Cybersecurity Headlines cover art

All Episodes

Cybersecurity Headlines — 1000 episodes

#
Title
1

Cisco zero-day goes straight to root, BambooToken branches into Linux, CenterPoint breach claim hits 7M+

2

China hits fast-forward on AI security, Hacking Cat shows its claws, Vite servers spill cloud secrets

3

Passkey phishing attack, Anthropic's blockbuster report, airline cybersecurity loophole

4

The Department of Know: Liquid drained, CISA urges change, agentic whistleblowers

5

NetScaler vulnerability exploited, AdaptHealth suffers breach, new Android malware

6

Fortinet auth holes, China distills AI, Mythos vulnerability

7

Florida DMV breach, zero-click WeChat worm, AI whistleblowers

8

PEEP browser backdoors, $320M Liquid exploit, BigBear beats MFA

9

MikroTik routers hijacked, Russian data center threats, UK cybercrime losses surge

10

The Department of Know: Astra launches, CISA cuts programs, McKesson breached

11

Court records breach, Breeze Comet hits Brazil, Aesto records breach

12

153M licenses for sale, Anthropic reverses course, Astra enters the red zone

13

Fable 5.1 released, USPS "untested" IT, Exchange hijack vulnerability

14

Claude sessions hijacked, AI jolts global finance, agents get too many keys

15

ServiceNow vulnerabilities warning, PaperCut zero-day, McKesson healthcare breach

16

The Department of Know: Power plant attack, NSA hacker reunion, Hugging Face hack report

17

Manchester Airports breach, ATF agency breach, clothier Carhartt breach

18

Chinese hackers hit US agencies, Ring locks out police, Boston Scientific feels cyber pain

19

China's hackers pick DeepSeek, OpenAI blocks Russian influence push, webpages mess with local AI

20

SynkLoader throws in the kitchen sink, NIST flags multi-cloud sprawl, ReliaQuest blocks a ShinyHunters swing

21

UK power plant hack, AI zero click, children's hospital breach

22

The Department of Know: Living off Azure, OpenAI's "defender window," and AI-driven PLC attacks

23

CISA MLFlow warning, Siemens PLCs warning, CareCloud confirms breach

24

OpenAI rewrites safety rules, US charges 17 Iranian hackers, Defender crashes fixed

25

AI "mind virus," malware living off Azure, an Irregular post-mortem

26

North Korean IT worker lands federal job, Azure records go up for sale, GitHub goes down

27

SAP Commerce flaw exploited, Mirai boosts capabilities, Shell investigates breach

28

The Department of Know: Ransomware gangs, Copilot apps, and drones phone home

29

Akira's innovative attack, WhatsApp's scam alert, White House TCO strategy

30

UK tackles AI bioweapon risk, DeadLock goes on-chain, evil twin flies home from DEF CON

31

Water systems get cyber lifeline, hackers jump into Polish power plant, local governments knocked offline

32

Sandworm's poisoned VPN, Royal Navy drones phone China, OpenAI loosens cyber limits

33

OpenAI slows Astra, Irregular won't talk, Senate confirms Cassady

34

Faked bug reports, Meta's rogue AI, China investigates Palo Alto

35

AI safety tests reach the internet, Private Relay flaw unmasks IPs, weak telcos invite Salt Typhoon

36

ChainDrop hits npm, Pass-ta-key targets passkeys, AI runs amok in Africa

37

License plate readers as stalking tools, ExfilSquad dumps UK police data, the ever-shrinking patch window

38

UK investments agency breach, CISA water warning, Anthropic rogue threesome

39

The Department of Know: Minnesota water hack, LLM finds encryption flaw, human error hit Hugging Face

40

Analog Devices breach, Copilot AI worm, Teams ransomware vishing

41

OpenAI agent reaches Modal, Minnesota water systems hacked, fake Russian companies steal real money

42

Leaky BMCs, Claude finds encryption flaws, Google's new names

43

Nvidia opens AI security tent, Microsoft adds cyber sprinter to MDASH, Fairlife ransomware spills data

44

Iran infrastructure warning, ChatGPT global outage, self-assembling malware

45

The Department of Know: OpenAI hacks Hugging Face, Chinese LLM ban, Kratos takedown

46

AI agents risk, Upbound Group breach, Dolphin X Stealer

47

OpenAI behind Hugging Face hack, TrickBot tunnels through DNS, Acrobat extension opens WhatsApp

48

Bit2Watt instability, AI models cheat, Chinese LLM ban

49

Hugging Face fights AI hacks, World Cup streamers get red cards, WordPress enters a patching race

50

Fairlife dairy cyberattack, ACR Stealer surge, Abbott Labs incidents

51

The Department of Know: CMMC suspended, ShareFile shutdown, Context Bombing strikes back

52

ClickLock's kill loops, TELEPUZ ClickFix tricks, 1Password's agentic login

53

Zoom's wake-up call, zero-day SonicWall patch, 23andMe's growing breach bill

54

CMMC Phase II suspended, tracking troops in Iran, defenders turn to context bombing

55

Russia's router access routes, MemGhost haunts AI memory, DHS alert got waved off twice

56

Multifunction Windows backdoor, NSA revives TAO, urgent ShareFile warning

57

The Department of Know: France gets ready for quantum, JadePuffer ransomware, UK's Cyber Shield

58

Interpol's global fraud sweep, China's Claude Code flag, old Github account tricks

59

Mexico's big cyber test, Roundcube mailserver snooped on, Cash App found lax

60

UK Cyber Shield, Japanese telco attack, China AI model limits

61

India tax RAT, prompt injection crypto scam, France pushes quantum-safe

62

First AI ransomware, AdaptHealth suffers cyberattack, UK cyber plan delayed

63

The Department of Know: PeopleSoft exploit, Ford brings back gray beards, LLM vetting

64

Consumer security worries, Vought supervises spy budgets, Fortibleed exposes Fortinet

65

Hide My Email bug shows real addresses, Fable 5 gets the greenlight, Microsoft Teams hits back on AI bots

66

Bash hits AI, DHS announces ANCHOR-CI, Aikido buys Root

67

US seizes illegal World Cup domains, WhatsApp offers usernames for phone privacy, $10M reward for Russia-based cyber campaign

68

CISA's Cisco deadline, China's Mythos competitor, Amazon Q flaw

69

ShinyHunters hits MSG, Cal Water confirms no damage, CISA SASE guide

70

Copilot AI attacks cybercrime tools, hackers exploit Cisco zero-day, China's 360 vs Mythos

71

Feds seize scam infrastructure, Dragos unveils AI for OT security, Scattered Spider hackers plead guilty

72

OpenAI takes on Mythos, Klue hits security shops, Five Eyes has eyes on AI

73

Brazil phone alert hack, Prinz Eugen ransomware, Congress deepfake bill

74

The Department of Know: SearchLeak, Check Point zero-day, and pulling the plug on Fable

75

Police clean WordPress sites, Klue OAuth breach, Warner's CISA warnings

76

Anthropic tells G7 to cooperate, Fortinet VPN leak exposes credentials, Crypto Clipper abuses reviews

77

Athena coalition, Estonia's quarantine, Arch hit with malware

78

Anthropic models defended, FBI shuts down massive phishing service, 1Password acquires Apono

79

Feds ban Fable, Maine portal disabled, ShinyHunters exploits Oracle

80

The Department of Know: CISA's quick patch, Miasma attacks, judge finds AI guilty

81

Fortinet patches FortiSandbox, GitHub disables npm scripts, Nottingham University breach

82

Big Patch Tuesday, 'Nightmare Eclipse' drops Windows 0-day, Claude Fable restricted at Microsoft

83

Fable 5, Tchap hacked, CISA priorities

84

Claude & Gemini malware, Mythos sneaky flaws, Instagram AI abuse

85

CISA Palantir Director, EU tech sovereignty, SolarWinds Serv-U flaw

86

The Department of Know: NVD audit, Meta's leaky AI, Microsoft is closer to quantum

87

Chinese cybercrime group, Cisco CM flaw, CISA faces changes

88

Illegal streamers, EU digital sovereignty, cost of a cyber force

89

Russia claims officials' surveillance, Project Glasswing expands, CISA flags two-year-old Oracle flaw

90

Meta AI hands over Instagram access, Dutch police dismantle botnet, RedHat packages backdoored

91

GlobalProtect VPN exploited, ChatGPT share links exploits, Feds criticize NIST

92

The Department of Know: Google's CodeMender, CISA's big leak, Torvalds open-source warning

93

World Cup fraud, US military location targets, IBM and Red Hat go Project Lightwell

94

Glassworm botnet shattered, China overhauls surveillance, Charter confirms ShinyHunters breach

95

Nimbus Manticore, real-time credential harvesting, the 12-hour patch

96

Megalodon infects GitHub repositories, Netherlands seizes 800 servers, Ghost CMS exploited for ClickFix attacks

97

Drupal KEV addition, Underminr revives domain fronting, Canadian KimWolf arrest

98

The Department of Know: Google's CodeMender, CISA's big leak, Torvalds open-source warning

99

Cisco's 10.0 vulnerability, Microsoft email spammed, Chrome vulnerability surge

100

GitHub VS Code extension breach, Shai-Hulud npm package compromise, Huawei/Luxembourg telecom link

101

Microsoft hits Fox Tempest, robotics OS flaw, CISA admins leaks keys

102

Linus Torvalds talks AI bug hunters, 7-Eleven ransom demand, MENA's new cybercrime op

103

Grafan GitHub extortion, Microsoft rejects Azure report, Funnel Builder flaw

104

The Department of Know: GemStuffer attack, AI SBOMs, and AI-created zero-days

105

G7 releases AI SBOM, DELL SupportAssist BSOD, Dirty Frag sequel

106

Foxconn confirms factory attacks, BitLocker zero-day accesses protected drives, MDASH patches Windows flaws

107

Instructure's agreement, Shai Hulud campaign, OpenAI's Daybreak

108

A.I. software flaw hackers, Forza Horizon 6 leak, Linux kernel hit again

109

New cPanel vulnerabilities, JDownloader delivers malware, Schumer pushes DHS

110

The Department of Know: AI "transformation paradox," Copy Fail chaos, hacked lawnmowers

111

PAN-OS RCE exploit , Poland water hacks, Ivanti EPMM flaw

112

Chrome installs AI model on devices, Daemon Tools disk app backdoored, crypto security exodus

113

Video game supply chain attack, Bleeding Llama, US gets early LLM access

114

Instructure discloses breach, DigiCert revokes certificates, Silver Fox targets Indian and Russian orgs

115

Telegram Mini Apps malware, cPanel is Sorry, patch wave warning

116

The Department of Know: GitHub drama, AI deletes production data, Claude Security Beta

117

Critical cPanel zero-day, Swiss Black Axe arrests, HHS data center questions

118

Roblox hackers arrested, Microsoft 0-day falls short, Dubai scam takedown

119

Agent payments, Russian phishing, LeRobot RCE flaw

120

PhantomRPC flaw, Checkmarx GitHub dark web data, PyPI package infostealer

121

ADT data breach, Toronto SMS blasting, pre-Stuxnet malware discovery

122

The Department of Know: Vercel breach, a "Contagious Interview," and ghost breaches

