Latest Articles

How WannaMine Works: The Fileless Cryptominer Worm That Turns Windows Admin Tools Into a Mining Rig

How WannaMine Works: The Fileless Cryptominer Worm That Turns Windows Admin Tools Into a Mining Rig

WannaMine is a fileless cryptojacking worm built for one job: hijack CPU cycles at scale to mine Monero. What makes it stand out is not a flashy payload, but its discipline. Instead of dropping a...

Fake PDFs Become the Gateway: How Attackers Are Weaponizing Legitimate RMM Tools

Fake PDFs Become the Gateway: How Attackers Are Weaponizing Legitimate RMM Tools

Threat actors are increasingly abusing legitimate remote monitoring and management tools to gain persistent access to corporate environments, and a new campaign shows just how little technical...

Black Axe Global Crackdown: Europol Arrests 10 Nigerians in €5.93 Million Fraud Operation

Black Axe Global Crackdown: Europol Arrests 10 Nigerians in €5.93 Million Fraud Operation

European law enforcement agencies have intensified their campaign against organised cybercrime with the arrest of 10 Nigerian nationals linked to the notorious Black Axe network. The coordinated...

Betterment Confirms Social Engineering Attack Led to Data Breach and Unauthorized Messages

Betterment Confirms Social Engineering Attack Led to Data Breach and Unauthorized Messages

Betterment has disclosed that a social engineering attack enabled unauthorised access to internal systems, leading to a data breach and the sending of unauthorised messages to customers. The...

Alpha Alternatives Hit by Sinobi Ransomware Attack as India Sees Renewed Pressure from Data

Alpha Alternatives Hit by Sinobi Ransomware Attack as India Sees Renewed Pressure from Data

Alpha Alternatives, an India-based multi-asset class investment firm, has been hit by a ransomware attack attributed to the group known as sinobi, according to incident data emerging this week. The...

Old Instagram Data, New Panic: Why the 17.5 Million Account “Breach” Is Not What It Seems

Old Instagram Data, New Panic: Why the 17.5 Million Account “Breach” Is Not What It Seems

Reports of a massive Instagram data breach involving 17.5 million accounts spread rapidly this month, triggering concern among users already wary of account takeovers and phishing scams. The alarm...

Canopy Healthcare Breach Raises Fresh Questions as July 2025 Intrusion Comes to Light Months Later

Canopy Healthcare Breach Raises Fresh Questions as July 2025 Intrusion Comes to Light Months Later

Canopy Healthcare has confirmed that an unknown party gained temporary unauthorised access to its administrative systems in July 2025, potentially copying a limited volume of sensitive data belonging...

Hackers Access University of Hawaii Cancer Center Patient Data as Delayed Notification Raises Concerns

Hackers Access University of Hawaii Cancer Center Patient Data as Delayed Notification Raises Concerns

The University of Hawaii Cancer Center has disclosed that hackers gained unauthorized access to patient data, with affected individuals not being immediately notified of the incident. The breach has...

Datamasters Data Broker Ban Raises Alarms Over Privacy Violations and Surveillance Risks

Datamasters Data Broker Ban Raises Alarms Over Privacy Violations and Surveillance Risks

Regulators have imposed a sweeping ban on Datamasters, a little-known but highly active data brokerage firm, following findings that the company unlawfully collected, processed, and sold sensitive...

Critical Vulnerability Discovered in Advantech Products Puts Industrial and IoT Environments at Risk

Critical Vulnerability Discovered in Advantech Products Puts Industrial and IoT Environments at Risk

A newly disclosed critical vulnerability tracked as CVE-2025-52694 is affecting multiple Advantech products, raising serious concerns for organizations operating industrial control systems, embedded...

 Unveiling MuddyWater's Latest Spear-Phishing Onslaught: Rust-Based Malware Targets Middle East Sectors

Unveiling MuddyWater's Latest Spear-Phishing Onslaught: Rust-Based Malware Targets Middle East Sectors

In the ever-evolving landscape of cyber threats, the Iranian-linked advanced persistent threat group known as MuddyWater has once again demonstrated its prowess in conducting sophisticated espionage...

Irony in the Shadows: BreachForums Database Leak Exposes Over 320,000 Hacker Accounts

Irony in the Shadows: BreachForums Database Leak Exposes Over 320,000 Hacker Accounts

In a twist of fate that underscores the precarious nature of the underground hacking world, the notorious BreachForums hacking forum has fallen victim to its own specialty: a massive data breach. On...

Fake AI Chrome Extensions Hijack ChatGPT and DeepSeek Data, Exposing 900,000 Users

Fake AI Chrome Extensions Hijack ChatGPT and DeepSeek Data, Exposing 900,000 Users

A sophisticated browser-based espionage campaign has quietly compromised the data of nearly 900,000 users by abusing trust in popular AI tools. Security researchers have uncovered a network of fake...

Instagram Leak Claims Spark Password Reset Surge: What 17.5 Million Exposed Accounts Could Mean for Users Now

Instagram Leak Claims Spark Password Reset Surge: What 17.5 Million Exposed Accounts Could Mean for Users Now

Millions of Instagram users are being hit by an unusual wave of password reset emails, and the timing is fuelling a worrying claim: that the personal details of roughly 17.5 million accounts are...

KongTuke ClickFix Activity Fuels New Wave of Social Engineering Malware Infections

KongTuke ClickFix Activity Fuels New Wave of Social Engineering Malware Infections

Cybersecurity researchers are tracking a growing campaign known as KongTuke ClickFix, a deceptive social engineering operation that abuses fake error prompts and verification messages to trick users...

MassLogger Malware Spreads Through Malicious Email Attachments in Ongoing Credential Theft Campaign

MassLogger Malware Spreads Through Malicious Email Attachments in Ongoing Credential Theft Campaign

Cybersecurity researchers are warning of a renewed surge in MassLogger malware infections, driven primarily by malicious email attachments designed to trick recipients into executing the...

Illinois Department of Human Services Data Breach Impacts 700,000 Individuals as Notifications Continue

Illinois Department of Human Services Data Breach Impacts 700,000 Individuals as Notifications Continue

The Illinois Department of Human Services has disclosed a significant data breach affecting approximately 700,000 individuals, highlighting persistent cybersecurity challenges within government human...

Global “Lone Hacker” Campaign Breaches Data of 50 Major Companies Using Stolen Passwords

Global “Lone Hacker” Campaign Breaches Data of 50 Major Companies Using Stolen Passwords

A single threat actor operating under the aliases Zestix and Sentap has managed to compromise private files belonging to more than 50 major organizations worldwide, exposing a stark and uncomfortable...

Russian APT28 Launches Credential Harvesting Campaigns Across Europe and Central Asia

Russian APT28 Launches Credential Harvesting Campaigns Across Europe and Central Asia

Russian state sponsored threat actors linked to APT28, also known as BlueDelta, have launched a series of targeted credential harvesting campaigns against organizations across Europe and Central...

Blackshrantac Targets Schneider Prototyping India in Ransomware Attack

Blackshrantac Targets Schneider Prototyping India in Ransomware Attack

A ransomware group operating under the name Blackshrantac has claimed responsibility for a cyberattack against Schneider Prototyping India Pvt. Ltd., an industrial technology firm operating in India....