Daily Security Review cover art

All Episodes

Daily Security Review — 410 episodes

#
Title
1

Palo Alto Networks Uncovers 194,000-Domain Smishing Campaign Linked to “Smishing Triad”

2

Operation ForumTroll: Chrome Zero-Day Tied to Italian Spyware Developer Memento Labs

3

Coveware Reports Historic Drop in Ransomware Payments: Only 23% of Victims Paid in Q3 2025

4

Firefox Add-Ons Must Declare Data Collection—or Be Rejected

5

Chainguard’s $3.5 Billion Valuation Signals Massive Investor Confidence in Secure-by-Default Software

6

$1 Million WhatsApp Exploit Withdrawn—Researcher Silent, Meta Calls It “Low-Risk”

7

OpenAI Atlas Omnibox Jailbreak Exposes New AI Security Flaw

8

Microsoft Rushes Emergency Fix for WSUS Remote Code Execution Flaw (CVE-2025-59287)

9

Perplexity Comet AI Browser Launch Exploited in Coordinated Impersonation Scam

10

Lazarus Group Targets European UAV Firms in North Korea’s Drone Espionage Push

11

Toys “R” Us Canada Confirms Customer Data Breach After Dark Web Leak

12

Kyocera’s Motex Lanscope Hit by Active Attacks: Critical 9.8 Exploit Enables Remote Code Execution

13

BIND 9 Emergency Patches: ISC Fixes High-Severity Cache Poisoning and DoS Flaws

14

Adobe Confirms Active Exploitation of SessionReaper Vulnerability in Commerce Platforms

15

AI Sidebar Spoofing: How Malicious Extensions Hijack ChatGPT and Perplexity Interfaces

16

Jewett-Cameron Reports Ransomware Breach Involving Encryption and Data Theft

17

Star Blizzard’s Malware Makeover: From LostKeys to MaybeRobot

18

Keycard Emerges from Stealth with $38M to Secure the Identity of AI Agents

19

Critical TP-Link Omada Vulnerabilities Expose Networks to Remote Takeover

20

TARmageddon: The Rust Library Flaw Exposing Supply Chains to Remote Code Execution

21

Vidar 2.0: The C-Rewritten Stealer Poised to Dominate the Cybercrime Market

22

Dataminr Acquires ThreatConnect for $290M to Create the Next Generation of Tailored Threat Intelligence

23

Veeam Acquires Securiti AI for $1.725 Billion to Unite Data Resilience, Security, and AI

24

Defakto Raises $30.75 Million to Redefine Machine Identity Security

25

Dr. Allan Friedman Joins NetRise: The Father of SBOMs Goes Private to Fuse AI and Supply Chain Security

26

Pwn2Own Automotive 2026: $3 Million Bounty Targets Tesla and EV Infrastructure Flaws

27

China Claims NSA Breached National Time Network, Threatening Finance and Defense Stability

28

Cl0p Ransomware Targets Oracle E-Business Suite in Global Data Extortion Spree

29

WhatsApp Wins Landmark Case Against NSO Group Over Spyware Attacks

30

Google Project Zero Exposes Dolby Decoder Flaw Enabling Zero-Click Android Exploits

31

AISLE Launches AI Cyber Reasoning System to Shrink Patch Times from Weeks to Minute

32

Microsoft Blunts “Vanilla Tempest”: 200 Malicious Certificates Revoked

33

The “Shotgun” Botnet: How RondoDox Hijacks Routers, Cameras, and Servers Worldwide

34

“Inflation Refund” Scam: How Fraudsters Are Stealing Identities Through Texts

35

Juniper Networks Patches 220 Vulnerabilities in Massive October Security Update

36

Linked Exploitation Campaigns Target Cisco, Fortinet, and Palo Alto Networks Devices

37

Salesforce Refuses Ransom as Scattered LAPSUS$ Hunters Leak Millions of Records

38

Oneleet Secures $33M Series A to Revolutionize Integrated Cybersecurity

39

ParkMobile Data Breach Ends in $32.8M Settlement — and a $1 Payout

40

Discord Confirms Data Breach Linked to Third-Party Support Vendor

41

Weather Station Gateway Exploited: CISA Adds Meteobridge Bug to KEV List

42

DrayTek Issues Critical Patch for Router RCE Flaw (CVE-2025-10547)

43

FTC vs. Sendit: Lawsuit Alleges Data Theft, Fake Messages, and Subscription Traps

44

Broadcom Patches VMware Zero-Day: CVE-2025-41244 Exploited by China-Linked UNC5174

45

Seven Years, £5.5 Billion, 128,000 Victims – The Case of Yadi Zhang

46

Cisco ASA/FTD Flaws Under Siege: 50,000 Devices at Risk from Active Exploits

47

MatrixPDF: The New Phishing Toolkit That Turns Safe PDFs into Cyber Weapons

48

Asahi Brewery Cyberattack Halts Domestic Operations Across Japan

49

Akira Ransomware Exploits SonicWall Flaw with Record-Breaking Speed

50

Ex-Hacktivist “Sabu” Backs SafeHill’s $2.6M Bet on Continuous Threat Management

51

Jaguar Land Rover Cyberattack Fallout: £1.5B UK Bailout Sparks Fears of More Attacks

52

CISA’s Sunset Clause: What Happens if America’s Cyber Threat Shield Expires?