123

Rituals cosmetics breach, FBI iOS flaw fixed, Teams Helpdesk impersonation

124

New OpenAI cyber product, unauthorized Mythos access, insurers to cap LLMjacking payouts

125

CISA lacks Mythos, Lovable's leak by design, YouTube's deepfake detection

126

Vercel breach, ZionSiphon targets water infrastructure, Bluesky DDoS

127

London hospital ransomware legacy, PowerOFF takedown, Microsoft RedSun zero-day

128

The Department of Know: Mythos Mayhem, critical infrastructure targeted, NVD changes

129

Cisco Webex warning, Splunk's Enterprise fix, Git spoof tricks Claude

130

OpenAI's GPT-5.4-Cyber, McGraw Hill blames Salesforce for breach, signed adware disables antivirus

131

Ransomware drama, faked Ledger app, Treasury wants Mythos

132

Claude Mythos Preview's capabilities, Anodot breached companies face extortion, wolfSSL flaw enables forged certificates

133

The Department of Know is Moving to Fridays

134

Adobe patches zero-day, Marimo flaw exploited, Venice flood threat

135

Android API exposure, Acrobat Reader zero-day, Bitcoin Depot cyberattack

136

ChipSoft popped, APT28 updates, CIA cyber espionage elevation

137

Anthropic's Project Glasswing, CISA funding in doubt, routers hijacked for passwords

138

Drift blames exploit on North Korea, GitHub attacks target South Korea, Die Linke breach threatens data leak

139

Department of Know: Axios malware, TeamPCP campaign, New Storm infostealer

140

Malicious npm packages, CISA budget cuts, hackers exploit React2Shell

141

Texas hospital breach, CISA orders NetScaler patch, ISO file RAT warning

142

New iOS patches over DarkSword, FBI: surveillance hack is major incident, Cisco code stolen in Trivy-linked breach

143

Axios poisoned, TeamPCP details, Claude Code leaked

144

macOS Terminal ClickFix attacks, Russian court sentences 'Flint', CareCloud probes data breach

145

Department of Know: Gemini scours dark web, NSA worries about cybersecurity, APIs run loose

146

FBI email theft, Lloyds Bank glitch, API keys running loose

147

Alleged RedLine dev extradited, Red Menshen spies with BPFDoor, is US cybersecurity slipping?

148

Torg Grabber targets crypto, TeamPCP backdoors LiteLLM, GitHub AI bug detection

149

FCC router ban, drone hit AWS, Crunchroll leak

150

DarkSword exploit hits GitHub, Gemini AI agents scour dark web, Trivy supply chain attack expands

151

Department of Know: SaaS apps enable breaches, real-time cyber protection, IoT botnet takedown

152

International botnet takedown, California city ransomed, Azure Monitor phishing

153

Critical SharePoint flaw, real-time cyberattack prevention, CISA's Intune warning

154

DarkSword emerges, "ShieldGuard" dismantled, NK IT worker army rakes in money

155

Energy strategy, scammer accord, font-rendering attack

156

Stryker hospital tools safe, models apply to power AI scams, cybercrime up 245%

157

Department of Know: OpenAI vulnerability scanner, US new cyber strategy, VPN SEO poisoning

158

Royal Bahrain Hospital breach, Canada's Loblaw breached, New York water laws

159

Iran boosts cyberattacks, VENON targets Brazilian banks, England Hockey investigates breach

160

Meta apps offer new scam protection, Google's Wiz acquisition finalized, China curbs state-run OpenClaw use

161

New Cyber Command chief, Russia targets Signal, Codex Security

162

InstallFix spreads fake Claude sites, UNC4899 breaches crypto, UK cyber-fraud crackdown

163

Department of Know: Quantum-Safe certificates, Iranian cyberattack risks, 90 zero-days

164

FBI network breach, GitHub distributes stealer, Hackers abuse .arpa

165

Apple blocks ByteDance, Google's 90 zero-days, Iran backdoors U.S. organizations

166

Possible iPhone-hacking toolkit used by spies, Hacker mass-mails HungerRush extortion emails, Tycoon 2FA phishing platform dismantled

167

Quantum decryption, OpenAI's deal, South Korea leaks crypto keys

168

Chrome quantum-safe certificates, Gemini Live vulnerability, UK warns of Iranian cyberattacks

169

Department of Know: iPhone, iPad and Grok get greenlight, WiFi gets snitched

170

Gottumukkala ousted, Wyden blocks Rudd, Hackers weaponize Claude

171

NATO adopts Apple, Education and Healthcare backdoor, Apex One flaws

172

Google disrupts UNC2814, 3M+ impacted by TriZetto breach, Cisco bug exploited since 2023

173

Hacked in 30 minutes, Claude distillation, DeFi shutdown after attack

174

US healthcare breach affects 140k, experts warn against replicating humans, Shai-Hulud-like worm targets devs

175

Department of Know: Chrome zero-day, exploits, Copilot summarizes confidential emails, Identity abuse problems

176

Arkanix was POC, 600 Fortinet firewalls breach, Russia heightens tension

177

CISA's DELL order, Android AI malware, browsers as weak link

178

Copilot summarizes confidential emails, ShinyHunters targets CarGurus, Texas sues TP-Link

179

Hacking protestors, UK "locks the door," Kenyan politician phone cracked

180

Eurail traveler data for sale, EU Parliament blocks AI features, Washington Hotel discloses ransomware hit

181

Department of Know: VoidLink threatens multi-cloud, flaw threatens Claude extension, China practices on infrastructure

182

Ivanti actor identified, search overviews manipulated, ClickFix leverages Nslookup

183

Hackers abuse Gemini, Apple patches ancient bug, CISA criticizes shutdown

184

Crazy gang abuses employee monitoring tool, Nevada unveils new data classification, Georgia healthcare breach impact grows

185

Google gets EU Wiz approval, Microsoft secures Secure Boot certificates, North Korean hackers target crypto exec

186

UNC3886 targets Singapore telecoms, VoidLink exhibits multi-cloud capabilities and AI code, 135,000+ OpenClaw instances exposed

187

Department of Know: GSA's CMMC requirements, AWS intruder AI heist, Moltbook raises the stakes

188

OpenClaw embraces VirusTotal, CISA EOL Deadline, ransomware hits BridgePay

189

Substack admits breach, Russian attacks target Winter Olympics, GitHub Codespaces enable RCE

190

Ukraine tightens controls on Starlink terminals, VMware ESXi flaw now exploited, SolarWinds Web Help Desk bug under attack

191

Metro bug, more social bans, leaky Moltbook

192

OpenClaw targets ClawHub users, Notepad++ update delivers malware, APT28 attackers abuse Microsoft Office zero-day

193

Department of Know: CISA's cryptography categories, Gottumukkala's ChatGPT gotcha, NTLM says goodbye

194

Police question Coupang CEO, Russia bakery cyberattack, Australian real estate scandal

195

France fines unemployment agency, Teams flags calls, UK pushes deterrence

196

Sandbox flaw exposes n8n instances, Fake Moltbot assistant drops malware, PeckBirdy takes flight for cross-platform attacks

197

US cyber chief uploaded sensitive files into public ChatGPT, Vibe-coded 'Sicarii' ransomware can't be decrypted, WhatsApp account feature combats spyware

198

Microsoft patches Office zero-day vulnerability, Indian users targeted by Blackmoon, Konni targets blockchain developers

199

Department of Know: Davos worries, UK-China tensions, calendar concerns

200

Microsoft Patch problems, Sandworm hits Poland, Dresden Museum cyberattack

201

Multi-stage SharePoint attack, SmarterMail bypass flaw, AI worries Davos

202

Tesla hacked at Pwn2Own Automotive, Everest sitting on Under Armour data? PurpleBravo fake jobs campaign targets IP addresses

203

UK-China forum, Iranian TV hijacked, VoidLink made by AI

204

Gemini prompt injection flaw exposes calendar info, hacker admits to Supreme Court data leak, researchers uncover PDFSIDER malware

205

Department of Know: Easterly helms RSAC, Third party apps report, Self-poisoning AI

206

NSA dual-hat question, third-party report, GhostPoster extension continues

207

Easterly helms RSAC, Windows update problems, Police Copilot gaffe

208

U.S. weighs cyberwarfare options, DeadLock uses smart contracts to hide work, China says stop using US and Israeli cybersecurity software

209

GoBruteforcer targets blockchain projects, Android bug causes volume key issues, Verizon to stop automatic phone unlocks

210

Instagram denies breach, Sweden detains spying suspect, n8n attack steals OAuth tokens

211

Department of Know: Brightspeed investigates breach, Prompt injection woes

212

BreachForums database leaked, Instagram breach worries, UK government exempts self

213

Microsoft enforces admin MFA, Cisco patches ISE, Illinois breaches self

214

ESA confirms new data heist, Ni8mare lets hackers hijack n8n servers, Taiwan blames 'cyber army' for intrusion attempts

215

UK cyber reset, no MFA is a problem, US cyberattacks on display

216

European hospitality blue screen of death, Brightspeed investigates breach, Convicted Bitfinex launderer freed

217

Department of Know: Sedgewick confirms incident, Coupang store credit only, AI needs generators

218

Palo Alto AI warning, Resecurity hack fiasco, Christmas ColdFusion attack

219

NYC Inauguration bans Flipper Zero, UK taxes crypto, Finland seizes ship

220

Unleash Protocol hackers drain millions, DarkSpectre campaigns exposed, Shai-Hulud attack led Trust Wallet heist

221

Silver Fox targets Indian users, Mustang Panda deploys ToneShell, will prompt injection ever be 'solved'?

222

Coupang recovers laptop in river, Trust Wallet reports 2k+ wallets drained, Sax discloses 2024 data breach

223

The Department of Know: year in review and predictions

224

Rainbow Six Siege breach, backup generators for AI, LastPass reverberations

225

Fortinet VPN exploit, Google gmail change, Aflac breach update

226

Scams target MENA region, pen testers accused of blackmail, DDoS protection faces fresh challenges

227

ServiceNow to acquire cybersecurity startup Armis, MacSync Stealer adopts quieter installation, Nissan customer data stolen in Red Hat raid

228

Spotify music library scraped, DDoS disrupts French postal services, Fake delivery sites hit holiday shoppers

229

Department of Know: President signs defense bill, time flies at NIST, Italian ferry malware

230

President's cyber bill, Iranian APT resurfaces, Kimwold DDoS attack

231

Windows RemoteApp problems, ferry malware arrest, Senator's open-source warning

232

FTC orders crypto to pay, New exploit of React2Shell, Ukraine fraud ring take down

233

Rogue NuGet package steals data, Venezuela's PDVSA suffers attack, patched Fortinet flaws exploited

234

US taps private firms in cyber offensive, Microsoft updates cause queuing failures, phishing campaign delivers Phantom Stealer

235

Department of Know: MITRE's weaknesses list, DoD goes postquantum, Coupang fallout

236

MongoDB records exposed, Apple WebKit patches, Coupang culprit identified

237

'DroidLock' demands ransom, Google fixes secret Chrome 0-day, UK fines LastPass over 2022 breach

238

Coupang CEO resigns, hactivists target US infrastructure, Israeli cybersecurity hits record funding

239

Spain arrest over data records, goodbye dark Telegram, scammers poison AI search results

240

Ransomware costs billions, cybercrime leads to real violence, three arrested for hacking tools

