MFA mandatory, German pharma cyberattack, LightSpy iPhone enhancements

539

Week in Review: Deepfake targets Wiz, Black Basta leverages Teams, Russia's Linux plans

540

Peruvian bank heist, Task Manager error, CyberPanel vulnerabilities exploited

541

CISA's plan, North Korea comes to Play, FakeCall's new tricks

542

Five Eyes program, Chinese activity, Russian Linux

543

RedLine and Meta infostealer takedown, Russian-backed malware, French telecom breach

544

Historic Change Healthcare breach, Telcom hacks investigation, Delta sues CrowdStrike

545

Week in Review: Solar Winds fines, Microsoft loses security logs, employee security awareness lacking

546

Qiliin ransomware upgrade, Sharepoint KEV flaw, Rhysida ransoms Easterseals

547

CISA data rules, Fortinet zero-day, UK Cyber Essentials

548

SolarWinds disclosure fines, Zendesk helps Internet Archive, Samsung zero-day

549

U.S. rule on selling sensitive data, Cisco data stolen, Nidec breach

550

Microsoft logs lost, Omni Family breach, Internet Archive Zendesk breach

551

Week in Review: Amazon passkeys usage, healthcare ransomware stats, major cybercrime takedowns

552

Globe Life extortion, hacker USDoD arrested, Anonymous Sudan indicted

553

AI models tested, breaking encryption, Intel security review

554

VW alleged data theft, Finland seizes Sipultie, Calgary library cyberattack

555

Pokémon game developer breached, TrickMo's new variants, Ivanti zero-days exploited

556

Iran exploits Windows, Microsoft deprecates tunnels, NATO cyberexpert swap

557

Week in Review: Neuberger's insurance warning, instant identification sunglasses, Salt Typhoon dangers

558

Coker's Internet Security plan, hurricane scams, Firefox zero day

559

Australia's cybersecurity bill, Qualcomm zero-day, Russia bans Discord

560

GoldenJackal, LiteSpped Cache bug, Ukraine's milCERT

561

Salt Typhoon attack, Cyberattack hits major U.S. water utility, Russia attacked on Putin's birthday

562

Neuberger's Insurance suggestion, Kaspersky PlayStore removal, Detroit suffers cyberattack

563

Week in Review: T-Mobile breach cost, Senate's deepfake scam, Public records flaws

564

Largest DDoS blocked, Adobe Commerce compromise, neural data law

565

Russian cybercriminal arrests, Irish police fined, Rackspace blame game

566

LockBit ties to Evil Corp, public records flaws, ransomware hits Texas hospital

567

T-mobile data breach fines, Iranian hackers charged, Deepfake scam hits U.S. senate

568

Recall redesigned again, Embargo attacks cloud, Dallas suburb cyberattack

569

Week in Review: CrowdStrike exec apologizes, NIST changes password rules, corporate hack-for-hire practices

570

Train station WiFi hack, Mozilla tracking complaint, NIST password changes

571

DragonForce ransomware, Salt Typhoon hits ISPs, ChatGPT SpAIware

572

Kansas water targeted, CrowdStrike apology, MoneyGram goes dark

573

Proposed ban on autonomous vehicles, updated Telegram policy, Necro infects Android devices

574

LinkedIn halts AI training, Ukraine bans Telegram, hack-for-hire lawsuit

575

Week in Review: LinkedIn's AI chicanery, AT&T FCC settlement, Craigslist defense network

576

INC targets healthcare, Providence schools cyberattack, Apple iPads bricked

577

Derailing Raptor Train, Volunteer Civil Cyber Defense, US AI safety summit

578

Exploding pager analysis, construction company vulnerability, cyberattack job loss

579

Intellexa faces new sanctions, London hospitals impact, Apple releases update

580

Fortinet confirms breach, RansomHub extorts Kawasaki, Update: TfL password resets

581

Week in Review: Wisconsin Medicare MOVEit, cop sues data broker, WHOIS vulnerability

582

Lazarus spoofs CapitalOne, Mastercard buys RecordedFuture, WordPress imposes 2FA

583

$20 WHOIS vulnerability, India's Cyber Commandos, Word hits drone makers

584

Slim CD data breach, International sextortion bust, TfL mixed messages

585

Payment processing breach, dark web admins charged, Predator spyware resurges

586

Avis rentals breach, Microsoft disables ActiveX, Wisconsin Medicare breach

587

Week in Review: MFA bypass bust, Airport security SQL, GitHub help malware

588

Planned Parenthood cyberattack, DoJ propaganda takedown, Microchip Technology theft

589

Spyware research, Cicada rebrand, MacroPack malware

590

Halliburton data stolen, Columbus sues researcher, White House protects internet

591

London transport cyberattack, German ATC attack, Sweden's heightened risk

592

Seattle airport woes, aircraft cockpit SQL, North Korea's FudModule

593

DICK'S Sporting Goods cyberattack, Brain Cipher hacked Paris

594

Iran hacking, Labour Party backlog, more Telegram warrants

595

Another MOVEit incident, U.S. Marshals disputes breach, Park'N Fly data swiped

596

SonicWall access flaw, Microsoft security summit, Telegram details

597

Halliburton suffers cyberattack, Telegram CEO arrested, Georgia Tech lawsuit

598

Week in Review: NPD breach update, Hawaii hacker sentenced, Poisoned LLM coders

599

Russia's questionable DDoS, FAA's cybersecurity proposal, Windows Recall reappears