53

Crypto Theft on macOS: XCSSET Malware Swaps Wallet Addresses in Real Time

54

Nine High-Severity Vulnerabilities Expose Cognex Legacy Cameras to Cyber Threats

55

Microsoft Cuts Services to Israeli Military Unit After Surveillance Revelations

56

Ghana, Senegal, Ivory Coast at the Center of Interpol’s Multi-Nation Cybercrime Takedown

57

Harrods Data Breach Exposes Customer Details in Third-Party Hack

58

Steam Game BlockBlasters Turns Malicious, Drains $150K in Crypto

59

Beyond the Inbox: The Rising Threat of Non-Email Phishing Attacks

60

Stellantis Data Breach Exposes Contact Info in Third-Party Provider Attack

61

HoundBytes Launches WorkHorse to Eliminate SOC Tier 1 Bottlenecks

62

Toronto’s Mycroft Raises $3.5M to Bring AI Security Officers to Startups

63

FBI Issues Guidance as Fraudsters Pose as IC3 to Extort Victims

64

Fraudulent GitHub Repos Spread Atomic Stealer Malware Targeting macOS Users

65

Netskope’s IPO Raises $908M: SASE Leader Surges 18% on First Trading Day

66

SPLX Exposes AI Exploit: Prompt Injection Tricks ChatGPT Into Solving CAPTCHAs

67

Brussels, Berlin, London Hit Hard as Cyber Disruption Sparks Flight Chaos

68

Novakon Ignored Security Reports on ICS Weaknesses, Leaving 40,000+ Devices Exposed

69

RevengeHotels Cybercrime Group Adopts AI and VenomRAT in Hotel Credit Card Theft Campaign

70

ShadowLeak: Server-Side Data Theft Attack Discovered Against ChatGPT Deep Research

71

WatchGuard Firebox Vulnerability Could Let Hackers Take Over Networks

72

How SystemBC’s 1,500 Infected VPS Servers Fuel Ransomware and Fraud

73

Tiffany & Co. Data Breach Exposes Gift Card Details of 2,500+ Customers

74

Lakera’s Gandalf Network Joins Check Point in $300M AI Security Deal

75

Shai-Hulud Exposes Fragility of the Open-Source Software Supply Chain

76

ChatGPT Calendar Vulnerability Exposes User Emails in New AI Attack

77

CrowdStrike Acquires Pangea to Launch AI Detection and Response (AIDR)

78

RaccoonO365: $100K Phishing-as-a-Service Scheme Taken Down

79

AI-Generated Phishing and Deepfakes Supercharge Social Engineering Attacks

80

Phoenix Attack Breaks DDR5 Rowhammer Defenses: Root in 109 Seconds

81

Silent Push Raises $10M Series B to Expand Threat Intelligence Platform

82

Google Accused of Shadow Lobbying Against California Privacy Opt-Out Law

83

FinWise Bank Data Breach Exposes 700K Customers Amid Predatory Lending Allegations

84

The “s1ngularity” Attack: How Hackers Hijacked Nx and Leaked Thousands of Repositories

85

Canadian Investment Giant Wealthsimple Hit by Vendor Compromise

86

FireCompass Raises $20M to Scale AI-Powered Offensive Security

87

CVE-2025-42957: Active Exploits Target SAP S/4HANA Systems

88

Fake Job Interviews, Real Hacks: How North Korean Spies Steal Billions in Crypto

89

Cato Networks Acquires Aim Security to Bolster AI Defense in SASE

90

Tidal Cyber Secures $10M to Advance Threat-Informed Defense

91

Disney Fined $10M for COPPA Violations Over Mislabeling Kids’ Content on YouTube

92

Google Patches 111 Android Flaws in September 2025, Including Two Zero-Days Under Attack

93

Google Warns of Sitecore Zero-Day: ViewState Deserialization Under Fire

94

Brokewell Malware Targets Android Users via Fake TradingView Ads on Meta

95

Von der Leyen and Shapps Flights Hit by Suspected Russian Electronic Warfare

96

Salesforce and Google Workspace Compromised in Largest SaaS Breach

97

Chained Zero-Days: WhatsApp and Apple Exploits Used in Sophisticated Spyware Attacks