241

Department of Know: CISO hiring warning, critical threat actor law, Microsoft Defender outage

242

Palo Alto VPN attacks, NATO cyberdefense exercise, Chinese exploit React2Shell

243

Predator spyware, Russia blocks FaceTime, US cyber strategy coming

244

Record-breaking DDoS attack, React bug puts servers at risk, RansomHouse attack

245

Microsoft Defender outage disrupts threats, Apple resists India's app order, MuddyWater strikes Israel

246

India orders web safety app, arrests over IP camera snooping, Albiriox shows up on dark web

247

Department of Know: Prompt injection problems, California browser law, Hacklore's security myths

248

Asahi ransomware details, California browser law, Windows Teams accelerated

249

Microsoft blocks Entra, AI scammer legislation, ASUS patches AiCloud

250

AWS outage botnet smacks 28 countries, LLMs help malware authors evade detection, Anthropic pressed over Claude espionage

251

CISA warns of app break-ins, StealC V2 spread through blender files, Russian entrepreneur arrested for treason

252

CISA orders feds to patch OIM, Delta Dental incurs breach, Ukraine postal operator systems down

253

Department of Know: Overconfidence new zero-day, FCC torches Salt Typhoon rules, AI uninsurable

254

CrowdStrike insider catch, Spanish airline breach, AI not insurable

255

Sturnus captures encrypted chats, PowerSchool schools blamed, SEC security bill

256

Cloudflare blames database, Crypto heist takedown, WhatsApp flaw exposed billions

257

FCC to torch Salt Typhoon rules, Group claims Danish party website hits, MI5 warns Chinese spies are on LinkedIn

258

Azure hit by DDoS, Kenyan government sites recover, EVALUSION emerges

259

Department of Know: Autonomous AI cyberattack, CISOs back to work, bus kill switches

260

Windows 10 update failure, autonomous AI cyberattack, Feds fumble Cisco patches

261

Cyber laws reprieved, Microsoft screen capture, FBI highlights Akira

262

Mobile blackout for Russian travelers, Windows 11 supports 3rd party passkeys, Synology patches BeeStation flaw

263

Google's remote-wipe weapon, Qilin ransomware activity surges, GootLoader is back

264

Reauthorizing CISA, Electric bus kill switches, GDPR for AI

265

Department of Know: Cybercriminals join forces, SleepyDuck" exploits Ethereum, passwords still awful

266

runC Docker threats, lost iPhone scam, Landfall spyware warning

267

Hackers use Hyper-V, Cisco UCCX flaw, The Louvre's password

268

Google uncovers PROMPFLUX, CISA warns of CentOS Web Panel bug, Threat group targets academics

269

Scattered Spider, LAPSUS$, ShinyHunters join forces, Nikkei data breach impacts 17k people, React Native NPM flaw leads to attacks

270

"SleepyDuck" uses Ethereum, SesameOp abuses OpenAI API, cybercrooks steal physical cargo

271

Department of Know: Azure security pitfalls, retailer cyberattack profits, Aardvark eats bugs

272

Australia BadCandy warning, Cisco firewall attack, Aardvark eats bugs

273

LinkedIn AI opt-out, NSA leadership candidates, Python foundation withdraws

274

LG Uplus confirms breach, Conduent attack impacts 10M+, hackers exploit tools against Ukraine

275

Android malware types like a human, sanctions weaken cyber ecosystems, side-channel extracts Intel, AMD secrets

276

Atlas browser hijacked, Bye, bye Twitter birdie, Dante spyware surfaces

277

Department of Know: Promoting passphrases, questioning international security conferences, gift card hackers

278

Microsoft WSUS vulnerability, LastPass death hoax, Copilot phishing technique

279

Week in Review: AI powered cyberattacks, Chinese time hacked, the 72 hour workweek

280

Jingle Thief exploit, Lazarus targets jobseekers, the 72 hour workweek

281

TP-Link urges updates, MuddyWater espionage campaign, flaw hits Adobe Commerce

282

Russian hackers replace malware with new tools, Windows updates cause login issues, campaign targets high-profile servers

283

AWS outage, NSA hacking accusations, High risk WhatsApp automation

284

Europol dismantles SIM farm, Envoy Air compromised, Everest claims Collins hack

285

Week in Review: Velociraptor pushes LockBit, Hartman loses nomination, Sotheby's cyberattack

286

Sotheby's suffers cyberattack, Cisco "Zero Disco' attacks, Microsoft revokes ransomware certificates

287

MANGO discloses data breach, Jewelbug infiltrates Russian IT network, nation-state behind F5 attack?

288

Legacy Windows protocols expose theft, Fortra admits GoAnywhere defect, Taiwan claims surge in Chinese attacks

289

Salesforce data leak, SimonMed breach, Chipmaker vs. Dutch government

290

Velociraptor pushes LockBit, Spain dismantles crime group, SonicWall SSL VPN breach

291

Week in Review: Crowdsourced ransomware campaign, Windows 10 woes, California opts out

292

Microsoft Azure outage, law firm cyberattack, Russian hacktivists pwned

293

DeepMind fixes vulnerabilities, California offers data opt-out, China-Nexus targets open-source tool

294

North Korean attackers steal crypto. Who's sending UK phones to China? Avnet confirms data breach

295

Unity vulnerability, Oracle zero-day patched, Discord user info exposed

296

ParkMobile breach settlement, UK schools vulnerable, Zimbra calendar attacks

297

Week in Review: Shutdown furloughs CISA, DoD risk framework, Oracle extortion problem

298

Shutdown furloughs CISA, Defender BIOS bug, Motilily dealership cyberattack

299

Breaches set for North America, Outlook bug needs Microsoft support, Air Force admits SharePoint issue

300

China-linked group linked to new malware, 2024 VMware zero-day still exploited, iOS fixes a bevy of glitches

301

Microsoft blocks AI code, Breach hits WestJet, Harrods suffers new data incident

302

Dutch espionage arrest, DOD risk management framework, Oyster malvertising

303

Week in Review: Jaguar Land Rover attack, indirect prompt injections, card farms in NYC

304

Windows 10 extension, teenage Vegas hacker released, Boyd Gaming hacked

305

Suspect arrested over airport attack, DDoS attack hits new record, BRICKSTORM backdoor steals IPs

306

European airports restore services, CISA deals with GeoServer exploit, Jaguar Land Rover extends shutdown

307

EDR-Freeze, DeepMind persuasion, vendors exit ATT&CK

308

European airport cyberattack, SMS celltower scam, GPT4-powered ransomware

309

Week in Review: Student hackers increase, CISA wants CVE, Microsoft called hypocritical

310

Google patches zero-day, Copilot's forced installation, Scattered Spider arrests

311

Insight Partners warns thousands, Scattered Spider feigns retirement, Consumer Reports calls Microsoft 'hypocritical'

312

Cyber programs extended, older Apple devices attacked, chatbots aid phishing scams

313

Android security changes, CISA incentive audit, LLM usage

314

ShinyHunters hits Vietnam, Petya-NotPetya copycat appears, CISA wants CVE

315

Week in Review: Qantas penalizes executives, UK cyberlegislation delayed, SonicWall VPN flaws

316

SonicWall VPM exploits, Fed cyberchief's priorities, U.S spyware investment triples

317

npm update, Cursor Autorun flaw details, Microsoft probe over Ascension hack?

318

Blood center attack details emerge, Electoral Commission recovers, Plex suffers password breach

319

GhostAction campaign, scam centers grow, GPUGate hits IT

320

SVG phishing campaign, Anthropic piracy lawsuit, Qantas penalizes executives

321

Week in Review: Baltimore's expensive gaffe, ransomware takedown outcomes, Workiva Salesforce breach

322

France cookie fines, CISA TP-Link KEV, sports piracy takedown

323

Fintech foils bank heist, NotDoor backdoor, Salesloft-Drift impact continues drifting

324

Google: Gmail is secure, Cloudflare blocks largest DDoS attack, Amazon shutters theft campaign

325

LLM legalese prompts, Maryland Transit cyberattack, hacking into university

326

Velociraptor C2 tunnel, Baltimore's expensive con, ransomware gangs multiply

327

Week in Review: Citrix RCE flaw, steganography revived, major telecom fiasco

328

Malicious nx Packages, AI worker scam, Salt Typhoon attacks Netherlands

329

Salt Typhoon expands, AI-powered ransomware, Anthropic warns of vibe-hacking

330

DOGE puts critical SS data at risk? CISA warns of new exploited flaw, K-Pop stock heist attacker extradited to South Korea

331

Farmers Insurance also hit by Salesforce breach, UpCrypter phishing campaign, Pakistan hits Indian government agencies

332

Malicious Go module, new Mirai botnet, Silk Typhoon exploits cloud

333

Week in Review: Celebrating 5 years of Cyber Security Headlines

334

Apple's urgent update, Scattered Spider sentence, Microsoft seeks SSD feedback

335

Apple zero-day patch, Jailbreaking ChatGPT-5 Pro, 7-year old Cisco Vulnerability exploited

336

UK drops Apple backdoor mandate, Allianz Life breach impacts 1.1M, attack stifles speed cameras

337

Workday breach, post-quantum alliance, Chinese group targets Taiwan

338

Cisco firewall warning, Colt Telecom cyberattack, CISA's OT request

339

Week in Review: ShinyHunters-Scattered Spider merge, DARPA AI prize, Water infrastructure volunteers

340

NFC fraud reappears, Canada government breach, Zoom's critical flaw

341

Court filing system hack explained, PA AG weighs in on attack, Fortinet attacks raise concerns

342

Fortinet SSL VPNs getting hammered, The Netherlands critical infrastructure compromise, Africa the most targeted for cyber attacks

343

North Korean crypto theft, Microsoft rolls out back up, four charged in global scheme

344

DARPA code prize, ScarCruft adds ransomware, Columbia breach tally

345

Week in Review: UK LegalAid collapse, public ransomware approval, Salesforce breach impact

346

Hybrid Exchange flaw, France telecom breach, Dialysis company attack

347

Gemini AI hijacked, Nvidia rejects AI chip backdoors, phishers abuse Microsoft 365

348

PBS confirms data breach, TSMC fires engineers over theft, Cloudflare: Perplexity is web scraping

349

Microsoft & Google lead zero day exploits, Plague Linux malware maintains SSH access, panel to create US Cyber Force

350

Akira's SonicWall zero-day, UK Legal-Aid suffers, Luxembourg 5G attack

351

Week in Review: Surveillance camera vulnerabilities, data sovereignty conundrum, French submarine cyberattack

352

ATM Raspberry Pi breach, Easterly West Point cancellation, Chinese company-hacker link

353

Oh No! Lenovo, French submarine data breach, Russian pharmacy cyberattack

354

Telecom Orange hacked, $2.4M Bitcoin seized from Chaos, Scattered Spider's tactics evolve

355

Russian flights grounded, Naval group breach, dating app exposed

356

NASCAR announces breach, Plankey for CISA, 365 Admin outage

357

Week in Review: Aruba's hardcoded passwords, Clorox wipes supplier's mess, AI tool deletes everything

358

SonicWall releases patches, The Com warning, Compromised Amazon Q extension

359

Goodbye toha, AI deletes live data, Adobe apps advisory activated

360

Sharepoint hack linked to Chinese groups, NGOs targeted with phishing tactics, engineer admits US missile theft

