Attack & News

Attack & News

Latest cybersecurity news, threat reports, and attack campaigns

NEWSHackreadabout 1 month ago

FortiBleed Credential Theft Connected to INC and Lynx Ransomware

NEWSThe Registerabout 1 month ago

Ctrl+Alt+Oops: FortiBleed criminal's logins stitch two gangs together

NEWSCyberScoopabout 1 month ago

Alleged longstanding member of Scattered Spider extradited to US

NEWSThe Hacker Newsabout 1 month ago

ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories

NEWSBleeping Computerabout 1 month ago

Google loses final appeal to overturn €4.1 billion EU fine

NEWShighSecurityWeekabout 1 month ago

New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure

NEWShighThe Registerabout 1 month ago

Microsoft said exploitation was 'less likely' ... but CISA just added SharePoint RCE to KEV list

NEWSBleeping Computerabout 1 month ago

ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds

NEWSSecurityWeekabout 1 month ago

How to Conduct a Successful Audit of AI-Driven Software Development

NEWShighThe Hacker Newsabout 1 month ago

ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API

NEWSThe Registerabout 1 month ago

Pacemaker manufacturer Medtronic warns patients cybercrooks may have swiped health data

NEWScriticalInfosecurity Magazineabout 1 month ago

Researcher Behind 'Exploitarium' Explains Release of Undisclosed Zero-Day Exploits

NEWScriticalSecurityWeekabout 1 month ago

FortiBleed Campaign Linked to INC, Lynx Ransomware Attacks

NEWSBleeping Computerabout 1 month ago

Microsoft fixes bug that removed Copilot buttons in Outlook

NEWShighInfosecurity Magazineabout 1 month ago

Cybercriminals Pose as Interpol in Phishing Emails to Infect Victims With Ransomware

NEWSThe Registerabout 1 month ago

India gives WhatsApp three days to defend username rollout amid security fears

NEWShighBleeping Computerabout 1 month ago

Cisco finally confirms attackers exploiting Unified CM flaw

NEWSThe Hacker Newsabout 1 month ago

Identity Lifecycle Management Wasn't Built for AI Agents

NEWSSecurityWeekabout 1 month ago

Trump Administration Lifts Restrictions on Anthropic’s Claude Models After Cybersecurity Alarm

NEWScriticalBleeping Computerabout 1 month ago

CISA: Microsoft SharePoint RCE flaw now actively exploited

NEWShighSecurityWeekabout 1 month ago

Cisco Confirms In-the-Wild Exploitation of Unified CM Vulnerability

NEWSBleeping Computerabout 1 month ago

Opera rolls out Paste Protect feature to fight ClickFix attacks

NEWSSecurityWeekabout 1 month ago

‘BioShocking’ Attack Tricks AI Browsers Into Stealing Credentials

NEWScriticalThe Registerabout 1 month ago

Oracle E-Business Suite was under attack via critical flaw before the public exploit code was even released

NEWScriticalCVE-2026-456598.8 HIGHSecurityWeekabout 1 month ago

CISA Warns of Actively Exploited Microsoft SharePoint Vulnerability

NEWSHackreadabout 1 month ago

Sysdig Details JADEPUFFER, the First Documented Agentic Ransomware Operation

NEWSInfosecurity Magazineabout 1 month ago

NCSC Shares Tips on How to Make a Pen Tester’s Job Harder

NEWScriticalThe Hacker Newsabout 1 month ago

AI Agent Exploits Langflow RCE to Automate Database Ransomware Attack

NEWShighBleeping Computerabout 1 month ago

Alleged Scattered Spider hacker extradited to the United States

NEWSInfosecurity Magazineabout 1 month ago

Alleged Scattered Spider Member Extradited to US