98

Miljödata Cyberattack: 80% of Swedish Municipalities Hit in Extortion Strike

99

PromptLock Ransomware: How AI is Lowering the Bar for Cybercrime

100

Hybrid AD at Risk: Storm-0501 Exploits Entra ID for Cloud-Native Ransomware

101

AI-Powered Polymorphic Phishing: The New Era of Social Engineering

102

Salesforce Breach: How OAuth Token Theft Exposed Hundreds of Organizations

103

Silk Typhoon’s Fake Adobe Update: How China-Backed Hackers Target Diplomats

104

FTC Warns Tech Giants: Don’t Weaken Encryption for Foreign Governments

105

Invisible Prompts: How Image Scaling Attacks Break AI Security

106

Healthcare Services Group Breach Exposes 624,000 Individuals’ Sensitive Data

107

Auchan Data Breach: Hundreds of Thousands of Loyalty Accounts Compromised

108

Docker Desktop Vulnerability: Why Containers Aren’t as Safe as You Think

109

Arch Linux Website, Forums, and AUR Targeted in Sustained Cyber Assault

110

Data I/O Ransomware Attack: Supply Chain Cybersecurity in Crisis

111

BianLian Ransomware Strikes Aspire Rural Health: 138,000 Patients Exposed

112

OneFlip: How a Single Bit-Flip Can Hack AI Models

113

PyPI Cracks Down on Domain Expiration Attacks to Protect Python Packages

114

AI Joins the Fight Against Exploits: Google and Mozilla Patch Dangerous Vulnerabilities

115

Britain Backs Down: UK Drops Encryption Backdoor Demand on Apple

116

PipeMagic Backdoor: How Ransomware Actors Exploited a Windows Zero-Day

117

270,000 Intel Employee Records at Risk from Authentication Bypass and Hardcoded Credentials

118

How Social Engineering and Vendor Weaknesses Led to Allianz Life’s Massive Breach

119

Cloud Computing Heist: $3.5 Million Fraud Leads to Prison for Fake Crypto Influencer

120

Embassy Espionage: Kimsuky and Suspected Chinese Partners Deploy XenoRAT in Seoul

121

GSMA Confirms Flaws: Researchers Unveil Dangerous 5G Sniffing and Injection Attack

122

SAP NetWeaver Under Siege: New Exploit Chains Threaten Global Enterprises

123

Ransomware Gangs Deploy Kernel-Level EDR Killers to Evade Detection

124

Chinese APTs Target Taiwan: UAT-7237’s SoundBill Loader and Gelsemium’s FireWood Backdoor

125

Colt Cyberattack: Multi-Day Outages After WarLock Ransomware Exploited SharePoint Zero-Day

126

Workday Breach Tied to Third-Party CRM Hack in ShinyHunters Campaign

127

DOJ Brings Down Zeppelin Ransomware Operator, Seizes Millions in Crypto

128

U.S. Sanctions Grinex, the Russian Crypto Exchange Born from Garantex’s Ashes

129

Canadian House of Commons Breach Tied to Microsoft SharePoint Zero-Day

130

Norwegian Authorities Blame Pro-Russian Hackers for Critical Infrastructure Breach

131

MadeYouReset: New HTTP/2 Flaw Could Unleash Massive DDoS Storms

132

Cybersecurity Budgets Hit Historic Slowdown as Global Tensions Mount

133

CVE-2025-53786: The Microsoft Exchange Hybrid Flaw That Could Take Down Your Domain

134

Allianz Life Breach: 2.8 Million Records Leaked in Salesforce Hack

135

Charon Ransomware Targets Middle East Government and Aviation Sectors

136

August 2025 Patch Tuesday: Microsoft and Adobe Fix Over 170 Security Flaws

137

RansomHub Hits Michigan’s Manpower — Data Breach Exposes 140,000 Individuals

138

Security Firms Warn GPT-5 Is Wide Open to Jailbreaks and Prompt Attacks

139

Germany’s Top Court Limits Police Spyware to Serious Crimes Only

140

BadCam: Lenovo Webcam Flaw Turns Everyday Cameras into Remote BadUSB Attack Tools

141

Free Wi-Fi Loophole Lets Hackers Breach Smart Bus Control Systems

142

ReVault: Critical Dell Firmware Flaws Allow Windows Login Bypass and Persistent Implants

143

Air France–KLM Data Breach Exposes Customer Info via Compromised Third-Party Platform

144

Critical Flaws in CyberArk Conjur and HashiCorp Vault Put Enterprise Secrets at Risk

145

Prompt Injection Nightmare: Critical AI Vulnerabilities in ChatGPT, Copilot, Gemini & More

146

From Google to LVMH: ShinyHunters’ Salesforce Breaches Spark Global Ransom Crisis

147

Cisco Hit by Vishing Attack: CRM Breach Exposes Millions of User Profiles

148

Ox Security Unveils Agent Ox: AI Tool That Writes Tailored Fixes for Software Vulnerabilities

149

Meta Deletes 6.8 Million Scam Accounts as AI-Powered Fraud Rings Exploit WhatsApp