361

SharePoint patched, World Leaks hits Dell, $44 million crypto theft

362

Aruba password warning, SharePoint zero day, Russian vodka maker attacked

363

Week in Review: Pentagon's Chinese Engineers, Gemini's email phish, 20-year-old railroad flaw persists

364

Taiwan semiconductor sector hacked, Salt Typhoon breaches National Guard, Congress ponders Stuxnet

365

Google's AI tool finds bugs, Europol disrupts hacktivist group, SquidLoader targets Hong Kong

366

Chinese engineers at Pentagon, HazyBeacon malware, MITRE framework: AADAPT

367

EU age verification, train brakes vulnerability, Grok-4 jailbroken

368

CitrixBleed2 urgent fix, Gemini email flaw, Louis Vuitton cyberattack

369

Week in Review: ChatGPT URL vulnerability, McDonald's password problem, Perfekt Bluetooth blunder

370

Outlook outage continues, Iranian APT activity, Russian ransomware arrest

371

AMD has CPU meltdown, Mozilla Thunderbird has vulnerabilities, Indian defense sector attacked

372

Rubio Spoofed, RondoDox Botnet, Batavia Spyware

373

Call of Duty game pulled, U.S. military gets cybersecurity boost, Bank employee helped hackers

374

Ingram Micro cyberattack, Telefonica possible breach, LLM URL recommendation problem

375

Undetectable Android spyware is detectable, Hunters ransomware quits, Salt Typhoon dormant

376

Columbia hack, hunger relief ransomware, Qantas breach

377

Google issues Chrome security update, ICC targeted by new attack, Microsoft nixes Authenticator password management

378

New Iran warning, Chinese surveillance company banned, CISA names new executive director

379

Hawaiian Airlines cyberattack, United Natural Foods update, Russia throttles Cloudflare

380

Week in Review: Qilin adds lawyers, Iranian spearphishing campaign, Microsoft Direct Send hack

381

Iranian-backed spearphishing campaign, Microsoft Outlook fix, Glasgow suffers cyberattack

382

Patient death linked to ransomware, BreachForums busted again, nOAuth vulnerability

383

70 Microsoft Exchange servers targeted, Apple, Netflix, Microsoft sites hacked, data breach hits Aflac

384

Retaliatory Iranian cyberattacks, steel giant confirms breach, ransomware hits healthcare system again

385

CMS retailer report, Aflac investigates activity, Russian dairy cyberattack

386

Week in Review: ClickFake deepfake scam, Krispy Kreme breach, NIST ZTA guidance

387

Cisco, Atlassian fixes, Ryuk member arrested, Viasat Typhoon attack

388

Episource Breach, Predatory Sparrow strikes again, Swiss banks data leak

389

Hackers exploit Langflow flaw, TP-Link routers still vulnerable, Russia detects SuperCard malware attacks

390

2FA middleman, Archetyp seized, Zoomcar hacked

391

Washington Post hacked, WestJet suffers cyberattack, Texas DoT breach

392

Week in Review: Google and Cloudflare outages, Copilot Zero-Click, Cloudflare's Claude flair

393

Microsoft Entra attack, Thursday's Cloud outages, Mark Green retires

394

CoPilot zero-click, Operation Secure, FIN6 targets recruiters

395

40K IoT cameras stream secrets to browsers, Marks & Spencer taking online orders post-cyberattack, PoC Code escalates Roundcube Vuln threat

396

Cybersecurity News: Brute forcing Google accounts, Guardian's Secure Messaging, UNFI cyberattack

397

Cyber executive order, Neuberger's infrastructure warning, Mirai botnet warning

398

Week in Review: Senators' CSRB bid, Deepfakes dodge detection, Microsoft-CrowdStrike collaboration

399

Kettering data published, Reddit sues Anthropic, North Face breached

400

Russian bomber maker popped, vishing targets Salesforce, MS helps out governments

401

Meta, Yandex take heat on browsing identifiers, Acreed malware makes gains, HPE warns of critical auth bypass

402

MS and CrowdStrike partner, Qualcomm bugs exploited, new CISA cut details

403

Cisco IOS XE exploit, Senators' CSRB request, Australia ransomware law

404

Week in Review: Chrome password replacer, Luna Moth exploits, ChatGPT declines shutdown command

405

Windows startup failures, Victoria's Secret cyberattack, stolen cookie threat

406

Microsoft updates Update, LexisNexis leak, cyber insurance premiums

407

MathWorks confirms ransomware attack, Adidas has data breach, Dutch intelligence warns of cyberattack

408

Malicious npm codes, Nova Scotia cyberattack, ChatGPT refuses shutdown command

409

CISA's Commvault warning, updated Killnet returns, fake VPN malware

410

Week in Review: Disabling Microsoft Defender, corrupted power inverters, bipartisan training bill

411

Signal shutters Recall, Windows Server vulnerability, pathology lab breach

412

Kettering Health outage, Lumma disrupted, Opexus "major lapse"

413

DOJ investigates Coinbase attack, Dutch cyber-espionage law passes, VanHelsing ransomeware leaked

414

Legal Aid breached, patients at risk from cyberattacks, 23andMe buyer

415

UK retailer update, Microsoft Defender disabler, deepfakes target officials

416

Week in Review: Hackers pump stocks, Microsoft stops screenshots, AI encrypts cybersecurity

417

Coinbase hackers bribe staff, Windows 11 hacked at Pwn2Own, Telegram purges black market group

418

Attack on steel producer, EUVD online, CISA advisory overhaul

419

Radware clarifies patch, retailer data stolen, Alabama suffers cyberattack

420

GlobalX breach, Google settles lawsuits, UK software security guidelines

421

Japan finance hacks, Pearson suffers cyberattack, Teams blocks screen captures

422

Week in Review: Agriculture ransomware increase, Congress challenges CISA cuts, Disney's slacker hacker

423

Cisco IOS XE vulnerability, Pentagon CIO nomination, new SonicWall vulnerability

424

Europol shuts down DDoS-for-hire services, CrowdStrike lays off 500 workers, GOV.UK embraces passkeys

425

Congress challenges CISA cuts, Texas school breached, NSO pays WhatsApp

426

Signal clones, easyjson warning, UK retail hacker

427

Microsoft Authenticator passkeys, StealC malware upgraded, CISA budget slashed

428

Week in Review: Cybersecurity CEO busted, Cloudflare's DDoS increase, FBI's help request

429

UK's Co-op cyberattack, LabHost domains released, NSO WhatsApp damages

430

Scattered Spider extradition, Telecom hack warnings, Impersonation scammer takedown

431

Apple Airplay-Enabled Devices Can Be Hacked, Google tracked 75 zero days, France ties Russian APT28 hackers to 12 cyberattacks

432

Uyghur software malware, DDoS jumps, 4chan back

433

SAP zero-day active, another OAuth exploit, cybersecurity CEO arrested

434

Week in Review: Secure by Design departure, Microsoft's security report, LLMs outrace vulnerabilities

435

Russian army map malware, edge tech attack report, Commvault flaw

436

Blue Shield of California shared private data,FBI IC3 report, Ex-Army sergeant jailed

437

Microsoft Recall updates, Russian orgs deal with networking software updates, SSL.com certificate issuance vulnerability

438

Google OAuth abused, Japan's trading scams, hijacking with Zoom

439

Microsoft Entra lockouts, wine tasting malware, job scam solution

440

Week in Review: CISA workforce cuts, AI slopsquatting risk, CVE funding saga

441

Cyberthreat sharing law renewal, APTs love ClickFix, GoDaddy mutes Zoom

442

MITRE bailout, Krebs exits SentinelOne, Apple fixes zero-days

443

BREAKING: CVE Funding Doesn't Lapse

444

Government CVE funding set to end, 4chan down following an alleged hack, China accuses US of launching advanced cyberattacks

445

Slopsquatting risks, Morocco leak, EC ups US-based staff security

446

CISA cuts planned, Windows 'inetpub' warning, health lab breach

447

Week in Review: Fake ChatGPT passport, Apple appeals UK encryption, Oracle's obsolete servers

448

Krebs probed, Nissan Leaf hack, Typhoon tariff warning

449

OCC major incident, Oracle confirms hack, Smokeloader servers seized

450

New WhatsApp vulnerability, Microsoft patches 125 Windows Vulns, Fake Microsoft Office add-in tools push malware

451

Apple encryption appeal, Xanthorox AI tool, weaponizing CRM

452

NSA Haugh fired, New WinRAR flaw, ChatGPT fake passport

453

Week in Review: Microsoft's account bypass, CrushFTP CVE clash, 23andMe warning

454

Google patches Quick Share, ChatGPT temporary outage, UK Mail breach

455

North Korean IT workers move into Europe, Stripe API skimming unveils theft techniques, Verizon API flaw exposes call history

456

Mozilla Thunderbird takes on Gmail, surge in scans on PAN GlobalProtect VPNs, Microsoft uncovers bootloader vulnerabilities

457

FTC's warning to 23andMe buyer, global phishing threats, Samsung breach

458

Document converter warning, Resurge exploits Ivanti, Blacklock hackers exposed

459

Week in Review: Microsoft Trust abuse, 23andMe bankruptcy risks, NIST's growing backlog

460

JavaScript injection campaign, solar power vulnerabilities, SIM swap lawsuit

461

Ransomware group claims attack on US telecom firm, New ReaderUpdate malware variants target macOS users, Oracle customers claim stolen data

462

EncryptHub exploit, Copilot agents, PETs in government

463

Hundreds of cyber criminals arrested, 23andMe data, Ukraine railway partially taken down

464

Tornado cash sanctions lifted, Russia Cloudflare outage, Microsoft Trust abused

465

Week in Review: Google acquires Wiz, water utility improvements, more GitHub attacks

466

Stalkerware company breach, Microsoft Zero Day, Global Jira attack

467

PA teachers union breach, Infosys settles lawsuit, Sperm bank data theft

468

Google Acquires Wiz, CISA must reinstate terminated employees, Commerce Department bans DeepSeek

469

GitHub repositories targeted, Apache Tomcat RCE exploit, BEC campaigns target Microsoft 365

470

VPN brute-force attacks, water utilities bill, LockBit developer extradited

471

Week in Review: ONCD dominates cyber, undocumented Bluetooth commands, DoJ Google breakup

472

Medusa ransoms infrastructure, Google breakup sought, more Booking.com phishing

473

Microsoft patches 57 security flaws, Sola aims to build the 'Stripe for security', US council wants to counter China threats

474

New CISA head, Ballista botnet, PowerSchool breach report

475

Healthcare breaches expose thousands, X outage, MGM suit dropped

476

ONCD consolidates power, undocumented Bluetooth commands, Japan NTT Breach

477

Week in Review: Hegseth orders stand down, ransomware by snailmail, Mark Cuban's lifeline

478

Company hacked via webcam, Toronto Zoo update, federal contractor obligations

479

Probationary firing protest, hacker names frustration, conversational scam detector

480

Apple vs UK encryption backdoor, VMware bugs allow sandbox escape, JavaGhost targets AWS

481

CISA denies claims, Ransomware group claims attack, Latin America's security crisis

482

Hegseth orders standdown, Microsoft terminates Skype, Cuban offers lifeline

483

Week in Review: Apple encryption, gamification for security, DISA breach

484

Cyber espionage increase, Nakasone cyber warning, PolarEdge exploits Cisco

485

GitHub repos exposed, HaveIBeenPwned adds 244M stolen passwords, Anagram gamifies cybersecurity training

486

DISA breach, Swedish backdoors, Dems looking into system access

487

Australia bans Kaspersky, Government screens hijacked, EU sanctions Lazarus Group

488

$1.5B Bybit hack, UK E2E pulled, PayPal phishing emails

489

Week in Review: More telecoms breached, Chase blocks Zelle, more DeepSeek bans

490

NioCorp BEC scam, Australian IVF breach, SEC's cyber unit

491

Signal conversations hacked, Ransomware group hits infrastructure, Patch Palo Alto flaw

492

OpenSSH flaws enable new attacks, Microsoft prepares for deprecation, Zwipe files for bankruptcy

493

Zservers takedown, Zelle payment blocks, Finastra data breach

494

Device code attacks, phone TOAD solution, more telecoms breached

495

Week in Review: CISA officials furloughed, DeepSeek's weak security, Cairncross as cyberdirector

496

Apple backdoor spat, Sarcoma hits Unimicron, Sault Tribe attacked

497

DOGE hacks America? U.S. adversaries turn to cybercriminals? New LiDAR system ID faces a km away?