600

Japanese auto security, Feds tap encrypted messages, Microsoft breaks Linux dual-booting

601

Toyota third-party breach, Hawaii registry hack, Iran disrupting campaigns

602

National Public Data breach update, Flaws in macOS apps, FlightTracker configuration issue

603

Entra forces MFA, another AnyDesk heist, Google Pixel vulnerability

604

Week in Review: NIST encryption standards, NPD breach analyzed, Texas sues GM

605

GitHub artifact warning, RansomHub's EDR killer, SolarWinds latest hotfix

606

Gemini AI privacy, AI Risk Repository, Russian phishing

607

FBI shutters Radar, NIST post-quantum standards, 2.7B record leaked

608

U.S. "laptop farm" shut down, Ukranian computers compromised, Trump campaign hacked

609

Iran election interference, AMD SinkClose flaw, ADT break-in

610

Week in Review: CrowdStrike releases Falcon, ransomware as terrorist threat

611

Chameleon malware reappears, Rhysida hospital attack, Blacksuit's $500m tally

612

McLaren hospitals disrupted, CrowdStrike improves processes, Ronin Network hacked

613

Android kernel zero-day, voter portal flaw, ransomware as terrorism

614

CrowdStrike strikes back against Delta, Keytronic loses millions to ransomware, Flaw in Apache OFBiz

615

Software update malware, investors sue CrowdStrike, cybercriminals in prisoner swap

616

Week in Review: CrowdStrike problems grow, record breaking ransom, Argentina's Minority Report

617

Cencora patient breach, OneDrive phishing campaign, Argentina's crime predictions

618

Elections and DDoS, dating apps leak locations, Germany blames China

619

Delta's legal maneuver, Record-breaking ransom, Meta $1.4B settlement

620

HealthEquity data breach, CrowdStrike impact grows, Proofpoint exploit

621

PyPi package targets MacOS, Columbus, Ohio suffers cyber incident, Windows July update problems

622

Week in Review: CrowdStrike developments, LA court shutdown, MGM casino claims win

623

Microsoft Defender exploited, assassin's encryption frustration, NK elite hackers

624

CrowdStrike details, Chrome keeps cookies, BreachForums leaked

625

Wiz deal crumbles, CrowdStrike aftermath, dYdX exchange hack

626

CrowdStrike update, Russian criminals sanctioned, ransomware shuts down courts

627

CrowdStrike hits Cloud PCs, criminals exploit CrowdStrike fix, CISA rebuked

628

Week in Review: Crowdstrike Microsoft outage, AT&T breach implications, CDK pays up

629

Windows outage, Fin7 sells malware, Synnovis blood shortage

630

UK ransomware reporting, Project Oscar, ransoms spike

631

Rite Aid update, AT&T ransom laundered, Hacktivists leak Disney data

632

Wiz acquisition, AT&T paid hacker, Squarespace domain defaults

633

Rite Aid breach, AT&T breach implications, CDK paid ransom

634

Week in Review: AT&T breach, Security regulations attacked, 10 billion passwords stolen

635

PHP vulnerability exploit, Auto Parts breach, dark patterns report

636

Australia targets foreign tech, banks sunset OTP, Veeam vulnerability exploited

637

Russian bot takedown, Burdensome cyber regs, Fujitsu data exposed

638

Billions of stolen passwords, cybersecurity regulations even trickier, Apple removes popular apps

639

Alabama Education breach, OpenAI secrets breach, Florida Health breach

640

Senator pressures CISA, Velvet Ant exploits Cisco, Europol crushes Cobalt

641

Evolve breach update, Patelco cyberattack, LockBit claims Croatian cyberattack

642

14 million Linux systems threatened, Critical patch for Juniper routers, Millions impacted by Prudential breach

643

TeamViewer breach update, HubSpot customer attacks, Cyber insurance problems

644

Week in Review: CDK Blacksuit developments, Criminal nuclear failures. U.S. Kaspersky ban

645

Gas chromatograph vulnerabilities, Cloudflare rebukes Polyfill, Evolve Bank breach

646

Snowblind Android, identity services leaks data, Polyfill.io supply chain attack

647

Julian Assange plea, Latest MOVEit bug, Neiman Marcus data sale

648

Indonesia battles Lockbit, DOJ charges cybercrime group, SEC reports following CDK Global attack

649

BlackSuit behind CDK, Microsoft spoofing bug, Nuclear compliance failures

650

Week in Review: Breach restoration breached, Vermont privacy debate, Qilin blames victims, posts data

651

CDK Global hacked again, LockBit activity, Kraken extorted for bug bounty

652

Nvidia most valuable, Markopolo's meeting infostealer, Medibank MFA blame

653

AMD investigates breach, Qilin demands ransom, Hackers derail Amtrak

654

Snowflake breach escalates, MITRE has a memo for the president, Velvet Ant persists