150

Meta Found Liable: Jury Rules Against Tech Giant in Flo Health Privacy Case

151

TSMC Insider Threat: Six Arrested in Taiwan Over 2nm Chip Trade Secrets

152

Approov Secures £5M to Fortify Mobile App and API Security Against AI-Driven Threats

153

Pwn2Own Ireland 2025: $1M WhatsApp Exploit Bounty Raises the Stakes

154

Nvidia Triton Inference Server Vulnerabilities Expose AI Infrastructure to Attack

155

CISA & FEMA Release $100M in Cybersecurity Grants to Strengthen State, Local, and Tribal Defenses

156

AI Jailbreaks on the Rise: How Hackers Are Extracting Training Data from LLMs

157

350,000 Patient Records Exposed: Inside the Northwest Radiologists Data Breach

158

Critical Honeywell Experion PKS Vulnerabilities Threaten Global Industrial Control Systems

159

Auto-Color Linux Malware Exploits SAP Zero-Day CVE-2025-31324

160

Inside the July 2025 PyPI Phishing Scam: How Hackers Stole Developer Credentials

161

IoT Security Crisis: Dahua Smart Camera Vulnerabilities Expose Surveillance Systems

162

Dropzone AI Secures $37M to Tackle Alert Fatigue with Autonomous SOC Analysts

163

Axonius Buys Cynerio for $100M+: Closing Healthcare’s Biggest Cybersecurity Blind Spot

164

Critical Lenovo Firmware Flaws Expose Millions to Persistent UEFI Attacks

165

Promptfoo Secures $18.4M to Combat AI Security Threats in Generative AI

166

1.1 Million Private Messages Leaked: Inside the Tea App Privacy Disaster

167

Job Scams, Corporate Espionage, and Digital Deception: Inside the Deepfake Crisis

168

Microsoft Exposes Major macOS Flaws in Transparency, Consent, and Control

169

Aeroflot in Chaos: How Hackers Crippled Russia’s Flagship Airline

170

Neferpitou Claims Cyberattack on French Naval Defense Giant

171

Root Evidence Launches With $12.5M to Redefine Vulnerability Management

172

NASCAR Hit by Medusa Ransomware: 1TB of Data Stolen in April 2025 Cyberattack

173

Scattered Spider Strikes Again: Inside the VMware ESXi Ransomware Tactics

174

Koske Malware Hides in Panda Images, Weaponizes AI to Target Linux

175

Operation Checkmate: BlackSuit Ransomware’s Dark Web Sites Seized

176

Coyote Malware Exploits Microsoft UI Automation in First-Ever Wild Attack

177

No Fix Coming: Remote Code Execution Flaw in 1,300 LG Security Cameras

178

ToolShell Exploited: China-Linked Hackers Breach NNSA and U.S. Government Networks

179

Massive NPM Breach: Malicious Packages Spread via Compromised Maintainer Accounts

180

Clorox Sues Cognizant Over $356M Cyberattack: Who's Really to Blame?

181

HeroDevs Secures $125M to Extend Life of Critical Open Source Software

182

UK Moves to Ban Ransomware Payments for Public Sector and Critical Infrastructure

183

New SysAid Vulnerabilities Added to CISA’s KEV List: XXE Flaws Could Enable RCE

184

Lumma Stealer Returns: Malware-as-a-Service Resurges After Global Takedown

185

Cisco ISE Critical Flaws Now Actively Exploited: No Workarounds, Just Root Access

186

ToolShell: SharePoint Zero-Day Chain Gives Hackers Full Remote Access

187

CVE-2025-54309: CrushFTP Zero-Day Exploited in Global Admin Access Attacks

188

Dell Breach by World Leaks: Extortion Attempt Hits Demo Platform

189

Critical VPN Vulnerability: ExpressVPN Exposed IPs via RDP Misrouting

190

Dior Data Breach Exposes U.S. Customer Info in LVMH Vendor Attack

191

StrongestLayer Raises $5.2M to Fight AI-Powered Phishing with TRACE

192

750,000 Records Exposed: Inside the TADTS Data Breach by BianLian

193

SS7 Is Still Broken: How Surveillance Firms Are Bypassing Telco Defenses

194

The UNFI Cyberattack: How Hackers Disrupted the U.S. Food Supply Chain

195

Zuckerberg on Trial: The $8 Billion Data Privacy Reckoning

196

Operation Eastwood: Inside the Takedown of NoName057(16)

197

Phished and Exposed: What the Co-op Hack Reveals About Retail Cybersecurity

198

FileFix Attacks Are Here: How Interlock’s Ransomware is Skipping Your Defenses

199

Ontinue Uncovers SVG-Based Phishing: Why Your Browser Could Be the Weak Link

200

Exein Raises €70M: Defending the IoT-AI Frontier with Embedded Security

201

Salt Typhoon Strikes Again: National Guard, Telecoms, and a Crisis in U.S. Cyber Defense

