Latest Articles

Cognizant’s TriZetto Breach Exposes Health Data of 3.4 Million Patients After Year-Long Intrusion

Cognizant’s TriZetto Breach Exposes Health Data of 3.4 Million Patients After Year-Long Intrusion

TriZetto Provider Solutions, a healthcare IT firm owned by Cognizant, has disclosed a major data breach affecting more than 3.4 million individuals. The incident exposed sensitive patient and...

FBI Confirms Server Breach, Investigates Possible Exposure of Sensitive Surveillance Data

FBI Confirms Server Breach, Investigates Possible Exposure of Sensitive Surveillance Data

The Federal Bureau of Investigation has confirmed that a limited number of its internal servers were compromised earlier this year after an external cyber intrusion. The breach was detected on...

Iran-Linked MuddyWater Hackers Deploy New “Dindoor” Backdoor in Campaign Targeting U.S. Networks

Iran-Linked MuddyWater Hackers Deploy New “Dindoor” Backdoor in Campaign Targeting U.S. Networks

Cybersecurity researchers have uncovered a new campaign attributed to the Iranian state-linked hacking group MuddyWater, which has embedded itself inside several U.S. organizations and deployed a...

Secret Keys Exposed: Over 900 Fortune 500 and Government TLS Certificates Found Vulnerable After Massive Key Leak

Secret Keys Exposed: Over 900 Fortune 500 and Government TLS Certificates Found Vulnerable After Massive Key Leak

A new joint study by Google and GitGuardian has uncovered a troubling weakness at the heart of internet security. Researchers found that more than 2,600 valid TLS certificates protecting major...

AI as a Weaponized Workflow: How Cybercriminals Are Embedding Artificial Intelligence Into Attack

AI as a Weaponized Workflow: How Cybercriminals Are Embedding Artificial Intelligence Into Attack

Artificial intelligence is rapidly becoming a core component of modern cybercrime operations. New research from Microsoft Threat Intelligence shows that threat actors are no longer merely...

China-Linked Cyber Espionage: UAT-9244's Assault on South American Telecom Networks

China-Linked Cyber Espionage: UAT-9244's Assault on South American Telecom Networks

In the ever-evolving landscape of global cybersecurity threats, a sophisticated campaign has emerged targeting the backbone of digital communication in South America. A China-linked advanced...

Mail2Shell: Unmasking the Zero-Click Exploit in FreeScout Mail Servers

Mail2Shell: Unmasking the Zero-Click Exploit in FreeScout Mail Servers

In the ever-evolving landscape of cybersecurity threats, a new vulnerability has emerged that poses a significant risk to organizations relying on open-source helpdesk solutions. Dubbed Mail2Shell,...

Extortion Emails Target Restaurants Using HungerRush POS After Vendor Account Compromise

Extortion Emails Target Restaurants Using HungerRush POS After Vendor Account Compromise

Restaurants using the HungerRush point-of-sale platform have been hit with a wave of extortion emails from a threat actor claiming to possess millions of customer records. The messages warned that...

Police Bust Cross-Border Laundering Ring Exploiting War-Displaced Ukrainian Women Through Online Betting

Police Bust Cross-Border Laundering Ring Exploiting War-Displaced Ukrainian Women Through Online Betting

Spanish and Ukrainian authorities have dismantled a sophisticated money laundering network that exploited war-displaced Ukrainian women to open bank accounts used to move illicit funds through online...

Cyber War Command in Tehran Targeted by Israeli Strike, but Digital Threat From Iran Persists

Cyber War Command in Tehran Targeted by Israeli Strike, but Digital Threat From Iran Persists

Israel has confirmed that it carried out a strike on a compound in Tehran believed to host key cyber warfare units tied to Iran’s Islamic Revolutionary Guard Corps and its Intelligence Directorate....

One Exposed API Key, $82,000 Gone in 48 Hours: How a Simple Mistake Triggered a Massive Cloud Bill

One Exposed API Key, $82,000 Gone in 48 Hours: How a Simple Mistake Triggered a Massive Cloud Bill

It took less than two days for a small development team to learn a painful lesson about cloud security. A single exposed API key linked to Google’s Gemini AI platform allowed attackers to rack up an...

Fake “LastPass Support” Email Threads Attempt to Steal Vault Passwords

Fake “LastPass Support” Email Threads Attempt to Steal Vault Passwords

LastPass is warning customers about an ongoing phishing campaign that impersonates the company’s support team using spoofed display names and fabricated internal email threads. The messages are...

Tycoon 2FA Phishing Platform Dismantled in Global Law Enforcement Takedown

Tycoon 2FA Phishing Platform Dismantled in Global Law Enforcement Takedown

An international law enforcement and private-sector coalition has dismantled Tycoon 2FA, a subscription-based phishing-as-a-service platform that enabled cybercriminals to bypass multi-factor...

Suspected Russian Espionage Campaign Deploys “BadPaw” Loader and “MeowMeow” Backdoor Against Ukraine

Suspected Russian Espionage Campaign Deploys “BadPaw” Loader and “MeowMeow” Backdoor Against Ukraine

Security researchers have uncovered a suspected Russian espionage campaign targeting Ukrainian entities through a carefully crafted phishing operation. The attack chain begins with a malicious email...

FBI and Europol Dismantle LeakBase Cybercrime Forum, Secure Data of 142,000 Members

FBI and Europol Dismantle LeakBase Cybercrime Forum, Secure Data of 142,000 Members

The FBI has seized the cybercrime forum LeakBase, a platform widely used for buying and selling stolen data, hacking tools, and illicit services. The takedown was carried out as part of a coordinated...

Microsoft Warns of OAuth Redirect Abuse Using Google Logins to Deliver Malware

Microsoft Warns of OAuth Redirect Abuse Using Google Logins to Deliver Malware

Microsoft has issued a warning about an active phishing campaign that abuses legitimate OAuth login flows to redirect victims to attacker-controlled sites, where malware is delivered or credentials...

LexisNexis Confirms Legacy Data Exposure Following Contained Security Incident

LexisNexis Confirms Legacy Data Exposure Following Contained Security Incident

Data analytics firm LexisNexis has confirmed that information recently posted on a cybercriminal forum is authentic and tied to a security incident involving a limited number of internal servers. ...

CISA Flags Critical Remote Code Execution Vulnerability in VMware Aria Operations as Actively Exploited in Attacks

CISA Flags Critical Remote Code Execution Vulnerability in VMware Aria Operations as Actively Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency has issued a high priority warning after adding a serious security flaw in Broadcoms VMware Aria Operations platform to its Known Exploited...

AkzoNobel Faces Ransomware Breach: Anubis Claims Massive Data Theft from U.S. Facility

AkzoNobel Faces Ransomware Breach: Anubis Claims Massive Data Theft from U.S. Facility

In early March 2026, AkzoNobel, the Dutch multinational corporation famous for paints, coatings, and specialty chemicals under brands such as Dulux, Sikkens, International, and Interpon, confirmed...

Honeywell, Researcher Clash Over Impact of IQ4 Building Controller Vulnerability

Honeywell, Researcher Clash Over Impact of IQ4 Building Controller Vulnerability

A public disagreement has emerged between Honeywell and security researcher Gjoko Krstic over the severity and real-world exposure of a reported vulnerability affecting Honeywell’s IQ4 building...