Latest Articles

RMZ Oilfield Engineering Targeted in Qilin Ransomware Attack

RMZ Oilfield Engineering Targeted in Qilin Ransomware Attack

RMZ Oilfield Engineering has reportedly become the latest victim of a ransomware attack attributed to the Qilin ransomware group, a cybercriminal operation known for targeting organizations across...

Data Breach Reported at Rayan Parto Danesh International Institute

Data Breach Reported at Rayan Parto Danesh International Institute

A data breach involving the Rayan Parto Danesh International Institute has raised concerns about the security of educational institutions and the protection of sensitive academic and administrative...

 How One Infostealer Infection Solved a Global Supply Chain Mystery and Unmasked DPRK Spies in U.S. Crypto

How One Infostealer Infection Solved a Global Supply Chain Mystery and Unmasked DPRK Spies in U.S. Crypto

On August 6, 2024, an endpoint named DESKTOP-OG1CFR5 running Windows 10 Enterprise became the unlikely center of an international investigation. The user, searching for legitimate IT utilities,...

Critical SQL Injection Vulnerability in Elementor Ally Plugin Threatens Over 250,000 WordPress Sites

Critical SQL Injection Vulnerability in Elementor Ally Plugin Threatens Over 250,000 WordPress Sites

The Elementor Ally plugin is an accessibility enhancement tool created for websites built with the Elementor page builder. It provides features such as keyboard navigation improvements, screen reader...

Iran-Linked Hackers Claim Cyberattack on Albania’s Parliament Email Systems

Iran-Linked Hackers Claim Cyberattack on Albania’s Parliament Email Systems

Albania’s parliament has reportedly been targeted by a cyberattack that disrupted internal email services and temporarily prevented lawmakers and administrative staff from accessing parliamentary...

WhatsApp Introduces Parent-Managed Accounts to Enhance Safety for Pre-Teens

WhatsApp Introduces Parent-Managed Accounts to Enhance Safety for Pre-Teens

WhatsApp has introduced a new feature designed to give parents greater oversight of younger users on the messaging platform. The company is rolling out parent-managed accounts for pre-teens, enabling...

Researchers Trick Perplexity’s Comet AI Browser Into Phishing Scam in Under Four Minutes

Researchers Trick Perplexity’s Comet AI Browser Into Phishing Scam in Under Four Minutes

Security researchers have demonstrated that Perplexity’s Comet browser can be manipulated into completing a phishing workflow in less than four minutes of iterative testing, highlighting a...

PhantomRaven Supply Chain Attack Targets JavaScript Developers Through Malicious NPM Packages

PhantomRaven Supply Chain Attack Targets JavaScript Developers Through Malicious NPM Packages

A new wave of the PhantomRaven supply chain campaign has been discovered targeting the npm package registry, where attackers published dozens of malicious JavaScript packages designed to steal...

Stryker Hit by Wiper Malware Attack Claimed by Iranian-Linked Hacktivist Group Handala

Stryker Hit by Wiper Malware Attack Claimed by Iranian-Linked Hacktivist Group Handala

Stryker Corporation, one of the world’s largest medical technology companies, is reportedly dealing with a major cyberattack involving destructive wiper malware that has disrupted operations across...

UNC6426 Exploits Nx NPM Supply Chain Attack to Gain AWS Administrator Access Within 72 Hours

UNC6426 Exploits Nx NPM Supply Chain Attack to Gain AWS Administrator Access Within 72 Hours

A sophisticated cyber intrusion attributed to the threat actor tracked as UNC6426 demonstrates how modern software supply chain attacks can rapidly escalate into full cloud environment compromises....

OpenAI to Acquire AI Security Startup Promptfoo to Strengthen Enterprise AI Safety and Red-Teaming Capabilities

OpenAI to Acquire AI Security Startup Promptfoo to Strengthen Enterprise AI Safety and Red-Teaming Capabilities

OpenAI has announced plans to acquire Promptfoo, an artificial intelligence security startup known for developing tools that help organizations test and harden large language models against...

Bell Ambulance (Wisconsin) Data Breach Exposes Personal Data of 235,000 After Medusa Ransomware Cyberattack

Bell Ambulance (Wisconsin) Data Breach Exposes Personal Data of 235,000 After Medusa Ransomware Cyberattack

A major cybersecurity incident affecting Bell Ambulance, the largest private ambulance service provider in Wisconsin, has exposed sensitive personal information belonging to more than 235,000...

Fortinet, Ivanti, and Intel Release Critical Security Patches for High-Severity Vulnerabilities

Fortinet, Ivanti, and Intel Release Critical Security Patches for High-Severity Vulnerabilities

Fortinet, Ivanti, and Intel have released security updates addressing multiple vulnerabilities across their enterprise products and firmware ecosystems, including several high-severity flaws that...

Meta Expands Anti-Scam Defenses Across WhatsApp, Facebook, and Messenger as Fraud Tactics Grow More Sophisticated

Meta Expands Anti-Scam Defenses Across WhatsApp, Facebook, and Messenger as Fraud Tactics Grow More Sophisticated

Meta has unveiled a new round of anti-scam protections across WhatsApp, Facebook, and Messenger, signaling a sharper push to stop fraud earlier in the attack chain rather than relying only on...

Unveiling BeatBanker: The Stealthy Android Malware Masquerading as Starlink App

Unveiling BeatBanker: The Stealthy Android Malware Masquerading as Starlink App

In the ever-evolving landscape of cyber threats, a new Android malware has emerged, blending sophisticated deception with powerful malicious capabilities. Dubbed BeatBanker by researchers, this...

Ericsson U.S. Discloses Data Breach After Third-Party Provider Hack Exposes Employee and Customer Data

Ericsson U.S. Discloses Data Breach After Third-Party Provider Hack Exposes Employee and Customer Data

Ericsson’s U.S. division has confirmed a data breach after attackers compromised a third-party service provider that stored certain company data. According to a breach notification submitted to...

“LeakyLooker” Flaws in Google Looker Studio Could Have Enabled Cross-Tenant SQL Attacks

“LeakyLooker” Flaws in Google Looker Studio Could Have Enabled Cross-Tenant SQL Attacks

Cybersecurity researchers have disclosed a group of nine vulnerabilities affecting Google Looker Studio that could have allowed attackers to execute arbitrary SQL queries across different cloud...

Microsoft Patch Tuesday March 2026 Fixes 79 Vulnerabilities Including Two Public Zero-Days

Microsoft Patch Tuesday March 2026 Fixes 79 Vulnerabilities Including Two Public Zero-Days

Microsoft has released its March 2026 Patch Tuesday security updates addressing 79 vulnerabilities across its software ecosystem, including two publicly disclosed zero-day vulnerabilities. The update...

Crypto Firm Loses Millions After Developer Transfers Trojanized File From Personal Device

Crypto Firm Loses Millions After Developer Transfers Trojanized File From Personal Device

A cryptocurrency company has reportedly lost millions of dollars after attackers exploited a seemingly harmless workflow between a developer’s personal device and a corporate workstation. Security...

Mass Scanning and Exploitation Attempts on Salesforce Experience Cloud Sites: A Rising Cybersecurity Challenge

Mass Scanning and Exploitation Attempts on Salesforce Experience Cloud Sites: A Rising Cybersecurity Challenge

In the ever-evolving landscape of cybersecurity threats, a new campaign has emerged targeting one of the world's leading cloud platforms. Threat actors are conducting widespread scans and...