202

DragonForce Ransomware Hits Belk: 150GB Data Leak and Operational Chaos

203

NVIDIA Issues Urgent Rowhammer Warning: Enable ECC or Risk AI Integrity

204

Zip Security Secures $13.5M to Simplify and Scale Cyber Defense

205

Century Support Services Breach: 160,000 Identities Compromised in Silent Cyberattack

206

TikTok, China, and the EU: The Battle Over Data Sovereignty

207

Booz Allen Invests in Corsha: Defending Machine-to-Machine Communication at Scale

208

WSUS Meltdown: Global Sync Failures and the Shift Toward Cloud Patch Management

209

Cracking eSIM: Exposing the Hidden Threats in Next-Gen Mobile Security

210

Qantas Breach and Beyond: Cybersecurity Risks in Australia’s Digital Supply Chains

211

Taiwan Sounds the Alarm: TikTok, WeChat, and the Chinese Data Threat

212

The Evolution of Atomic macOS Stealer: Backdoors, Keyloggers, and Persistent Threats

213

CitrixBleed Returns: CVE-2025-5777 and the Exploitation of NetScaler Devices

214

SAP’s July 2025 Patch Day: Critical Flaws, CVE-2025-30012, and Ransomware Risk

215

106GB Exposed? Telefónica, HellCat, and the Silent Data Breach

216

Ingram Micro’s SafePay Ransomware Breach: Human-Operated Threats and Supply Chain Fallout

217

The Illusion of Shutdowns: What Hunters International's Closure Really Means

218

CISA Flags CVE-2025-6554: Patching Chrome’s Critical Flaw Before It’s Too Late

219

ANSSI vs. Houken: France Battles Advanced Chinese Hacking Threat

220

Psychological Manipulation and AI Fraud: How Spain Exposed a $12M Scam

221

CVE-2025-20309: Critical Cisco Root Access Flaw Threatens VoIP Security

222

macOS Under Siege: NimDoor Malware Targets Telegram, Wallets, and Keychains

223

Cisco Unified CM Vulnerability: Root Access Risk for Enterprise VoIP Networks

224

Forminator Flaw Exposes WordPress Sites to Takeover Attacks: Vulnerability Threatens 600,000+ Sites

225

Kelly Benefits Breach: Over 550,000 Victims and the Rising Identity Theft Crisis

226

FileFix, HTA, and MotW Bypass—The Alarming Evolution of HTML-Based Attacks

227

Sophisticated Cyberattack on the International Criminal Court: Justice in the Crosshairs

228

Critical Flaws in Microsens NMP Web+ Threaten Industrial Network Security

229

Qantas Data Breach: Third-Party Hack Exposes Millions of Frequent Flyers

230

Berlin Regulator Targets DeepSeek AI Over Data Transfers to China

231

CISA Flags Citrix NetScaler Flaws: What CVE-2025-6543 Means for Federal and Private Networks

232

Cato Networks Secures $359M to Fuel AI-Powered SASE Expansion

233

Chrome’s Latest Zero-Day: CVE-2025-6554 and Remote Code Execution Risks

234

Russia’s 16KB Curtain: Cloudflare Throttling and the Future of the RuNet

235

Ahold Delhaize Data Breach: 2.2 Million Employee Records Exposed

236

Why Canada Banned Hikvision: National Security vs. Geopolitics

237

Scattered Spider Takes Flight: Inside the Cybercrime Group’s Move into Aviation

238

Fortnite and the FTC: How Epic Games Misled Players into Unwanted Purchases

239

Microsoft 365 Direct Send Exploited: How Phishing Emails Masquerade as Internal Messages

240

Open VSX Registry Flaw Exposes Millions of Developers to Supply Chain Risk

241

CitrixBleed 2: Critical NetScaler Vulnerability Enables Session Hijacking and MFA Bypass

242

OneClik Cyberattack Campaign Targets Energy Sector Using Microsoft ClickOnce and AWS

243

Central Kentucky Radiology’s 2024 Data Breach Affects 167,000

244

Bonfy.AI Launches $9.5M Adaptive Content Security Platform to Govern AI and Human Data

245

Zero-Day Level Cisco ISE Flaws: Urgent Patch Required for Enterprise Security

246

U.S. Government Pushes Back on Meta: WhatsApp Labeled a High-Risk App

247

How Cyberattacks on Mainline Health and Select Medical Exposed Over 200,000 Patients

