Latest Articles

When Updates Become Weapons: The Notepad++ Supply-Chain Intrusion That Hid in Plain Sight Industry: Software, Cybersecurity

When Updates Become Weapons: The Notepad++ Supply-Chain Intrusion That Hid in Plain Sight Industry: Software, Cybersecurity

For months, one of the world’s most trusted developer tools quietly betrayed its users, not through malicious code written by its maintainers, but through a poisoned path designed to deliver...

 Ransomware Siege: The Cyber Assault on New Britain, Connecticut

Ransomware Siege: The Cyber Assault on New Britain, Connecticut

In the quiet hours before dawn on a chilly January morning in 2026, the city of New Britain, Connecticut, found itself under siege. Not from a physical invader, but from a digital one. A...

SolarWinds Web Help Desk Update Patches Critical RCE and Authentication Bypass Flaws

SolarWinds Web Help Desk Update Patches Critical RCE and Authentication Bypass Flaws

SolarWinds has released an urgent security update for its Web Help Desk (WHD) platform after disclosing multiple high risk vulnerabilities, including flaws that allow authentication bypass and...

Apple Introduces New Privacy Feature to Limit Precise Location Tracking on iPhones and iPads

Apple Introduces New Privacy Feature to Limit Precise Location Tracking on iPhones and iPads

Apple is rolling out a new privacy-focused feature designed to reduce how precisely mobile carriers can track the physical location of iPhone and iPad users. The setting, called “Limit Precise...

The Autonomous Adversary: From Chatbot to Criminal Enterprise

The Autonomous Adversary: From Chatbot to Criminal Enterprise

Cybersecurity researchers are warning of a profound shift in the threat landscape as autonomous artificial intelligence agents evolve from experimental tools into fully fledged criminal enterprises....

Silent Control: How a Region-Locked IIS Malware Campaign Is Reshaping Web Server Threats

Silent Control: How a Region-Locked IIS Malware Campaign Is Reshaping Web Server Threats

A low-visibility but highly calculated cyber campaign is quietly rewriting the rules of web server compromise, turning trusted infrastructure into selective tools of manipulation rather than blunt...

Unveiling the eScan Antivirus Supply Chain Attack: A Critical Breach in Cybersecurity

Unveiling the eScan Antivirus Supply Chain Attack: A Critical Breach in Cybersecurity

In the ever-evolving landscape of cyber threats, supply chain attacks stand out as particularly insidious, turning trusted software updates into vectors for malware distribution. The recent...

Ransomware Hits Zenith Aerospace, Raising Alarm Over Defense Supply Chain Exposure

Ransomware Hits Zenith Aerospace, Raising Alarm Over Defense Supply Chain Exposure

Zenith Aerospace has become the latest U.S. defense-linked manufacturer to fall victim to a ransomware attack, an incident that cybersecurity analysts say underscores a widening vulnerability across...

Continental Controls Reports Cybersecurity Incident to BSE Under SEBI Disclosure Rules

Continental Controls Reports Cybersecurity Incident to BSE Under SEBI Disclosure Rules

Indian industrial automation firm Continental Controls Limited has disclosed a cybersecurity incident impacting its information technology systems, formally notifying the Bombay Stock Exchange in...

Panera Bread Data Breach Exposes 5.1 Million Accounts as Incident Is Added to Have I Been Pwned

Panera Bread Data Breach Exposes 5.1 Million Accounts as Incident Is Added to Have I Been Pwned

A large-scale data breach affecting Panera Bread has formally entered the public breach record after being added to the Have I Been Pwned database on January 31, 2026. The incident, dated to January...

Akira Ransomware Claims Breach of Healthcare Firms iGlobal Services and Medenet

Akira Ransomware Claims Breach of Healthcare Firms iGlobal Services and Medenet

The Akira ransomware group has added two healthcare-related organisations to its growing list of alleged victims, claiming to have exfiltrated sensitive internal data from iGlobal Services and...

Vishing for Access: Mandiant Tracks ShinyHunters-Branded SaaS Data Theft Expanding Across Cloud Platforms

Vishing for Access: Mandiant Tracks ShinyHunters-Branded SaaS Data Theft Expanding Across Cloud Platforms

A familiar extortion brand is showing up again, but this time the entry point is not a flashy zero-day. says it has tracked a widening set of intrusions that look consistent with ShinyHunters-branded...

Breach in the Grid: How Russian Hackers Targeted Poland’s Energy Infrastructure

Breach in the Grid: How Russian Hackers Targeted Poland’s Energy Infrastructure

Investigators revealed that Russian hackers gained entry into Poland’s energy grid by exploiting basic security flaws. Several decentralized energy sites were still using default usernames and...

175,000 Exposed Ollama Hosts Raise Alarms Over Large-Scale LLM Abuse

175,000 Exposed Ollama Hosts Raise Alarms Over Large-Scale LLM Abuse

Security researchers are warning that a rapidly expanding layer of open-source AI infrastructure is being left exposed at internet scale, creating new opportunities for abuse. A joint investigation...

Hugging Face Abused to Deploy Android RAT in Sophisticated Mobile Malware Campaign

Hugging Face Abused to Deploy Android RAT in Sophisticated Mobile Malware Campaign

Threat actors are increasingly turning trusted developer platforms into covert malware distribution channels, and a recent campaign abusing Hugging Face highlights how effective this tactic has...

Ivanti Patches Actively Exploited Zero-Day in EPMM as CISA Flags Unauthenticated RCE Risk

Ivanti Patches Actively Exploited Zero-Day in EPMM as CISA Flags Unauthenticated RCE Risk

Ivanti has issued urgent security updates for two previously unknown vulnerabilities affecting its Endpoint Manager Mobile platform, following reports of active exploitation in the wild. One of the...

Wave of Cyberattacks Targets Prominent US Firms: Inside the Breaches at Bumble, Match Group, CrunchBase, and Panera Bread

Wave of Cyberattacks Targets Prominent US Firms: Inside the Breaches at Bumble, Match Group, CrunchBase, and Panera Bread

In a startling development that underscores the persistent vulnerabilities in digital infrastructure, several major American companies have fallen victim to sophisticated cyberattacks. Over the past...

AI-Fuelled Cyber Attacks Surge 70% as Automation Reshapes the Threat Landscape, Check Point Warns

AI-Fuelled Cyber Attacks Surge 70% as Automation Reshapes the Threat Landscape, Check Point Warns

Cyber attacks are accelerating at a pace few organisations were prepared for, driven in large part by the growing use of automation and artificial intelligence by threat actors. New findings from...

ShinyHunters Claim Breach of Bumble, Alleging 30GB Data Exposure

ShinyHunters Claim Breach of Bumble, Alleging 30GB Data Exposure

A well known data extortion group has added one of the world’s largest dating platforms to its growing list of alleged victims. The cybercrime collective ShinyHunters claims it has breached Bumble,...

Kontigo Cyberattack Exposes Vulnerabilities in Stablecoin Banking

Kontigo Cyberattack Exposes Vulnerabilities in Stablecoin Banking

In the rapidly evolving world of digital finance, where stablecoins promise stability and accessibility, a recent cyberattack on Kontigo has highlighted the persistent risks in this sector. Kontigo,...