655

CISA tabletop exercise, Keytronic confirms breach, Linux emoji malware

656

Week in Review: New York Times theft, Club Penguin hack, NHS wants blood

657

Cyberinsurance claims increase, NATO's Russia vigilance, Remcos RAT phishing

658

Life360 faces extortion attempt, White House reports increase in federal attacks, Black Basta exploits zero-day flaw in windows

659

Snowflake hack update, BreachForums down again, Cylance data for sale

660

Rural hospital support, 23andMe investigation, Snowflake breach notices

661

Microsoft resets Recall, LastPass outage update, New York Times breach

662

Week in Review: CopIlot Recall disaster, Ticketmaster hack fallout, ChangeHealthcare notification change

663

FCC moves forward with BGP security, LockBit victims get lifeline, Gitloker attacks target GitHub repositories

664

Psychology vs. threat actors, AI leveling up, Qilin hit Synnovis

665

London hospitals hit by ransomware, Christie's stolen data sold, RansomHub claims Frontier breach

666

Russian criminals unmasked, Background check firm breach, Creds added to HIBP

667

Ticketmaster breached, Ticketek Australia breached, HHS notification change

668

Week in Review: Arc launch sabotaged, Cencora health breach, BlackBasta's oil hit

669

UnitedHealth responsibility, Europol dropper takedown, malware bricks routers

670

New NK hackers, Dutch bank breached, Wayback Machine attacked

671

BreachForums returns, First American data breach, Chinese nationals sanctioned

672

Ransomware uses BitLocker, pharmacy supplier breach, ATM malware threat

673

Arc browser sabotaged, Cencora pharma breach, Albany County breach

674

Week in Review: Healthcare admin breach, China and Rockwell fallout, Military cyber service

675

Chinese hack military, Search engine outage, Mattis speaks out

676

NY Stock Exchange owner fined, $50 million towards hospital security, LockBit no longer reigns supreme

677

UK ransomware reporting, Tech Against Scams, secure Windows 11 defaults

678

Cyber service amendment, GetCaught abuses services, chatbot jailbreaks

679

Grandoreiro Trojan reappears, Kimsuky's new backdoor, More healthcare breaches

680

Week in Review: Okta chief speaks, Volt typhoon threat, FBI siezes BreachForums

681

Nissan NA breach, VMware Pwn2Own fix, GE Ultrasound flaws

682

FBI seized BreachForums, Android threat detection, US AI investment

683

Singing River breach, D-Link exploit released, Google AI spots scams

684

FCC implements new classification, MITRE releases embedded devices framework, World renowned auction house attacked

685

Boeing confirms ransomware, Dell announces breach, Ascension Healthcare attacked

686

Week in Review: Neuberger's operational approach, LockBit is back, Fed's DMARC warning

687

F5 Big-IP warning, UK Army breach, BetterHelp pays out

688

Lockbit hit Wichita, AI export bans, Pathfinder on Intel

689

LockBit ringleader indicted, DocGo cyberattack, UK military data compromise

690

LockBit's website is back, Germany takes action amid alleged Russian attack, Chinese-linked ArcaneDoor targets infrastructure

691

Neuberger proposes improvements, Olympic cybersecurity preparations, Microsoft VPN warning

692

Week in Review: Dropbox Sign breach, Cybersecurity consultant arrested, Ukraine Microsoft hack

693

Goldoon exploits D-Link, CISA GitLab warning, Dropbox Sign breach

694

Chinese disinformation, NCSC AMS, new State Secrets law

695

UnitedHealth Group CEO faces congress, U.S. wireless carriers face majors fine, Marriott backtracks protection claims

696

USPS phishing, UK IoT law, industrial USB attacks

697

Kaiser Permanente breach, DSH Safety Board, Okta stuffing attack

698

Week in Review: GitHub comments abused, networkless" attack techniques, Police bodycam AI reports

699

Google postpones cookies, Brocade vulnerability warning, ICICI card gaffe

700

Chinese keyboard flaws, hacked news story, TikTok on the clock

701

Iranian hackers charged, Siemens fixing Palo bug, Russia hacks water plant

702

TikTok ban update, Sandworm hits Ukraine, North Korean streaming animators

703

RedLine GitHub connection, MITRE Ivanti breach, E-ZPass spoof sites

704

Week in Review: Cisco MFA breach, Bad bots surge, Microsoft mail breach fallout

705

LabHost police bust, Michigan healthcare attack, Windows Fibers vulnerability

706

Water utility threats, GPT-4 hacking, SIM swap solicitation

707

Cisco MFA breach, Bad Bots surge, LockBit 3.0 propagates

708

Threads out in Turkey, Palo Alto backdoor, Microsoft' security overhaul

709

U.S. surveillance reauthorization, Roku breach update, Microsoft breach exposed agencies

710

Week in Review: Government hospital warning, Sisence breach, Financial firms lose $12b

711

Palo Alto patches, CISA's Sisense warning, GitHub repos gamed

712

CISA malware analysis, "hunt forward" missions, Spectre v2

713

Ukraine cyber head suspended, LG TV vulns, Microsoft exposed passwords

714

Cyberattack impacts vet firm, data privacy bill movement, DOJ hack exposes thousands

715

Hospital hack warning, Five Eyes follow-up, NYC municipal hack

716

Week in Review: Five Eyes breach, Microsoft's Chinese hack response, AT&T customer breach