248

Prometei Botnet’s Global Surge: A Threat to Linux and Windows Systems Alike

249

The Siemens-Microsoft Antivirus Dilemma Threatening OT Security

250

Patient Trust on the Line: The Fallout from McLaren Health Care’s 2024 Breach

251

NeuralTrust’s Echo Chamber: The AI Jailbreak That Slipped Through the Cracks

252

AT&T, Verizon, and Beyond: How Salt Typhoon Targets Global Telcos

253

Fake Microsoft, Netflix, & Apple Support: The Scam Lurking in Google Search

254

From Malware to Court: Qilin Ransomware’s ‘Call a Lawyer’ Tactic

255

Zero-Click, Zero-Warning: The FreeType Flaw Behind a Spyware Surge

256

The Insurance Industry Under Fire: Anatomy of the Aflac Cyber Incident

257

The Nucor Cyberattack: How Ransomware Threatens American Steel

258

Inside the $225M Crypto Seizure: How Law Enforcement Traced Illicit Funds Across Borders

259

Inside CVE-2025-23121: Veeam RCE Flaw Opens Door to Ransomware

260

Fasana’s Collapse: How One Ransomware Attack Crippled a German Manufacturer

261

Inside the 16 Billion Credential Leak: The Infostealer Engine Behind the Biggest Breach Yet

262

Over 1,500 Minecraft Users Infected in Stargazers Ghost Malware Campaign

263

Chain IQ Breach Exposes UBS & Pictet Employee Data: A Supply Chain Failure

264

Weaponized GitHub Repositories: How Banana Squad and Water Curse Are Hitting Devs

265

Oxford City Council Breach Exposes 21 Years of Data

266

Citrix NetScaler Flaws Expose Enterprise Networks: CVE-2025-5349 & CVE-2025-5777

267

GerriScary: How CVE-2025-1568 Threatened Google’s Open-Source Supply Chain

268

Cisco & Atlassian Under Fire: High-Severity Flaws and What’s at Risk

269

Double Extortion, Biometric Data, and Donuts: How Play Ransomware Hit Krispy Kreme

270

Archetyp Market Seized: €250M Drug Empire Toppled by Operation Deep Sentinel

271

KillSec Exploits Zero-Day to Breach Ocuco: 241K Patients Exposed

272

DragonForce Ransomware: The Evolving Threat to Healthcare Data

273

Google’s $32B Bid for Wiz Faces DOJ Fire: A Cloud Security Power Play or Market Grab?

274

SimpleHelp Exploit Fallout: Ransomware Hits Utility Billing Platforms

275

TeamFiltration and Token Theft: The Cyber Campaign Microsoft Never Saw Coming

276

Three CVEs, One Risk: Arbitrary Code Execution in Nessus Agent for Windows

277

WestJet Cyberattack: Cracks in Aviation’s Digital Armor

278

Silent Surveillance: The Hidden Risks in 40,000+ Unsecured Cameras

279

Paragon’s Promise vs. Reality: How Graphite Is Being Used Against Journalists and Activists

280

zeroRISC Secures $10M to Commercialize OpenTitan and Reinvent Supply Chain Security

281

Fog, RedFox, and the Rise of Silent Intruders: Cyberattacks Surge Against Financial Institutions

282

9.8 Severity and Counting: Inside Trend Micro’s Latest Security Emergency

283

Zero-Day in the Call Center: Mitel MiCollab Exploited in Active Attacks

284

The Info-Stealer Sting: A Deep Dive into INTERPOL's Operation Secure

285

Tomcat Manager Attacks: 400 IPs in Coordinated Brute-Force Attack

286

TxDOT Data Leak: 423,391 Texans Exposed

287

Ghost Students and AI Scams: How Identity Theft is Gutting Financial Aid

288

Inside the React Native NPM Supply Chain Breach: 16 Packages, 1 Million+ Downloads, and a RAT in the Code

289

Mirai Strikes Again: Spring4Shell, Wazuh, and TBK DVRs Exploited in Live Campaigns

290

UNFI Breach: How One Cyberattack Shook the North American Food Supply

291

Malware-as-Code: The Rise of DaaS on GitHub and the Collapse of Open-Source Trust

292

ClickFix: How Fake Browser Errors Became the Internet’s Most Dangerous Trap

293

Exposed and Extorted: The ViLE Hackers and the Legal Gaps Enabling Doxing

294

Chrome Under Fire: Three Zero-Days, One Month, and Nation-State Exploits

295

Australia Forces Transparency: The World’s First Mandatory Ransomware Payment Reporting Law

296

$25M for AI Email Security: Trustifi’s Big Bet on the MSP Market

297

Google Chrome vs. Failing CAs: The Policy Behind the Distrust

298

CVE-2025-48827 & 48828: How vBulletin’s API and Template Engine Got Weaponized

299

JINX-0132: How Cryptojackers Hijacked DevOps Infrastructure via Nomad and Docker

300

Password Hashes Leaked via Linux Crash Handlers: The Truth Behind CVE-2025-5054 & 4598

