Latest Articles

Cyberattack Disrupts Massachusetts Emergency Dispatch Systems While 911 Service Remains Online

Cyberattack Disrupts Massachusetts Emergency Dispatch Systems While 911 Service Remains Online

A cyberattack has temporarily disrupted operations at the Patriot Regional Emergency Communications Center in northern Massachusetts, affecting public-safety computer systems and non-emergency...

The $285 Million Drift Protocol Hack: North Korea-Linked Social Engineering Shakes Solana DeFi

The $285 Million Drift Protocol Hack: North Korea-Linked Social Engineering Shakes Solana DeFi

On April 1, 2026, Drift Protocol, the leading decentralized perpetual futures exchange on the Solana blockchain, suffered one of the largest exploits in DeFi history. Attackers drained approximately...

French Government Weapons Registry Breached: Personal Data of Thousands of Gun Owners Exposed in Cyberattack on SIA Database

French Government Weapons Registry Breached: Personal Data of Thousands of Gun Owners Exposed in Cyberattack on SIA Database

The French Ministry of the Interior has confirmed a cybersecurity breach involving the national firearms registration platform known as the Système d’Information sur les Armes or SIA. Hackers gained...

UNC1069 Axios Supply Chain Attack: How Social Engineering Compromised npm and Deployed WAVESHAPER Malware

UNC1069 Axios Supply Chain Attack: How Social Engineering Compromised npm and Deployed WAVESHAPER Malware

Date: April 2026 A sophisticated supply chain attack attributed to the threat group UNC1069 has exposed critical vulnerabilities in the open-source ecosystem. By targeting the maintainer of the...

LinkedIn “BrowserGate” Controversy: Allegations of Scanning 6,000+ Chrome Extensions and Device Fingerprinting Explained

LinkedIn “BrowserGate” Controversy: Allegations of Scanning 6,000+ Chrome Extensions and Device Fingerprinting Explained

Date: April 2026 A recent cybersecurity report dubbed “BrowserGate” has sparked intense debate across the tech and privacy communities. The report alleges that LinkedIn deploys hidden JavaScript...

Threat Actor Abuse of AI Shifts From Productivity Tool to Full Cyberattack Surface

Threat Actor Abuse of AI Shifts From Productivity Tool to Full Cyberattack Surface

For much of the past year, the discussion around AI and cybercrime has centered on speed. Microsoft now argues that the more important shift is deeper and more dangerous: threat actors are no longer...

Hasbro Faces Major Cybersecurity Incident: Unauthorized Network Access Detected on March 28, 2026

Hasbro Faces Major Cybersecurity Incident: Unauthorized Network Access Detected on March 28, 2026

Hasbro Inc. identified unauthorized access to its corporate network on March 28, 2026. The toy manufacturer, known for iconic brands including...

Adobe Allegedly Breached as Threat Actor Claims Exposure of Support Tickets, Employee Records, and HackerOne Data

Adobe Allegedly Breached as Threat Actor Claims Exposure of Support Tickets, Employee Records, and HackerOne Data

Adobe is being named in an alleged breach after a threat actor claimed to have accessed sensitive internal data, including millions of support tickets, employee records, HackerOne submissions, and...

Malicious “ChatGPT Ad Blocker” Chrome Extension Stole Full ChatGPT Conversations via Discord Webhook

Malicious “ChatGPT Ad Blocker” Chrome Extension Stole Full ChatGPT Conversations via Discord Webhook

Security researchers have uncovered a malicious Chrome extension called “ChatGPT Ad Blocker” that masqueraded as a lightweight privacy tool while quietly harvesting users’ full ChatGPT conversation...

Microsoft Attributes Axios npm Supply Chain Attack to North Korean Hacker Group Sapphire Sleet

Microsoft Attributes Axios npm Supply Chain Attack to North Korean Hacker Group Sapphire Sleet

Microsoft Threat Intelligence has attributed the recent Axios npm supply chain attack to Sapphire Sleet, a North Korean state actor, after identifying that the malicious package infrastructure and...