717

Five Eyes breach, cancer center breach, Pixel zero-day flaw

718

Microsoft security failings, NIST NVD backlog, Chrome DBSC beta

719

Cyber incident reporting rule, Google blocks spoofed emails, PandaBuy breach

720

Incognito settlement, hallucinated software, phone protocols vulnerable

721

AT&T data leak, Linux backdoor discovery, DHS phone data policy

722

Week in Review: Spyware boosts zero-days, MFA bombing targets Apple, Facebook snooped Snapchat

723

17 billion records exposed, Treasury FinSec warning, Hot Topic attacks

724

Zero-day rise, SharePoint vulnerability, Facebook sniffs app traffic

725

APT31 targets families, UK newspaper attacked, Apple MFA bombing

726

EU targets tech giants, China bans US tech, US cyber force

727

New Kimsuky technique, KDE Linux warning, Atlassian critical flaws

728

Week in Review: McDonald's outage explained, SIM swap fraud, spyware agreement support

729

Microsoft Server crashes, npm package discrepancies, Nemesis marketplace raided

730

Water task force, Loop DoS attacks, GitHub vulnerability fixer

731

Mid-stream ESports hack, System glitch costs millions, LockBit reemerges with vengeance

732

Change Healthcare payout, FTC probe into Reddit, Japanese tech giant breached

733

McDonald's outage update, Chrome URL protection, Birmingham Alabama outage

734

Week in Review: Russian Microsoft exfiltration, JetBrains Rapid7 feud, Change Healthcare fallout

735

Change Healthcare fallout, Fortinet SQL warning, Yacht company breach

736

Gemini vulnerabilities, NYT-OpenAI drama, GitHub leak report

737

LockBit claims hack, CISA understaffed, US and Russia election concerns

738

Roku forces reset, French agencies targeted, Fintech firm taken offline

739

Microsoft breach update, CISA flags JetBrains, ChatGPT creds sale

740

Week in Review: German Webex gaffe, Google engineer indicted, Cloudflare's AI firewall

741

FlipperZero attacks Teslas, Google engineer indicted, PetSmart attack warning

742

Online fraud hits record losses, states urge Meta to crack down on scammers, Apple issues update for zero-day flaw

743

US cyber strategy update, spyware sanctions, ALPHV exits

744

North Korea semiconductor hacks, ALPHV goes dark, China AI vouchers

745

NSO code verdict, Change Healthcare fallout, law firm breach

746

Week in Review: GenAI BEC explodes, NIST updates framework, vending machine gaffe

747

Cencora pharma breach, Gen-AI explodes BEC, Chinese doorbell warning

748

EO limits PII, Australia's espionage struggle, Lazarus zero-day

749

NIST framework 2.0, Optum linked to BlackCat, ScreenConnect exploitations continue

750

Cyber Security Headlines: SVR tactics, brand spamming, steel giant cyberattack

751

Police taunt LockBit, PayPal's cookie patent, vending machine controversy

752

Week in Review: LockBit gets bitten, airline bot gaffe, exploding car keys

753

LockBit's thwarted upgrade, AT&T's massive outage, Change Healthcare cyberattack

754

LockBit gang doesn't keep its word, the LockBit bounty, White House tackles U.S. maritime threats

755

LockBit update, Signal usernames, NSA Cyber Director retires

756

LockBit disrupted, Cactus leaks Schneider data, ALPHV claims financial attacks

757

Chrome protects home, Zeus mastermind guilty, airline chatbot gaffe

758

Week in Review: LLMs improve cyberattacks, Rhysida gets decrypted, US Blackcat bounty

759

Microsoft zero-day warning, Neuberger addresses Munich, trojan steals faces

760

Trans-Northern breach, malicious LLM usage, massive email leak

761

Prudential data breached, Facebook Marketplace leak, BoA 3rd party breach

762

Repository framework, Romanian healthcare attack, Ivanti backdoored

763

Raspberry Robin warning, Hyundai ransomware attack, Cisco job cuts

764

Week in Review: Volt Typhoon warning, Cloudflare's nation-state breach, $25 million deepfake

765

Volt Typhoon warning, Cisco fixes Expressway, credit union theft

766

CISA collaboration challenges, Iran's cyber efforts, ransomware's $1 billion

767

United front against spyware, spyware to blame for most Google zero-days, insider data breach hits Verizon

768

Spoutible API Leak, Fake IDs at scale, Sudo Windows

769

Cloudflare announces breach, AnyDesk announces breach, Children's hospital attacked

770

Week in Review: Microsoft email explanation, Brazilian banking trojan, Mercedes GitHub error

771

FBI Director's warning, Apple flaw warning, Pentagon supplier breach

772

Volt Typhoon takedown, refusing ransoms, Binance's big leak

773

Mercedes-Benz leak, Juniper Networks patch, ZLoader is back

774

Microsoft takes another hit, Energy giant hit by ransomware, the NSA is secretly buying your data

775

Jenkins patch alert, Cisco flaw alert, Russia's intel wiped

776

Week in Review: TeamViewer still abused, ransomware's hidden costs, X supports passkeys