498

LockBit host sanctions, DeepSeek security, trojanized KMS

499

Urgent iOS update, CISA officials on administrative leave, newspaper operations impacted

500

DOGE outrage and lawsuit, CISA KEV additions, DeepSeek encryption lapses

501

Week in Review: APTs using Gemini, ransomware payments decrease, abandoned AWS risk

502

Outlook RCE bug, Kimsuky forceCopy malware, Treasury tightens DOGE

503

Spain arrests hacker, FCC Robocallers, Ransoms decrease 35%

504

Meta identifies risky AI systems, Ferret malware joins 'Contagious Interview' campaign, credential theft rises as a target

505

Exploited vulnerabilities rising, ban on DeepSeek, crypto scams make comeback

506

APTs using Gemini, India's Tata cyberattack, new WhatsApp spyware

507

Week in Review: Google vishing response, DeepSeek peak week, ransomware victim costs

508

Blood Center cyberattack, DeepSeek data leak, CISA's future unclear

509

Tenable acquires Vulcan Cyber, Chinese and Iranian hackers are using U.S. AI, US Navy bans use of DeepSeek

510

Ransomware shutdowns, GRU sanctions, Lynx ransomware details

511

Sophisticated voice phishing, Opengrep consortium, DeepSeek suspends registrations

512

CISA Board closed, UnitedHealth numbers rise, Llama's LLM vulnerability

513

Week in Review: Tik Tok's return, Noem's CISA plans, failed startup risks

514

TSA's Pekoske ousted, CISOs' boardroom gain, Cisco vulnerability fix

515

DHS terminates the Cyber Security Review Board, Major cybersecurity vendors' credentials found on Dark Web, Trump pardons creator of Silk Road

516

7-Zip flaw, CERT-UA impersonation, AI EO revoked

517

HPE breach claims, CIA analyst guilty, Hotel data exposed

518

Tik Tok returns, Noem's CISA plans, Avery labels breach

519

Week in Review: IRS PIN available, AI ransomware group, UK ransomware ban

520

Biden EO, Star Blizzard Using WhatsApp, Healthcare Breaches

521

Get Meta out of your life, GoDaddy slapped, TikTok could stay alive

522

Snyk's mysterious package, Baltic cable suspicions, second BeyondTrust vulnerability

523

Telefonica breach, new ransomware group leverages AI, Allstate accused of selling data

524

IRS PIN available, CISA infrastructure enrollments, Winston-Salem cyberattack

525

Week in Review: Flax Typhoon sanctioned, French military ransomware, ICAO breach claims

526

Worldwide Proton outage, Baymark Health breach, Treasury breach update

527

PowerSchool hacked, Cyber Force study, EC gets GDPR fine

528

Cyber Trust label, UK deepfake laws, Treasury attack details

529

Wallet drainer impact, U.S. telecom breach list grows, Moxa router vulnerabilities

530

Flax Typhoon sanctions, Atos dismisses ransomware, German airport outage

531

Week in Review: China hacks Treasury, Chrome extension hijack, tanker sabotages cables

532

China hacks Treasury, Russian tanker sabotage, Lumen ejects Typhoon

533

U.S. soldier arrested, Election interference sanctions, RI data leak

534

Cisco data leak, Microsoft domain transition, stories of the year

535

Cyberhaven extension hacked, ZAGG data breach, Volkswagen cloud leak

536

Week in Review: Microsoft deactivation flaw, BeyondTrust on KEV, LLM generated malware

537

General Dynamics phished, Japan Airlines attack, Addiction Centers breach

538

Disinformation office closes, Pittsburgh Transit cyberattack, Mirai NNVR botnet

539

Government to name witness in encrypted chat sting

540

FlowerStorm attacks Microsoft 365, BeyondTrust on KEV, Ascension Health fallout

541

Week in Review: Data breach impact study, US weighs TP-Link ban, BeyondTrust cyberattack

542

Amazon health malware, BeyondTrust suffers cyberattack, FortiNet wireless vulnerability

543

Interpol romance baiting, TikTok at court, TP-Link investigation

544

CISA cloud directive, Texas Tech breach, Meta GDPR fine

545

Serbian authorities use spyware, Ransomware impacts Rhode Island, ConnectOnCall breach

546

Health chatbot exposed, credit union cyberattack, infrastructure cyberweapon attack

547

Week in Review: Salt Typhoon saga, Microsoft MFA bypass, Yahoo cuts Paranoids

548

Microsoft MFA bypass, cybercrime marketplace takedown, Sophos hacker charged

549

Operation PowerOFF, FCC telco rules, ZLoader returns

550

Telecom security bill, Google's quantum chip, Chinese cyber firm sanctions

551

Romanian energy attack, medical device disruption, Deloitte responds to data theft claims

552

Massachusetts hospital breach, Recall's next deployment, Blue Yonder restoration

553

Week in Review: Cloudflare's lost logs, cyber-unsafe employees, FBI encryption request

554

Feds investigate group 764, Russians hack hackers, AWS PQC migration

555

Phone encryption urged, Pegasus spyware discoveries, Japan I-O Data 0-day

556

Stoli U.S. bankrupts, German Crimenetwork seized, FBI telecom advisory

557

Hydra Market leader sentenced, Pegasus spyware arrest, SpyLoan malware targets millions

558

Ransomware affiliate arrested, UK hospital hacked, Cloudflare's lost logs

559

Advantech WiFi flaws, T-Mobile block attack, UK hospital cyberattack

560

Interpol's African operation, Blue Yonder ransomwared, Snowflake suspect update

561

Microsoft 365 outage update, China's cyber campaign fallout, Fake IT worker scheme

562

DoJ seizes PopeyeTools, IGT suffers cyberattack, Windows update blocked

563

Week in Review: Drinking water threat, CISO liability insurance, Microsoft zero-day event

564

MITRE's danger list, CISO liability insurance, BianLian changes tack

565

Scattered Spider arrest, telcos attacked, Apple exploit

566

Easterly to step down, Maxar discloses breach, Microsoft hacking event

567

EPA warns of critical risks, Four million WordPress sites exposed, Sextortion scams bypass filters

568

T-Mobile confirms breach, AnnieMac data stolen, NewGlove malware threat

569

Week in Review: Most common passwords, Secure-by-design, DNA firm vanishes

570

NordPass popular passwords, Healthcare extortion sentence, China breached telecoms

571

Volt Typhoon's new botnet, China APT hits Tibet, DoD leaker sentenced

572

Giant Food cyberattack, Snowflake suspects indicted, zero-day vulnerability surge

573

Halliburton cyberattack costs, Israel credit card DDoS, Forth announces breach

574

Regulator limits phone use, Hacked police emails, UK seniors scammed

575

Week in Review: Sophos Chinese hacker warning, AI flaws and vulnerabilities

576

Interlock targets healthcare, Canada dissolves TikTok, HP critical flaws

577

Nokia investigates breach claims, Nigerian cybercrime bust, SelectBlinds e-skimmer breach

578

ElizaRAT hits India, Washington court outage, Snowflake hacker arrested

579

Schneider Electric breached again, Russia behind fake video, Ohio's ransomware lawsuits

580

Entra MFA mandatory, German pharma cyberattack, LightSpy iPhone enhancements

581

Week in Review: Deepfake targets Wiz, Black Basta leverages Teams, Russia's Linux plans

582

Peruvian bank heist, Task Manager error, CyberPanel vulnerabilities exploited

583

CISA's plan, North Korea comes to Play, FakeCall's new tricks

584

Five Eyes program, Chinese activity, Russian Linux

585

RedLine and Meta infostealer takedown, Russian-backed malware, French telecom breach

586

Historic Change Healthcare breach, Telcom hacks investigation, Delta sues CrowdStrike

587

Week in Review: Solar Winds fines, Microsoft loses security logs, employee security awareness lacking

588

Qiliin ransomware upgrade, Sharepoint KEV flaw, Rhysida ransoms Easterseals

589

CISA data rules, Fortinet zero-day, UK Cyber Essentials

590

SolarWinds disclosure fines, Zendesk helps Internet Archive, Samsung zero-day

591

U.S. rule on selling sensitive data, Cisco data stolen, Nidec breach

592

Microsoft logs lost, Omni Family breach, Internet Archive Zendesk breach

593

Week in Review: Amazon passkeys usage, healthcare ransomware stats, major cybercrime takedowns

594

Globe Life extortion, hacker USDoD arrested, Anonymous Sudan indicted

595

AI models tested, breaking encryption, Intel security review

596

VW alleged data theft, Finland seizes Sipultie, Calgary library cyberattack

597

Pokémon game developer breached, TrickMo's new variants, Ivanti zero-days exploited

598

Iran exploits Windows, Microsoft deprecates tunnels, NATO cyberexpert swap

599

Week in Review: Neuberger's insurance warning, instant identification sunglasses, Salt Typhoon dangers

600

Coker's Internet Security plan, hurricane scams, Firefox zero day

601

Australia's cybersecurity bill, Qualcomm zero-day, Russia bans Discord

602

GoldenJackal, LiteSpped Cache bug, Ukraine's milCERT

603

Salt Typhoon attack, Cyberattack hits major U.S. water utility, Russia attacked on Putin's birthday

604

Neuberger's Insurance suggestion, Kaspersky PlayStore removal, Detroit suffers cyberattack

605

Week in Review: T-Mobile breach cost, Senate's deepfake scam, Public records flaws

606

Largest DDoS blocked, Adobe Commerce compromise, neural data law

607

Russian cybercriminal arrests, Irish police fined, Rackspace blame game

608

LockBit ties to Evil Corp, public records flaws, ransomware hits Texas hospital

609

T-mobile data breach fines, Iranian hackers charged, Deepfake scam hits U.S. senate

610

Recall redesigned again, Embargo attacks cloud, Dallas suburb cyberattack

611

Week in Review: CrowdStrike exec apologizes, NIST changes password rules, corporate hack-for-hire practices