301

Multi-Stage Phishing Attacks Now Use Google Infrastructure—Here’s How

302

Inside the AVCheck Takedown: How Law Enforcement Disrupted a Key Cybercrime Tool

303

ConnectWise Breach: Nation-State Exploits CVE-2025-3935 in ScreenConnect

304

Browser vs. GPU: Firefox 139 Collides with NVIDIA Drivers

305

Unbound Raises $4M to Secure Generative AI in the Enterprise

306

Windows Updates, Reimagined: Inside Microsoft’s Unified Orchestration Push

307

Systemd as a Weapon: How PumaBot Exploits Linux Persistence

308

The LexisNexis Breach: 364,000 Records Exposed via GitHub

309

Ransomware Hits MathWorks: Week-Long Outage Disrupts Millions

310

Zscaler Acquires Red Canary: What It Means for AI-Powered Security Operations

311

DragonForce Breaches MSPs via SimpleHelp Flaws: Inside CVE-2024-57726

312

Fentanyl, Firearms, and $200M in Crypto: Dark Web Crime Meets Global Law Enforcement

313

Marlboro-Chesterfield Pathology Ransomware Breach: 235,000 Patients Affected

314

How Infostealers Like Stealc Use TikTok Accounts to Exfiltrate Stolen Data

315

The Great Screenshot Scandal: Microsoft Recall and Signal’s DRM Shield

316

Bumblebee Malware Returns: IT Pros Targeted Through SEO Poisoning and Typosquatting

317

FBI Warns of Luna Moth Tactics: Inside the Silent Ransom Group’s Law Firm Attacks

318

Trust Exploited: Unpacking the macOS Malware Attacking Ledger Wallets

319

$21M Seized and DanaBot, Qakbot, and Bumblebee Disrupted in Operation Endgame Takedown

320

From TikTok to Total Compromise: The Rise of Social Media Infostealers

321

Kettering Health Breached: What the Interlock Ransomware Group Did and Why It Matters

322

Deepfake Threats, Mobile Biometrics, and the Future of Trust

323

119,000 ICS Devices Exposed: The Internet’s Hidden Infrastructure Risk

324

Arla Foods Upahl Site Hit by Cyberattack—What It Means for Food Supply Chains

325

Bypassing Antivirus: What Defendnot Reveals About the Weak Spots in Windows Security

326

BreachRx Raises $15M to Automate the Chaos of Incident Response

327

110,000+ Records Compromised: The NRS Cybersecurity Failure

328

CISA Flags Chrome Vulnerability CVE-2025-4664: Patch Before June 5th

329

483,000 Patients at Risk: Catholic Health Vendor Breach Exposes Critical Data

330

Chrome's New Vulnerability CVE-2025-4664: A Security Flaw That Can Lead to Account Takeover

331

Scattered Spider Targets UK and US Retailers: The Growing Threat to Major Brands

332

Proofpoint Acquires Hornetsecurity for $1B: A New Era in Microsoft 365 Security

333

Exploited in the Wild: SAP NetWeaver Zero-Days Hit Fortune 500

334

Checkout Chaos: Inside the £3.5 Million-a-Day M&S Cyber-Shutdown

335

Targeted iOS Attacks: The Zero-Days Apple Had to Patch Fast

336

Texas vs Google: The $1.4 Billion Wake-Up Call for Data Privacy Violations

337

Marbled Dust's Zero-Day Exploit: Unveiling a Türkiye-linked Espionage Campaign Against Kurdish Forces

338

TeleMessage Exploit: Inside the Messaging Flaw That Hit Coinbase and CBP

339

Backdoored by ‘Cheap’ AI: How Fake npm Packages Compromised Cursor IDE

340

160,000 Victims Later: The Aspire USA Breach Under Valsoft’s Watch

341

rand-user-agent: The NPM Package That Opened a Backdoor

342

PipeMagic, Procdump, and Privilege Escalation: Tracking the Windows CLFS Exploit Chain

343

Pegasus Spyware, WhatsApp v. NSO Group, and the Global Battle for Data Privacy

344

How CodeAnt AI is Automating Code Reviews for 50+ Dev Teams

345

The Langflow Breach: How a Popular AI Tool Opened the Door to Hackers

346

Mirai Reloaded: Why CVE-2024-7399 Still Haunts Samsung Servers

347

CVE-2025-31324: A Critical SAP Zero-Day in Active Exploitation

348

Another Day, Another Commvault Zero-Day: RCE, Path Traversal, and KEV Inclusions

349

Kelly Benefits Breach: What 413,000 Exposed Records Teach Us About Cybersecurity

350

$491M Budget Cut: The White House Move That Could Reshape CISA

351

TikTok Fined €530M: GDPR Breach Over Data Transfers to China

352

Endor Labs Raises $93M to Cut AppSec Noise and Secure the Software Supply Chain

353

CVE-2025-3928: How One Vulnerability Breached Commvault’s Azure Stack

354

Nova Scotia Power, a Canadian Utility, Breached: A Global Warning for Critical Infrastructure

355

SentinelOne Discloses Ongoing Attacks by Nation-State Hackers and Ransomware Gangs