777

Hewlett Packard breach, exposed API study, Ukraine infrastructure attacks

778

EquiLend offline, AI fueling ransomware, "mother of all breaches"

779

CISA boss swatted, Subway investigates LockBit, Australia sanctions hacker

780

Thailand's data leak, CISA's Ivanti order, security funding drips

781

Russia Microsoft breach, JPMorganChase hacking increase, TeamViewer still abused

782

Week in Review: SEC X breach, pwned highlights leak, Kyivstar attack cost

783

Atlassian Jira outage, iPhone spyware solution, Russia's Europe espionage

784

Drone threats, PixieFail firmware, HIBP dataset

785

Google patches zero-day, Citrix zero-day warning, Phemedrone stealer warning

786

VPN blocks, OpenAI election tools, Calvia ransomware attack

787

Water nonprofit targeted, Denmark energy update, SEC X update

788

Week in Review: Merck settles NotPetya, Google accounts hacked, GitHub abuse rises

789

Ivanti zero-day, Akira targets backups, school data exposed

790

Texas healthcare breach, enormous Brazil leak, Tortilla decryptor released

791

SEC account hack spikes Bitcoin, Mandiant Twitter hijack, China cracks AirDrop

792

google hacked, loanDepot attacked, Netgear compromised

793

Merck settles NotPetya, Pompompurin breaches release, Iranian crypto mistake

794

Week in Review: Hospitals sue cloud, Google settles Incognito, ransomware payment ban

795

Mandiant Twitter hack, breach firm breached, Spanish mobile attacked

796

Ransomware bans, voice cloning contest, slow data exports

797

Google $5 billion suit settled, Orbit Chain loses $80M, FDA cyber agreement

798

Sweden grocer cyberattack, Black Basta flaw, Boston hospital cyberattack

799

German hospital ransomware, Ohio Lottery attacked, First American update

800

Barracuda backdoors, undocumented iPhone hardware, NYT sues OpenAI

801

National Amusements breached, Rockstar game leak, LoanCare parent hacked

802

First American cyberattack, Iran APT campaign, ransomware victims spike

803

HCL investigates ransomware, Agent Tesla returns, JavaScript bank malware

804

BlackCat is back, CSAM in AI data, ESO breach

805

FBI disrupts BlackCat, International operation nabs thousands, Sony data leak

806

Play ransomware warning, QakBot is back, Mr. Cooper hack

807

Box suffers outage, MongoDB suffers breach, States lag in tackling political deepfakes

808

Week in Review: Irish water hack, Joe Sullivan speaks, UK ransomware predictions

809

Hive banker arrested, train bricking accusations, GambleForce SQL campaign

810

UK ransomware report, OAuth abuse, push notification changes

811

Ukraine telco down, Sullivan advocates for CISOs, GAO on AI

812

Internet fragmentation, EU AI Act, Lazarus loves Log4Shell

813

5G network vulnerability, SLAM affects CPUs, CISA Qlik warning

814

Week in Review: Credit Union outages, Roblox, Twitch targeted, Nuclear site breached

815

Aviva cyberattack warning, anti-aircraft data theft, car fleet vulnerability

816

ICANN lookups, push notification spying, Google's Gemini

817

Mexican spyware trial, Breach of ColdFusion vuln, Malicious loan app downloaded 12MM

818

Nuclear site hacked, Iranian water breaches, ChatGPT data leaks

819

Credit Unions outage, Roblox-Twitch extortion, Apple zero-days

820

Week in Review: Okta breach expands, Former Uber CISO speaks, OpenAI's chatbot leak secrets

821

Manufacturing tops extortion, RETVec battles spam, new Zyxel warnings

822

Okta breach expands, JAXA cyberattack, leaky GPTs

823

Ransomware gang busted in Ukraine, North Texas water utility cyberattack, Former Uber CISO breaks 6-year silence

824

International AI agreement, water utility attack, Ukraine cyberattack on Russian aviation

825

London & Zurich, Fidelity National Financial attacks, Royal Family's hospital, Vanderbilt University Med Center attacks, US Nuclear lab and Gulf Air breaches

826

Cyber exec hacked hospital, 'Citrix Bleed' vuln targeted, Binance CEO steps down in $4 billion settlement

827

Healthcare hit with MOVEit, malware uses trig, OpenAI shakeup

828

Clorox CISO departure, BlackCat's SEC complaint, Dudley interim NCD

829

Week in Review: UK Health data shared, SSH keys vulnerable

830

Fortinet Injection bug, Another Samsung breach, government Rhysida warning

831

Microsoft Copilot, YouTube addresses AI uploads, CISA's AI roadmap

832

IPStorm botnet dismantled, Social media giants will face child safety lawsuits, Authorities warn of Royal ransom gang threat

833

Cyber Security Headlines: Australian ports attacked, impacts of AI on terrorist content, Google sees faked Bard ads

834

China bank ransomed, UK health data shared, Boeing data published

835

Week in Review: Okta explains hack, Google Calendar as C2, Selling military data

836

US most breached, ChatGPT gets DDoS, Clop exploits SysAid

837

Shields Ready campaign, AI imagery rules for the election, App Defense Alliance moves to Linux Foundation