612

Train station WiFi hack, Mozilla tracking complaint, NIST password changes

613

DragonForce ransomware, Salt Typhoon hits ISPs, ChatGPT SpAIware

614

Kansas water targeted, CrowdStrike apology, MoneyGram goes dark

615

Proposed ban on autonomous vehicles, updated Telegram policy, Necro infects Android devices

616

LinkedIn halts AI training, Ukraine bans Telegram, hack-for-hire lawsuit

617

Week in Review: LinkedIn's AI chicanery, AT&T FCC settlement, Craigslist defense network

618

INC targets healthcare, Providence schools cyberattack, Apple iPads bricked

619

Derailing Raptor Train, Volunteer Civil Cyber Defense, US AI safety summit

620

Exploding pager analysis, construction company vulnerability, cyberattack job loss

621

Intellexa faces new sanctions, London hospitals impact, Apple releases update

622

Fortinet confirms breach, RansomHub extorts Kawasaki, Update: TfL password resets

623

Week in Review: Wisconsin Medicare MOVEit, cop sues data broker, WHOIS vulnerability

624

Lazarus spoofs CapitalOne, Mastercard buys RecordedFuture, WordPress imposes 2FA

625

$20 WHOIS vulnerability, India's Cyber Commandos, Word hits drone makers

626

Slim CD data breach, International sextortion bust, TfL mixed messages

627

Payment processing breach, dark web admins charged, Predator spyware resurges

628

Avis rentals breach, Microsoft disables ActiveX, Wisconsin Medicare breach

629

Week in Review: MFA bypass bust, Airport security SQL, GitHub help malware

630

Planned Parenthood cyberattack, DoJ propaganda takedown, Microchip Technology theft

631

Spyware research, Cicada rebrand, MacroPack malware

632

Halliburton data stolen, Columbus sues researcher, White House protects internet

633

London transport cyberattack, German ATC attack, Sweden's heightened risk

634

Seattle airport woes, aircraft cockpit SQL, North Korea's FudModule

635

DICK'S Sporting Goods cyberattack, Brain Cipher hacked Paris

636

Iran hacking, Labour Party backlog, more Telegram warrants

637

Another MOVEit incident, U.S. Marshals disputes breach, Park'N Fly data swiped

638

SonicWall access flaw, Microsoft security summit, Telegram details

639

Halliburton suffers cyberattack, Telegram CEO arrested, Georgia Tech lawsuit

640

Week in Review: NPD breach update, Hawaii hacker sentenced, Poisoned LLM coders

641

Russia's questionable DDoS, FAA's cybersecurity proposal, Windows Recall reappears

642

Japanese auto security, Feds tap encrypted messages, Microsoft breaks Linux dual-booting

643

Toyota third-party breach, Hawaii registry hack, Iran disrupting campaigns

644

National Public Data breach update, Flaws in macOS apps, FlightTracker configuration issue

645

Entra forces MFA, another AnyDesk heist, Google Pixel vulnerability

646

Week in Review: NIST encryption standards, NPD breach analyzed, Texas sues GM

647

GitHub artifact warning, RansomHub's EDR killer, SolarWinds latest hotfix

648

Gemini AI privacy, AI Risk Repository, Russian phishing

649

FBI shutters Radar, NIST post-quantum standards, 2.7B record leaked

650

U.S. "laptop farm" shut down, Ukranian computers compromised, Trump campaign hacked

651

Iran election interference, AMD SinkClose flaw, ADT break-in

652

Week in Review: CrowdStrike releases Falcon, ransomware as terrorist threat

653

Chameleon malware reappears, Rhysida hospital attack, Blacksuit's $500m tally

654

McLaren hospitals disrupted, CrowdStrike improves processes, Ronin Network hacked

655

Android kernel zero-day, voter portal flaw, ransomware as terrorism

656

CrowdStrike strikes back against Delta, Keytronic loses millions to ransomware, Flaw in Apache OFBiz

657

Software update malware, investors sue CrowdStrike, cybercriminals in prisoner swap

658

Week in Review: CrowdStrike problems grow, record breaking ransom, Argentina's Minority Report

659

Cencora patient breach, OneDrive phishing campaign, Argentina's crime predictions

660

Elections and DDoS, dating apps leak locations, Germany blames China

661

Delta's legal maneuver, Record-breaking ransom, Meta $1.4B settlement

662

HealthEquity data breach, CrowdStrike impact grows, Proofpoint exploit

663

PyPi package targets MacOS, Columbus, Ohio suffers cyber incident, Windows July update problems

664

Week in Review: CrowdStrike developments, LA court shutdown, MGM casino claims win

665

Microsoft Defender exploited, assassin's encryption frustration, NK elite hackers

666

CrowdStrike details, Chrome keeps cookies, BreachForums leaked

667

Wiz deal crumbles, CrowdStrike aftermath, dYdX exchange hack

668

CrowdStrike update, Russian criminals sanctioned, ransomware shuts down courts

669

CrowdStrike hits Cloud PCs, criminals exploit CrowdStrike fix, CISA rebuked

670

Week in Review: Crowdstrike Microsoft outage, AT&T breach implications, CDK pays up

671

Windows outage, Fin7 sells malware, Synnovis blood shortage

672

UK ransomware reporting, Project Oscar, ransoms spike

673

Rite Aid update, AT&T ransom laundered, Hacktivists leak Disney data

674

Wiz acquisition, AT&T paid hacker, Squarespace domain defaults

675

Rite Aid breach, AT&T breach implications, CDK paid ransom

676

Week in Review: AT&T breach, Security regulations attacked, 10 billion passwords stolen

677

PHP vulnerability exploit, Auto Parts breach, dark patterns report

678

Australia targets foreign tech, banks sunset OTP, Veeam vulnerability exploited

679

Russian bot takedown, Burdensome cyber regs, Fujitsu data exposed

680

Billions of stolen passwords, cybersecurity regulations even trickier, Apple removes popular apps

681

Alabama Education breach, OpenAI secrets breach, Florida Health breach

682

Senator pressures CISA, Velvet Ant exploits Cisco, Europol crushes Cobalt

683

Evolve breach update, Patelco cyberattack, LockBit claims Croatian cyberattack

684

14 million Linux systems threatened, Critical patch for Juniper routers, Millions impacted by Prudential breach

685

TeamViewer breach update, HubSpot customer attacks, Cyber insurance problems

686

Week in Review: CDK Blacksuit developments, Criminal nuclear failures. U.S. Kaspersky ban

687

Gas chromatograph vulnerabilities, Cloudflare rebukes Polyfill, Evolve Bank breach

688

Snowblind Android, identity services leaks data, Polyfill.io supply chain attack

689

Julian Assange plea, Latest MOVEit bug, Neiman Marcus data sale

690

Indonesia battles Lockbit, DOJ charges cybercrime group, SEC reports following CDK Global attack

691

BlackSuit behind CDK, Microsoft spoofing bug, Nuclear compliance failures

692

Week in Review: Breach restoration breached, Vermont privacy debate, Qilin blames victims, posts data

693

CDK Global hacked again, LockBit activity, Kraken extorted for bug bounty

694

Nvidia most valuable, Markopolo's meeting infostealer, Medibank MFA blame

695

AMD investigates breach, Qilin demands ransom, Hackers derail Amtrak

696

Snowflake breach escalates, MITRE has a memo for the president, Velvet Ant persists

697

CISA tabletop exercise, Keytronic confirms breach, Linux emoji malware

698

Week in Review: New York Times theft, Club Penguin hack, NHS wants blood

699

Cyberinsurance claims increase, NATO's Russia vigilance, Remcos RAT phishing

700

Life360 faces extortion attempt, White House reports increase in federal attacks, Black Basta exploits zero-day flaw in windows

701

Snowflake hack update, BreachForums down again, Cylance data for sale

702

Rural hospital support, 23andMe investigation, Snowflake breach notices

703

Microsoft resets Recall, LastPass outage update, New York Times breach

704

Week in Review: CopIlot Recall disaster, Ticketmaster hack fallout, ChangeHealthcare notification change

705

FCC moves forward with BGP security, LockBit victims get lifeline, Gitloker attacks target GitHub repositories

706

Psychology vs. threat actors, AI leveling up, Qilin hit Synnovis

707

London hospitals hit by ransomware, Christie's stolen data sold, RansomHub claims Frontier breach

708

Russian criminals unmasked, Background check firm breach, Creds added to HIBP

709

Ticketmaster breached, Ticketek Australia breached, HHS notification change

710

Week in Review: Arc launch sabotaged, Cencora health breach, BlackBasta's oil hit

711

UnitedHealth responsibility, Europol dropper takedown, malware bricks routers

712

New NK hackers, Dutch bank breached, Wayback Machine attacked

713

BreachForums returns, First American data breach, Chinese nationals sanctioned

714

Ransomware uses BitLocker, pharmacy supplier breach, ATM malware threat

715

Arc browser sabotaged, Cencora pharma breach, Albany County breach

716

Week in Review: Healthcare admin breach, China and Rockwell fallout, Military cyber service

717

Chinese hack military, Search engine outage, Mattis speaks out

718

NY Stock Exchange owner fined, $50 million towards hospital security, LockBit no longer reigns supreme

719

UK ransomware reporting, Tech Against Scams, secure Windows 11 defaults

720

Cyber service amendment, GetCaught abuses services, chatbot jailbreaks

721

Grandoreiro Trojan reappears, Kimsuky's new backdoor, More healthcare breaches

722

Week in Review: Okta chief speaks, Volt typhoon threat, FBI siezes BreachForums

723

Nissan NA breach, VMware Pwn2Own fix, GE Ultrasound flaws

724

FBI seized BreachForums, Android threat detection, US AI investment

725

Singing River breach, D-Link exploit released, Google AI spots scams

726

FCC implements new classification, MITRE releases embedded devices framework, World renowned auction house attacked

727

Boeing confirms ransomware, Dell announces breach, Ascension Healthcare attacked

728

Week in Review: Neuberger's operational approach, LockBit is back, Fed's DMARC warning

729

F5 Big-IP warning, UK Army breach, BetterHelp pays out

730

Lockbit hit Wichita, AI export bans, Pathfinder on Intel

731

LockBit ringleader indicted, DocGo cyberattack, UK military data compromise

732

LockBit's website is back, Germany takes action amid alleged Russian attack, Chinese-linked ArcaneDoor targets infrastructure

733

Neuberger proposes improvements, Olympic cybersecurity preparations, Microsoft VPN warning

734

Week in Review: Dropbox Sign breach, Cybersecurity consultant arrested, Ukraine Microsoft hack

735

Goldoon exploits D-Link, CISA GitLab warning, Dropbox Sign breach

736

Chinese disinformation, NCSC AMS, new State Secrets law

737

UnitedHealth Group CEO faces congress, U.S. wireless carriers face majors fine, Marriott backtracks protection claims

738

USPS phishing, UK IoT law, industrial USB attacks

739

Kaiser Permanente breach, DSH Safety Board, Okta stuffing attack

740

Week in Review: GitHub comments abused, networkless" attack techniques, Police bodycam AI reports