Operation NoVoice: Android Rootkit Hidden in 50+ Google Play Apps Hijacked 2.3 Million Devices and Survived Factory Reset

Operation NoVoice: Android Rootkit Hidden in 50+ Google Play Apps Hijacked 2.3 Million Devices and Survived Factory Reset

McAfee’s mobile research team has disclosed a large-scale Android rootkit campaign dubbed Operation NoVoice that used more than 50 malicious apps on Google Play to infect at least 2.3 million...

Crypto Exchange Drift Hack: $130M–$285M Stolen in Massive Security Breach, Services Suspended

Crypto Exchange Drift Hack: $130M–$285M Stolen in Massive Security Breach, Services Suspended

In one of the most significant cryptocurrency security incidents of 2026, decentralized trading platform Drift has suspended deposits and withdrawals following an active cyberattack that resulted in...

Apple Expands iOS 18.7.7 Updates to More iPhones to Block DarkSword Exploit Kit Attacks

Apple Expands iOS 18.7.7 Updates to More iPhones to Block DarkSword Exploit Kit Attacks

Apple has taken a decisive step in strengthening mobile security by expanding the availability of its iOS 18.7.7 update to a broader range of iPhones. The move comes in response to active...

TrueConf Zero-Day Exploited in Southeast Asia to Push Havoc via Trusted Update Channel

TrueConf Zero-Day Exploited in Southeast Asia to Push Havoc via Trusted Update Channel

Check Point Research has disclosed a zero-day vulnerability in the TrueConf client for Windows that was actively exploited against government targets in Southeast Asia, turning a trusted enterprise...

Cisco Source Code Stolen in Trivy-Linked Breach as ShinyHunters Claims Multi-System Compromise

Cisco Source Code Stolen in Trivy-Linked Breach as ShinyHunters Claims Multi-System Compromise

Cisco has reportedly suffered a cyberattack after threat actors used credentials stolen in the recent Trivy supply-chain compromise to breach the company’s internal development environment, steal...

Critical Fortinet FortiClient EMS Vulnerability CVE-2026-21643: SQL Injection Flaw Now Actively Exploited Worldwide

Critical Fortinet FortiClient EMS Vulnerability CVE-2026-21643: SQL Injection Flaw Now Actively Exploited Worldwide

FortiClient Enterprise Management Server, commonly known as FortiClient EMS, functions as the centralized management console for Fortinet's endpoint protection solutions. It enables organizations to...

Cisco Source Code Breach via Trivy Supply Chain Attack: How Stolen Credentials Exposed 300+ GitHub Repositories

Cisco Source Code Breach via Trivy Supply Chain Attack: How Stolen Credentials Exposed 300+ GitHub Repositories

In a significant cybersecurity incident highlighting the growing risks of software supply chain attacks, Cisco has confirmed a breach of its internal development environment. The attack, linked to...

Vertex AI Vulnerability Exposed: How "Double Agents" Can Weaponize Google Cloud AI for Data Theft

Vertex AI Vulnerability Exposed: How "Double Agents" Can Weaponize Google Cloud AI for Data Theft

In a groundbreaking disclosure on March 31, 2026, researchers from Palo Alto Networks’ Unit 42 revealed a critical architectural vulnerability within Google Cloud’s Vertex AI platform. The flaw,...

Google Cuts Quantum Resources Needed to Break ECC, Raising Pressure on Crypto to Prepare for Post-Quantum Security

Google Cuts Quantum Resources Needed to Break ECC, Raising Pressure on Crypto to Prepare for Post-Quantum Security

Google researchers say the quantum resources required to break the elliptic curve cryptography protecting Bitcoin, Ethereum, and many other blockchain systems may be far lower than previously...

Axios npm Supply Chain Attack Delivers RAT via plain-crypto-js, Hits 83M Weekly-Download Package

Axios npm Supply Chain Attack Delivers RAT via plain-crypto-js, Hits 83M Weekly-Download Package

The npm ecosystem has been hit by a serious supply-chain compromise after attackers published malicious versions of the official Axios package, one of the most widely used HTTP client libraries in...