838

Marina Bay Sands customer data hacked, Atlassian bug escalated to 10.0 severity, Fake crypto app steals over $700,000

839

Dropper bypasses Google, CISA's zero-day worries, Google Calendar as C2

840

Okta's hack explanation, Looney Tunables exploited, Lazarus likes KandyKorn

841

Week in Review: Cloudflare's power outage, Washington breaches, Wiki-Slack attack

842

Cloudflare's power outage, Apache HelloKitty attempt, Boeing incident continues

843

UK summit pledge to tackle AI risks, 'Kill switch' shuts down Mozi botnet, EU regulator bans Meta's ad practices

844

Canada bans WeChat, no ransom pledge, India's opposition sees state-sponsored attacks

845

AI Executive Order, Russia' VirusTotal, Roaming leaks locations

846

DC Elections breach, LockBit Boeing breach, StripedFly's stealthy sting

847

Week in Review: Okta's compromise issues, Cisco's additional headache, CISA protests cuts

848

iLeakage threatens Apple, CISA's catastrophic cuts, HTTP DDoS surge

849

SMIC advanced chips, Roundcube exploit, Philadelphia email access

850

Cisco IOS XE infections remain high, California sidelines GM's driverless cars, Canada accuse China of 'Spamouflage' campaign

851

Chrome IP Protection, Microsoft Security Copilot, Cisco patches IOS XE

852

Okta system attacked, another Cisco vulnerability, RagnarLocker arrest

853

Week in Review: Water cyber-regs rescinded, Cisco zero-day attacks, Signal debunks zero-day

854

Cops sting RagnarLocker, more 23andMe leaks, Casio discloses breach

855

WinRAR exploitation, Five Eyes warns about China, ServiceNow data exposure

856

Zero-day attacks affect 10,000 Cisco devices, US government warns of Confluence vuln exploitation, D-Link confirms data breach

857

Security camera warnings, Signal denies zero-day, Equifax fined in UK

858

CDW possibly attacked, AvosLocker joint advisory, EPA rescinds water regs

859

Week in Review: Internet-wide zero-day DDoS, 23andMe data breach, curl flaw overhyped

860

Microsoft thwarts Akira, Sullivan appeals conviction, ToddyCat targets telcos

861

Hijacked 404 pages, Chinese attackers target Confluence, Adobe's "icon of transparency"

862

Zero-day fuels largest-ever DDoS attack, 23andMe resets user passwords after data leak, Exchange gets 'better' patch for critical bug

863

Middle East hacktivists, Curl security flaw, HelloKitty improves ransomware

864

MGM ransomware costs, Blackbaud breach settlement, 23andMe breach claims

865

Week in Review: Progress FTPbug, CloudFlare DDoS mistake, Lazarus Meta recruiters

866

Apple zero-day patch, Cisco 911 patch, ICS exposure warning

867

Red Cross hacktivist rules, Looney Tunables hit Linux, CISA violates First Amendment

868

GPU driver exploits, EU strengthens spyware protections, NSA's AI Security Center

869

Progress FTP bug under active exploit, Norway urges Europe-wide Meta data collection ban, KillNet claims attack against Royal Family website

870

Cloudflare's protection bypass, ALPHV healthcare victim, Lazarus Meta recruiter

871

Week in Review: New MOVEIt troubles, fallout from government email breach, H&R Block faces RICO charges

872

Government email damage, Johnson Controls attacked, Google's 5th zero-day

873

GPU pixel-stealing, info-stealing on GitHub, Sony hackers hit NTT Docomo

874

Multiple threat actors lay claim to Sony hack, Philippines health org struggling with ransomware recovery, Flair Airlines leaked user data for months

875

Mixin Network breach, Kia and Hyundai thefts explode, stress testing voting equipment

876

Clarion audio hacked, Egyptian Predator threat, Dallas cyberattack analysis

877

Week in Review: UK and US cyberlaws, Microsoft's bad week, Cisco buys Splunk

878

UK's new cyberlaws, Cisco buys Splunk, Transunion denies breach

879

Canadian airport DDoS, Huawei ships chips, Signal goes post-quantum

880

DHS to simplify cyber incident reporting rules, UK passes Online Safety Bill, PIILOPUOTI marketplace takedown

881

Microsoft leaks AI data, UK CMA AI principles, Germany warns of natural gas terminal attacks

882

Lazarus hit CoinX, Thailand's CardX breach, trucking software attack

883

Week in Review: Las Vegas heists, mental health, Tesla's no-hands option

884

Caesars, MGM attacks, Weather Network down, LockBit dual deployment

885

US asks to not pay ransoms, CISA's open source roadmap, Save the Children ransomware attack

886

MGM Resorts "cybersecurity incident", Hackers access Airbus vendor info, Cryptoqueen's sidekick sentenced

887

Rising infrastructure attacks, Sponsor backdoor, Sri Lanka loses data in attack

888

Fake Telegram apps, Akamai defeats mega-DDoS, Rhysida hospital attacks

889

Week in Review: Microsoft MSA answers, Keystroke monitoring software, G-Man Mudge

890

China's MSA key hack, cyberwar crimes, North Korea targeting Russia

891

CISA reporting rules, LastPass key crack, connected cars fail on privacy

892

CISA hires 'Mudge', Call for Congress to address AI-generated CSAM, Stake.com loses $41 million in crypto