741

Google postpones cookies, Brocade vulnerability warning, ICICI card gaffe

742

Chinese keyboard flaws, hacked news story, TikTok on the clock

743

Iranian hackers charged, Siemens fixing Palo bug, Russia hacks water plant

744

TikTok ban update, Sandworm hits Ukraine, North Korean streaming animators

745

RedLine GitHub connection, MITRE Ivanti breach, E-ZPass spoof sites

746

Week in Review: Cisco MFA breach, Bad bots surge, Microsoft mail breach fallout

747

LabHost police bust, Michigan healthcare attack, Windows Fibers vulnerability

748

Water utility threats, GPT-4 hacking, SIM swap solicitation

749

Cisco MFA breach, Bad Bots surge, LockBit 3.0 propagates

750

Threads out in Turkey, Palo Alto backdoor, Microsoft' security overhaul

751

U.S. surveillance reauthorization, Roku breach update, Microsoft breach exposed agencies

752

Week in Review: Government hospital warning, Sisence breach, Financial firms lose $12b

753

Palo Alto patches, CISA's Sisense warning, GitHub repos gamed

754

CISA malware analysis, "hunt forward" missions, Spectre v2

755

Ukraine cyber head suspended, LG TV vulns, Microsoft exposed passwords

756

Cyberattack impacts vet firm, data privacy bill movement, DOJ hack exposes thousands

757

Hospital hack warning, Five Eyes follow-up, NYC municipal hack

758

Week in Review: Five Eyes breach, Microsoft's Chinese hack response, AT&T customer breach

759

Five Eyes breach, cancer center breach, Pixel zero-day flaw

760

Microsoft security failings, NIST NVD backlog, Chrome DBSC beta

761

Cyber incident reporting rule, Google blocks spoofed emails, PandaBuy breach

762

Incognito settlement, hallucinated software, phone protocols vulnerable

763

AT&T data leak, Linux backdoor discovery, DHS phone data policy

764

Week in Review: Spyware boosts zero-days, MFA bombing targets Apple, Facebook snooped Snapchat

765

17 billion records exposed, Treasury FinSec warning, Hot Topic attacks

766

Zero-day rise, SharePoint vulnerability, Facebook sniffs app traffic

767

APT31 targets families, UK newspaper attacked, Apple MFA bombing

768

EU targets tech giants, China bans US tech, US cyber force

769

New Kimsuky technique, KDE Linux warning, Atlassian critical flaws

770

Week in Review: McDonald's outage explained, SIM swap fraud, spyware agreement support

771

Microsoft Server crashes, npm package discrepancies, Nemesis marketplace raided

772

Water task force, Loop DoS attacks, GitHub vulnerability fixer

773

Mid-stream ESports hack, System glitch costs millions, LockBit reemerges with vengeance

774

Change Healthcare payout, FTC probe into Reddit, Japanese tech giant breached

775

McDonald's outage update, Chrome URL protection, Birmingham Alabama outage

776

Week in Review: Russian Microsoft exfiltration, JetBrains Rapid7 feud, Change Healthcare fallout

777

Change Healthcare fallout, Fortinet SQL warning, Yacht company breach

778

Gemini vulnerabilities, NYT-OpenAI drama, GitHub leak report

779

LockBit claims hack, CISA understaffed, US and Russia election concerns

780

Roku forces reset, French agencies targeted, Fintech firm taken offline

781

Microsoft breach update, CISA flags JetBrains, ChatGPT creds sale

782

Week in Review: German Webex gaffe, Google engineer indicted, Cloudflare's AI firewall

783

FlipperZero attacks Teslas, Google engineer indicted, PetSmart attack warning

784

Online fraud hits record losses, states urge Meta to crack down on scammers, Apple issues update for zero-day flaw

785

US cyber strategy update, spyware sanctions, ALPHV exits

786

North Korea semiconductor hacks, ALPHV goes dark, China AI vouchers

787

NSO code verdict, Change Healthcare fallout, law firm breach

788

Week in Review: GenAI BEC explodes, NIST updates framework, vending machine gaffe

789

Cencora pharma breach, Gen-AI explodes BEC, Chinese doorbell warning

790

EO limits PII, Australia's espionage struggle, Lazarus zero-day

791

NIST framework 2.0, Optum linked to BlackCat, ScreenConnect exploitations continue

792

Cyber Security Headlines: SVR tactics, brand spamming, steel giant cyberattack

793

Police taunt LockBit, PayPal's cookie patent, vending machine controversy

794

Week in Review: LockBit gets bitten, airline bot gaffe, exploding car keys

795

LockBit's thwarted upgrade, AT&T's massive outage, Change Healthcare cyberattack

796

LockBit gang doesn't keep its word, the LockBit bounty, White House tackles U.S. maritime threats

797

LockBit update, Signal usernames, NSA Cyber Director retires

798

LockBit disrupted, Cactus leaks Schneider data, ALPHV claims financial attacks

799

Chrome protects home, Zeus mastermind guilty, airline chatbot gaffe

800

Week in Review: LLMs improve cyberattacks, Rhysida gets decrypted, US Blackcat bounty

801

Microsoft zero-day warning, Neuberger addresses Munich, trojan steals faces

802

Trans-Northern breach, malicious LLM usage, massive email leak

803

Prudential data breached, Facebook Marketplace leak, BoA 3rd party breach

804

Repository framework, Romanian healthcare attack, Ivanti backdoored

805

Raspberry Robin warning, Hyundai ransomware attack, Cisco job cuts

806

Week in Review: Volt Typhoon warning, Cloudflare's nation-state breach, $25 million deepfake

807

Volt Typhoon warning, Cisco fixes Expressway, credit union theft

808

CISA collaboration challenges, Iran's cyber efforts, ransomware's $1 billion

809

United front against spyware, spyware to blame for most Google zero-days, insider data breach hits Verizon

810

Spoutible API Leak, Fake IDs at scale, Sudo Windows

811

Cloudflare announces breach, AnyDesk announces breach, Children's hospital attacked

812

Week in Review: Microsoft email explanation, Brazilian banking trojan, Mercedes GitHub error

813

FBI Director's warning, Apple flaw warning, Pentagon supplier breach

814

Volt Typhoon takedown, refusing ransoms, Binance's big leak

815

Mercedes-Benz leak, Juniper Networks patch, ZLoader is back

816

Microsoft takes another hit, Energy giant hit by ransomware, the NSA is secretly buying your data

817

Jenkins patch alert, Cisco flaw alert, Russia's intel wiped

818

Week in Review: TeamViewer still abused, ransomware's hidden costs, X supports passkeys

819

Hewlett Packard breach, exposed API study, Ukraine infrastructure attacks

820

EquiLend offline, AI fueling ransomware, "mother of all breaches"

821

CISA boss swatted, Subway investigates LockBit, Australia sanctions hacker

822

Thailand's data leak, CISA's Ivanti order, security funding drips

823

Russia Microsoft breach, JPMorganChase hacking increase, TeamViewer still abused

824

Week in Review: SEC X breach, pwned highlights leak, Kyivstar attack cost

825

Atlassian Jira outage, iPhone spyware solution, Russia's Europe espionage

826

Drone threats, PixieFail firmware, HIBP dataset

827

Google patches zero-day, Citrix zero-day warning, Phemedrone stealer warning

828

VPN blocks, OpenAI election tools, Calvia ransomware attack

829

Water nonprofit targeted, Denmark energy update, SEC X update

830

Week in Review: Merck settles NotPetya, Google accounts hacked, GitHub abuse rises

831

Ivanti zero-day, Akira targets backups, school data exposed

832

Texas healthcare breach, enormous Brazil leak, Tortilla decryptor released

833

SEC account hack spikes Bitcoin, Mandiant Twitter hijack, China cracks AirDrop

834

google hacked, loanDepot attacked, Netgear compromised

835

Merck settles NotPetya, Pompompurin breaches release, Iranian crypto mistake

836

Week in Review: Hospitals sue cloud, Google settles Incognito, ransomware payment ban

837

Mandiant Twitter hack, breach firm breached, Spanish mobile attacked

838

Ransomware bans, voice cloning contest, slow data exports

839

Google $5 billion suit settled, Orbit Chain loses $80M, FDA cyber agreement

840

Sweden grocer cyberattack, Black Basta flaw, Boston hospital cyberattack

841

German hospital ransomware, Ohio Lottery attacked, First American update

842

Barracuda backdoors, undocumented iPhone hardware, NYT sues OpenAI

843

National Amusements breached, Rockstar game leak, LoanCare parent hacked

844

First American cyberattack, Iran APT campaign, ransomware victims spike

845

HCL investigates ransomware, Agent Tesla returns, JavaScript bank malware

846

BlackCat is back, CSAM in AI data, ESO breach

847

FBI disrupts BlackCat, International operation nabs thousands, Sony data leak

848

Play ransomware warning, QakBot is back, Mr. Cooper hack

849

Box suffers outage, MongoDB suffers breach, States lag in tackling political deepfakes

850

Week in Review: Irish water hack, Joe Sullivan speaks, UK ransomware predictions

851

Hive banker arrested, train bricking accusations, GambleForce SQL campaign

852

UK ransomware report, OAuth abuse, push notification changes

853

Ukraine telco down, Sullivan advocates for CISOs, GAO on AI

854

Internet fragmentation, EU AI Act, Lazarus loves Log4Shell

855

5G network vulnerability, SLAM affects CPUs, CISA Qlik warning

856

Week in Review: Credit Union outages, Roblox, Twitch targeted, Nuclear site breached

857

Aviva cyberattack warning, anti-aircraft data theft, car fleet vulnerability

858

ICANN lookups, push notification spying, Google's Gemini

859

Mexican spyware trial, Breach of ColdFusion vuln, Malicious loan app downloaded 12MM

860

Nuclear site hacked, Iranian water breaches, ChatGPT data leaks

861

Credit Unions outage, Roblox-Twitch extortion, Apple zero-days

862

Week in Review: Okta breach expands, Former Uber CISO speaks, OpenAI's chatbot leak secrets

863

Manufacturing tops extortion, RETVec battles spam, new Zyxel warnings

864

Okta breach expands, JAXA cyberattack, leaky GPTs

865

Ransomware gang busted in Ukraine, North Texas water utility cyberattack, Former Uber CISO breaks 6-year silence

866

International AI agreement, water utility attack, Ukraine cyberattack on Russian aviation

867

London & Zurich, Fidelity National Financial attacks, Royal Family's hospital, Vanderbilt University Med Center attacks, US Nuclear lab and Gulf Air breaches

868

Cyber exec hacked hospital, 'Citrix Bleed' vuln targeted, Binance CEO steps down in $4 billion settlement

869

Healthcare hit with MOVEit, malware uses trig, OpenAI shakeup

870

Clorox CISO departure, BlackCat's SEC complaint, Dudley interim NCD

871

Week in Review: UK Health data shared, SSH keys vulnerable

872

Fortinet Injection bug, Another Samsung breach, government Rhysida warning

873

Microsoft Copilot, YouTube addresses AI uploads, CISA's AI roadmap

874

IPStorm botnet dismantled, Social media giants will face child safety lawsuits, Authorities warn of Royal ransom gang threat

875

Cyber Security Headlines: Australian ports attacked, impacts of AI on terrorist content, Google sees faked Bard ads

876

China bank ransomed, UK health data shared, Boeing data published

877

Week in Review: Okta explains hack, Google Calendar as C2, Selling military data

878

US most breached, ChatGPT gets DDoS, Clop exploits SysAid

879

Shields Ready campaign, AI imagery rules for the election, App Defense Alliance moves to Linux Foundation