356

OpenEoX and the Future of End-of-Life Standardization in IT

357

LayerX Secures $45M Total to Battle Data Leaks, One Browser at a Time

358

$10.5M to Fight AI-Phishing: The Rise of Pistachio’s Cybersecurity Training Platform

359

AirBorne: How a Zero-Click Bug Threatens Millions of Apple and Third-Party Devices

360

The Silent Majority: Why 51% of Internet Traffic Is Now Bots

361

From 1,382 to 4 Million: What VeriSource Didn’t Know (or Say)

362

Actively Exploited: Commvault Web Shells, Active! mail RCE, and Brocade Code Injection Now in KEV

363

Hard-Coded Havoc: The Fatal Flaws in Planet’s Network Devices

364

Craft CMS Crisis: The 10.0-Rated RCE Flaw Every Developer Must Patch Now

365

Policy Puppetry: How a Single Prompt Can Trick ChatGPT, Gemini & More Into Revealing Secrets

366

Lazarus Strikes Again: Inside Operation SyncHole and the 1-Day Exploitation Crisis

367

OAuth Phishing and Microsoft 365: The Hidden Threats SMBs Can't Ignore

368

Why Outlook Is Eating Your CPU — And What Microsoft Says About It

369

Trojan Map App: Spyware Targets Russian Soldiers via Alpine Quest

370

Blue Shield Breach: 4.7 Million Health Records Leaked via Google Analytics

371

$16.6 Billion Lost: The True Cost of Cybercrime in America

372

The Second Scam: FBI Warns of IC3 Impersonators Targeting Fraud Victims

373

Inside the Breach: What Recent Cyberattacks Reveal About Your Data Security

374

Inside Security News : GitHub Supply Chain Attacks, Ransomware Defense, and Cloud Security

375

Next.js Security Vulnerability: Middleware Bypass (CVE-2025-29927)

376

Cyberattack Roundup: Lessons from the Latest Breaches & Ransomware Strikes

377

Mastering Incident Response: A Guide to Building a Resilient Plan

378

No More Warnings? The Risks of Losing CIPAC’s Cyber Threat Coordination

379

517,000 Victims: How a Ransomware Gang Targeted Pennsylvania’s Largest Educators’ Union

380

DollyWay: The 8-Year WordPress Malware Campaign Infecting 20,000 Sites

381

MegaRAC CVE-2024-54085 Vulnerability: Critical BMC Flaw Threatening Data Centers

382

Microsoft Windows March Update Wipes Out Copilot

383

Hackers Flip the Script: How a Fake Coinbase Email Could Empty Your Wallet

384

Brute-Force on Autopilot: Black Basta’s 'BRUTED' VPN Tool for Ransomware Expansion

385

GitHub Action Hijacked: The Supply Chain Attack That Exposed 23,000 Repositories

386

Brave Browser Review 🎯 How Safe is This Web Browser? (2025)

387

Bridging the Gap: Developers vs. Security in the Cloud

388

Exploring the Dark Web: Unveiling the Hidden Internet 🌐💻

389

Security vulnerabilities: Key Steps for secure Workflows

390

The Hidden Threat of Wi-Fi Tracking: How Your Devices Reveal Your Location

391

Zero Trust & Data Security: The Future of Protecting Government Information

392

Japanese telco NTT Communications hacked hackers accessed details of almost 18,000 organizations

393

1 Million Devices Hit: Inside the Massive Malvertising Campaign

394

Inside the $635K Taylor Swift Ticket Heist: Cybercrime, Loopholes, and Insider Threats

395

Silk Typhoon Strikes: From Direct Breaches to Stealthy Supply Chain Attacks

396

Tracking Stingrays: How Rayhunter Shields Your Mobile Privacy

397

AI-Generated Video of YouTube's CEO Used In Phishing Attack

398

BackConnect, Microsoft Teams, & Social Engineering—How Ransomware is Adapting

399

OnlyFans Cyberattacks: Fake CAPTCHAs and Malware Distribution Threaten Users

400

9 Million Downloads, Now Banned: VSCode Extensions Under Fire

401

Bybit's $1.5 Billion Ether Theft: Analysis, investigation and finds

402

The Cost of a Data Breach: How to Stay Secure in 2025

403

Hacking Nations: How Cybercrime is Becoming a National Security Crisis

404

Russia vs. Ransomware: A Game of Cybersecurity Chess

405

Botnets, Proxies, and Brute Force: How 2.8 Million IPs Target VPNs and Firewalls

406

Inside the Billion-Dollar Heist: Carbonak’s Audacious Cybercrime Saga

407

Modern Bank Heists: Cybercrime, Zero-Day Exploits & The Future of Financial Security

408

The Ethereum Vulnerability That Almost Shook the Network

409

The Wireless Pen Test Guide: Are Your Wi-Fi Networks Really Secure?

410

190 Million Breached: Inside the Cyber War on Healthcare