893

PDF MalDoc warning, MinIO storage compromises, Okta helpdesk attacks

894

X collects employment histories, Sandworm Chisel analysis, Callaway breach

895

Gamaredon hits Ukraine, Paramount suffers breach, OpenFire gets swarmed

896

China hacked Japan's NISC, trafficking fuels cyber scams, China approves generative AI

897

FBI dismantles Qakbot operation, University of Michigan cuts internet after cyberattack, Microsoft criticizes UN cybercrime treaty

898

UK flight outage, the malware Big 3, spyware firm breached

899

Cisco fixes flaws, Windows BSOD reappears, FBI Barracuda warning

900

Week in Review: Health hackers evolve, generative AI cyberattacks, NK spooks drills

901

Lazarus exploits ManageEngine, Rockwell ThinManager vulnerabilities, Mississippi hospital attack

902

Tornado Cash indictment, UN cybercrime treaty, Lazarus crypto cashout

903

CISOs' cybersecurity confidence, Healthcare cyberbreach report, Duo outage

904

ChatGPT botnet, Brits tip ransomware targets, Tesla's insider breach

905

NK attacks drills, Android APK malware, space industry warning

906

Week in Review: Ford WiFi vulnerability, LockBit's publication struggle, Government ZeroTrust confidence

907

Cybercriminals finetune AI, Government ZeroTrust confidence, Citrix vulnerability warning

908

LockBit struggles, Google's quantum resilient key, orgs excitedly unprepared for AI

909

LinkedIn accounts hijacked, Chinese spies hack US congressman's email, US watchdog plans to regulate data brokers

910

Moovit bug, Black Hat's NOC, DDoS origins

911

Ford WiFi vulnerability, Government reviews Azure hack, TripAdvisor ransomware

912

Week in Review: Microsoft slapped by Tenable, Tampa Hospital lawsuit, Zoom's AI decision

913

CISA's .NET warning, Compellent exposes VMWare, DEFCON AI challenge

914

AI Cyber Challenge, eavesdropping typing app, Android cellular security

915

Google's Messages app now encrypts chats, Electoral Commission apologizes to UK voters, Banks hit with fines for using chat apps

916

K-12 cyber initiatives, Russian missile contractor breached, LLMs getting worse

917

Tenable smacks Microsoft, hospital ransomware attacks, accurate acoustic spyware

918

Week in Review: IDOR vulnerability warning, Israel refinery cyberattack, spies bemoan AI training

919

Fortinet tops vuln list, malicious Chrome Rilite, more Ivanti issues

920

Australia considers WeChat ban, US company aiding APTs, Veilid coming to DEF CON

921

Musk sues disinformation researchers, Cloud host found facilitating state-backed cyberattacks, UK spy agencies want to relax 'burdensome' AI laws

922

National plan for cyber education, DeFi code exploit, study on cyber insurance

923

Israel refinery cyberattack, TSA pipeline guidelines, CISA's IDOR warning

924

Week in Review: Stolen Microsoft key, government Maximus breach, Clop on clearweb

925

Maximus breach, Ubuntu Linux vulnerabilities, Cardio company cyberattack

926

Cyber exec convicted, SEC disclosure, how the government gets breached

927

TETRA encryption flaws, Zenbleed strikes, Norway's government hit with Ivanti flaw

928

Cyber Security Headlines: Clop leaks on clearweb, EU pushes back on CSA centralization, rising data breach costs

929

Azure hack deepens, JumpCloud is Lazarus, DHL MOVEIt victim

930

Week in Review: Fast acting Gamaredon, WormGPT AI weapon, Microsoft Azure mystery

931

New Redis worm, more ColdFusion confusion, Estée Lauder breached

932

A rise in complex DDoS attacks, Mi6 warns of data traps, Microsoft expands log access

933

US launches IoT security labeling program, Renewable tech could pose electric grid risk, US blacklists two more spyware firms

934

JumpCloud Breach, LockBit attacks Wisconsin, Typos leak military emails

935

Fast-acting Gamaredon, WormGPT improves phishing, Microsoft email mystery

936

Week in Review: Threat actors access government email, USB drive attacks spiking, cloud environment breaches

937

USB malware spikes, Honeywell, Rockwell vulnerabilities, ransomware remains profitable

938

NATO cyber pledges, tax prep data shared, a decrease in crypto crime

939

Silk Road advisor sentenced, HCA Health data breach, Google hit with AI tool training lawsuit

940

JumpCloud resets API keys, Genesis Market for sale, an EU-US data transfer agreement

941

BigHead Windows ransomware, RedEnergy targets utilities. more MOVEIt problems

942

Week in Review: TSMC supplier attacked, cardiac device warning, hospital ransomware increasing

943

Shell MOVEit breach, Pepsi bottler breach, INTERPOL nabs OPERA1ER

944

Japanese port hit with ransomware, EU court orders Meta data changes, White House can't contact social companies

945

BlackCat pushes CobaltStrike, cardiac device warning, unpatched Fortigate firewalls