880

Marina Bay Sands customer data hacked, Atlassian bug escalated to 10.0 severity, Fake crypto app steals over $700,000

881

Dropper bypasses Google, CISA's zero-day worries, Google Calendar as C2

882

Okta's hack explanation, Looney Tunables exploited, Lazarus likes KandyKorn

883

Week in Review: Cloudflare's power outage, Washington breaches, Wiki-Slack attack

884

Cloudflare's power outage, Apache HelloKitty attempt, Boeing incident continues

885

UK summit pledge to tackle AI risks, 'Kill switch' shuts down Mozi botnet, EU regulator bans Meta's ad practices

886

Canada bans WeChat, no ransom pledge, India's opposition sees state-sponsored attacks

887

AI Executive Order, Russia' VirusTotal, Roaming leaks locations

888

DC Elections breach, LockBit Boeing breach, StripedFly's stealthy sting

889

Week in Review: Okta's compromise issues, Cisco's additional headache, CISA protests cuts

890

iLeakage threatens Apple, CISA's catastrophic cuts, HTTP DDoS surge

891

SMIC advanced chips, Roundcube exploit, Philadelphia email access

892

Cisco IOS XE infections remain high, California sidelines GM's driverless cars, Canada accuse China of 'Spamouflage' campaign

893

Chrome IP Protection, Microsoft Security Copilot, Cisco patches IOS XE

894

Okta system attacked, another Cisco vulnerability, RagnarLocker arrest

895

Week in Review: Water cyber-regs rescinded, Cisco zero-day attacks, Signal debunks zero-day

896

Cops sting RagnarLocker, more 23andMe leaks, Casio discloses breach

897

WinRAR exploitation, Five Eyes warns about China, ServiceNow data exposure

898

Zero-day attacks affect 10,000 Cisco devices, US government warns of Confluence vuln exploitation, D-Link confirms data breach

899

Security camera warnings, Signal denies zero-day, Equifax fined in UK

900

CDW possibly attacked, AvosLocker joint advisory, EPA rescinds water regs

901

Week in Review: Internet-wide zero-day DDoS, 23andMe data breach, curl flaw overhyped

902

Microsoft thwarts Akira, Sullivan appeals conviction, ToddyCat targets telcos

903

Hijacked 404 pages, Chinese attackers target Confluence, Adobe's "icon of transparency"

904

Zero-day fuels largest-ever DDoS attack, 23andMe resets user passwords after data leak, Exchange gets 'better' patch for critical bug

905

Middle East hacktivists, Curl security flaw, HelloKitty improves ransomware

906

MGM ransomware costs, Blackbaud breach settlement, 23andMe breach claims

907

Week in Review: Progress FTPbug, CloudFlare DDoS mistake, Lazarus Meta recruiters

908

Apple zero-day patch, Cisco 911 patch, ICS exposure warning

909

Red Cross hacktivist rules, Looney Tunables hit Linux, CISA violates First Amendment

910

GPU driver exploits, EU strengthens spyware protections, NSA's AI Security Center

911

Progress FTP bug under active exploit, Norway urges Europe-wide Meta data collection ban, KillNet claims attack against Royal Family website

912

Cloudflare's protection bypass, ALPHV healthcare victim, Lazarus Meta recruiter

913

Week in Review: New MOVEIt troubles, fallout from government email breach, H&R Block faces RICO charges

914

Government email damage, Johnson Controls attacked, Google's 5th zero-day

915

GPU pixel-stealing, info-stealing on GitHub, Sony hackers hit NTT Docomo

916

Multiple threat actors lay claim to Sony hack, Philippines health org struggling with ransomware recovery, Flair Airlines leaked user data for months

917

Mixin Network breach, Kia and Hyundai thefts explode, stress testing voting equipment

918

Clarion audio hacked, Egyptian Predator threat, Dallas cyberattack analysis

919

Week in Review: UK and US cyberlaws, Microsoft's bad week, Cisco buys Splunk

920

UK's new cyberlaws, Cisco buys Splunk, Transunion denies breach

921

Canadian airport DDoS, Huawei ships chips, Signal goes post-quantum

922

DHS to simplify cyber incident reporting rules, UK passes Online Safety Bill, PIILOPUOTI marketplace takedown

923

Microsoft leaks AI data, UK CMA AI principles, Germany warns of natural gas terminal attacks

924

Lazarus hit CoinX, Thailand's CardX breach, trucking software attack

925

Week in Review: Las Vegas heists, mental health, Tesla's no-hands option

926

Caesars, MGM attacks, Weather Network down, LockBit dual deployment

927

US asks to not pay ransoms, CISA's open source roadmap, Save the Children ransomware attack

928

MGM Resorts "cybersecurity incident", Hackers access Airbus vendor info, Cryptoqueen's sidekick sentenced

929

Rising infrastructure attacks, Sponsor backdoor, Sri Lanka loses data in attack

930

Fake Telegram apps, Akamai defeats mega-DDoS, Rhysida hospital attacks

931

Week in Review: Microsoft MSA answers, Keystroke monitoring software, G-Man Mudge

932

China's MSA key hack, cyberwar crimes, North Korea targeting Russia

933

CISA reporting rules, LastPass key crack, connected cars fail on privacy

934

CISA hires 'Mudge', Call for Congress to address AI-generated CSAM, Stake.com loses $41 million in crypto

935

PDF MalDoc warning, MinIO storage compromises, Okta helpdesk attacks

936

X collects employment histories, Sandworm Chisel analysis, Callaway breach

937

Gamaredon hits Ukraine, Paramount suffers breach, OpenFire gets swarmed

938

China hacked Japan's NISC, trafficking fuels cyber scams, China approves generative AI

939

FBI dismantles Qakbot operation, University of Michigan cuts internet after cyberattack, Microsoft criticizes UN cybercrime treaty

940

UK flight outage, the malware Big 3, spyware firm breached

941

Cisco fixes flaws, Windows BSOD reappears, FBI Barracuda warning

942

Week in Review: Health hackers evolve, generative AI cyberattacks, NK spooks drills

943

Lazarus exploits ManageEngine, Rockwell ThinManager vulnerabilities, Mississippi hospital attack

944

Tornado Cash indictment, UN cybercrime treaty, Lazarus crypto cashout

945

CISOs' cybersecurity confidence, Healthcare cyberbreach report, Duo outage

946

ChatGPT botnet, Brits tip ransomware targets, Tesla's insider breach

947

NK attacks drills, Android APK malware, space industry warning

948

Week in Review: Ford WiFi vulnerability, LockBit's publication struggle, Government ZeroTrust confidence

949

Cybercriminals finetune AI, Government ZeroTrust confidence, Citrix vulnerability warning

950

LockBit struggles, Google's quantum resilient key, orgs excitedly unprepared for AI

951

LinkedIn accounts hijacked, Chinese spies hack US congressman's email, US watchdog plans to regulate data brokers

952

Moovit bug, Black Hat's NOC, DDoS origins

953

Ford WiFi vulnerability, Government reviews Azure hack, TripAdvisor ransomware

954

Week in Review: Microsoft slapped by Tenable, Tampa Hospital lawsuit, Zoom's AI decision

955

CISA's .NET warning, Compellent exposes VMWare, DEFCON AI challenge

956

AI Cyber Challenge, eavesdropping typing app, Android cellular security

957

Google's Messages app now encrypts chats, Electoral Commission apologizes to UK voters, Banks hit with fines for using chat apps

958

K-12 cyber initiatives, Russian missile contractor breached, LLMs getting worse

959

Tenable smacks Microsoft, hospital ransomware attacks, accurate acoustic spyware

960

Week in Review: IDOR vulnerability warning, Israel refinery cyberattack, spies bemoan AI training

961

Fortinet tops vuln list, malicious Chrome Rilite, more Ivanti issues

962

Australia considers WeChat ban, US company aiding APTs, Veilid coming to DEF CON

963

Musk sues disinformation researchers, Cloud host found facilitating state-backed cyberattacks, UK spy agencies want to relax 'burdensome' AI laws

964

National plan for cyber education, DeFi code exploit, study on cyber insurance

965

Israel refinery cyberattack, TSA pipeline guidelines, CISA's IDOR warning

966

Week in Review: Stolen Microsoft key, government Maximus breach, Clop on clearweb

967

Maximus breach, Ubuntu Linux vulnerabilities, Cardio company cyberattack

968

Cyber exec convicted, SEC disclosure, how the government gets breached

969

TETRA encryption flaws, Zenbleed strikes, Norway's government hit with Ivanti flaw

970

Cyber Security Headlines: Clop leaks on clearweb, EU pushes back on CSA centralization, rising data breach costs

971

Azure hack deepens, JumpCloud is Lazarus, DHL MOVEIt victim

972

Week in Review: Fast acting Gamaredon, WormGPT AI weapon, Microsoft Azure mystery

973

New Redis worm, more ColdFusion confusion, Estée Lauder breached

974

A rise in complex DDoS attacks, Mi6 warns of data traps, Microsoft expands log access

975

US launches IoT security labeling program, Renewable tech could pose electric grid risk, US blacklists two more spyware firms

976

JumpCloud Breach, LockBit attacks Wisconsin, Typos leak military emails

977

Fast-acting Gamaredon, WormGPT improves phishing, Microsoft email mystery

978

Week in Review: Threat actors access government email, USB drive attacks spiking, cloud environment breaches

979

USB malware spikes, Honeywell, Rockwell vulnerabilities, ransomware remains profitable

980

NATO cyber pledges, tax prep data shared, a decrease in crypto crime

981

Silk Road advisor sentenced, HCA Health data breach, Google hit with AI tool training lawsuit

982

JumpCloud resets API keys, Genesis Market for sale, an EU-US data transfer agreement

983

BigHead Windows ransomware, RedEnergy targets utilities. more MOVEIt problems

984

Week in Review: TSMC supplier attacked, cardiac device warning, hospital ransomware increasing

985

Shell MOVEit breach, Pepsi bottler breach, INTERPOL nabs OPERA1ER

986

Japanese port hit with ransomware, EU court orders Meta data changes, White House can't contact social companies

987

BlackCat pushes CobaltStrike, cardiac device warning, unpatched Fortigate firewalls

988

Semiconductor giant attacked, State websites hacked, Russian Telecom infiltrated

989

Week in Review: SolarWinds CISO blamed, Military smartwatch mystery, submarine cable risk

990

SolarWinds CISOs blamed, ThirdEye Windows malware, Government extends canary

991

Federal networks fail CISA rules, US AI chip bans, MOVEit victims grow

992

Over 6,500 arrested since EncroChat hack, Third-party vendor hack exposes American and Southwest data, Microsoft service outage woes continue

993

Monopoly darknet charges, Activision Blizzard DDoS, 5G aircraft deadline

994

CISA adds vulnerabilities, mysterious military smartwatches, more Office problems

995

Week in Review: Microsoft confirms cyberattack, more MOVEit damage, reddit hit with ransomware

996

Canadian breaches increase, new China backdoor, kinetic warfare threat

997

DoJ targets nation-state actors, Apple fixes Triangulation zero-day, Schumer unveils strategy to regulate AI

998

Rorschach ransomware, Australian government data leak, security market outpaces tech

999

Reddit's ransom, UK shuffles cyber chief, Binance reaches SEC deal

1000

Microsoft's June cyberattacks, third MOVEit vulnerability, US Clop bounty