946

Semiconductor giant attacked, State websites hacked, Russian Telecom infiltrated

947

Week in Review: SolarWinds CISO blamed, Military smartwatch mystery, submarine cable risk

948

SolarWinds CISOs blamed, ThirdEye Windows malware, Government extends canary

949

Federal networks fail CISA rules, US AI chip bans, MOVEit victims grow

950

Over 6,500 arrested since EncroChat hack, Third-party vendor hack exposes American and Southwest data, Microsoft service outage woes continue

951

Monopoly darknet charges, Activision Blizzard DDoS, 5G aircraft deadline

952

CISA adds vulnerabilities, mysterious military smartwatches, more Office problems

953

Week in Review: Microsoft confirms cyberattack, more MOVEit damage, reddit hit with ransomware

954

Canadian breaches increase, new China backdoor, kinetic warfare threat

955

DoJ targets nation-state actors, Apple fixes Triangulation zero-day, Schumer unveils strategy to regulate AI

956

Rorschach ransomware, Australian government data leak, security market outpaces tech

957

Reddit's ransom, UK shuffles cyber chief, Binance reaches SEC deal

958

Microsoft's June cyberattacks, third MOVEit vulnerability, US Clop bounty

959

Week in Review: Microsoft banking warning, undetectable BatCloak malware, more MOVEit vulnerabilities

960

US federal agencies affected by MOVEit breach, Pentagon leak suspect indicted, Suspected LockBit ransomware affiliate nabbed

961

China ESXi exploit, WooCommerce vulnerability, Lockbit ransom report

962

Amazon server outage, Fortinet zero-day exploited, US intelligence buys personal data

963

Fortigate firewall flaw, BatCloak's undetectable malware, Swiss government cyberattacks

964

Faked journalist hack, Strava leaks locations, Reddit API protests

965

Week in Review: Hipponen's malware warning, outwitting hackers, Clop's MoveIt attack

966

PowerDrop targets Defense, YKK zipper attacked, Barracuda urges replacement

967

Google email authentication, SEC data breaches, Clop asks victims to email

968

Microsoft $20M COPPA settlement, Hactivists take credit for Outlook.com outages, SEC accuses Coinbase of breaking US regulations

969

Satellite hacking, Atomic Wallet breach, SEC sues Binance

970

Switzerland Xplain attack, BlackSuit resembles Royal, Microsoft retires Cortana

971

Week in Review: Amazon Ring privacy violations, Gigabyte firmware problems, AI extinction threat

972

Amazon Ring privacy violations, Kaspersky triangulation APT, CyberCommand Hartman

973

More Toyota leaks, Gigabyte firmware issues, Twitter Community Notes for images

974

Experts warn of extinction from AI, Hackers demand $3 million from Scandinavian Airlines, Theranos founder surrenders to 11-year prison term

975

GobRAT targets Linux, RPMSG messages exploited, Augusta Georgia cyberattack

976

Week in Review: Industrial infrastructure threat, BEC attempts on the rise, TikTok's Texas progress

977

GDPR turns 5, GitLab patches vulnerability, Russian industrial malware

978

Google launches GUAC, Barracuda zero-day, campaign targets Kenyan debt

979

TikTok sues Montana, US sanctions orgs behind North Korea's 'illicit' IT worker army, Fake Twitter images spook stock market

980

Meta's Record EU fine, China bans Micron, Tornado Cash hacked

981

HP's bricked printers, PyPi repository attack, Samsung security flaw

982

Week in Review: Supreme Court's 230 ruling, Tech giants hit, TLD phishing vectors

983

Supreme Court's 230 ruling, Montana bans TikTok, Guerilla smartphone malware

984

Lancefly in Asia, Meta EU fine, TLD phishing

985

Inside RaaS, cyber education initiatives, attacking TP-Link routers

986

Philadelphia Inquirer cyber attack, DOT breach exposes federal employee data, 3 million data breach notices sent to SchoolDude users

987

Discord suffers data breach, Toyota data exposed, ABB confirms incident

988

Week in Review: Easterly AI warning, Windows admin alerts, Dallas ransomware fallout

989

Twitter encrypts messages, Microsoft's Outlook patch, Seoul hospital breached

990

Leaked Intel keys, trading security for fps, new phishing-as-a-service tool

991

'Snake' malware network takedown, 'PlugwalkJoe' behind massive 2020 Twitter hack, Justice Department takes down 13 DDoS-for-Hire sites

992

Dallas ransomware, spoofed Facebooks ads, Merck insurance ruling

993

Easterly's AI warning, Ex-Uber Sullivan sentenced, Play's Massachusetts ransomware

994

Week in Review: Ex-Uber Sullivan's sentence, SolarWinds detected earlier, AI godfather quits

995

Royal ransoms Dallas, new PaperCut exploit, CISA's Mirai warning

996

Meta FTC troubles, CISA urges Covered List, malicious HTML attachments

997

Authorities seize 9 crypto exchanges, T-Mobile discloses 2nd data breach of 2023, 'Godfather of AI' quits Google

998

Juice jacking, data breach lawsuits, Telegram ban lifted

999

Veeam backup targeted, DOJ SolarWinds discovery, Americold frozen out

1000

Week in Review: Energy sector 3CX attack, PaperCut pain continues, all-in-one infostealer