Latest Articles

Hackers Drain 3.9 Million Dollars from Unleash Protocol After Multisig Wallet Hijack

Hackers Drain 3.9 Million Dollars from Unleash Protocol After Multisig Wallet Hijack

Unleash Protocol has confirmed a major security incident after attackers successfully hijacked control of its multisignature wallet, draining approximately 3.9 million dollars worth of digital...

IBM Warns of Critical API Connect Vulnerability Allowing Remote Authentication Bypass

IBM Warns of Critical API Connect Vulnerability Allowing Remote Authentication Bypass

IBM has issued an urgent security advisory warning customers of a critical vulnerability in its API Connect platform that could allow unauthenticated remote attackers to bypass authentication...

Korean Air Confirms Data Breach Affecting 30,000 Employees After Cl0p Gang Targets Catering Partner

Korean Air Confirms Data Breach Affecting 30,000 Employees After Cl0p Gang Targets Catering Partner

Korean Air has confirmed a significant data breach impacting approximately 30,000 current and former employees after cybercriminals linked to the Cl0p ransomware group compromised systems belonging...

Zoom Stealer Campaign Targets Millions Through Malicious Browser Extensions

Zoom Stealer Campaign Targets Millions Through Malicious Browser Extensions

Cybersecurity researchers have uncovered a large-scale malicious campaign dubbed Zoom Stealer, which has compromised more than 2.2 million browser users through the abuse of malicious browser...

ALPHV BlackCat Ransomware Affiliates Plead Guilty, Exposing Insider Threats in Cybersecurity Industry

ALPHV BlackCat Ransomware Affiliates Plead Guilty, Exposing Insider Threats in Cybersecurity Industry

Two United States-based cybersecurity professionals have pleaded guilty to secretly operating as affiliates for the notorious ALPHV, also known as BlackCat, ransomware group. The announcement, made...

Artemis Healthcare Ransomware Attack Exposes Patient and Operational Data

Artemis Healthcare Ransomware Attack Exposes Patient and Operational Data

Artemis Healthcare, a Tennessee-based healthcare services provider, has disclosed a ransomware incident involving the theft of sensitive data and the compromise of internal email accounts. The attack...

APT36 Targets Indian Government and Strategic Entities With Multi-Stage LNK Malware Campaign

APT36 Targets Indian Government and Strategic Entities With Multi-Stage LNK Malware Campaign

CYFIRMA has identified a highly targeted cyber espionage campaign attributed to APT36, also known as Transparent Tribe, a Pakistan aligned threat actor with a long history of operations against...

European Space Agency Confirms Breach of External Servers as Threat Actors Leak Over 200GB of Data

European Space Agency Confirms Breach of External Servers as Threat Actors Leak Over 200GB of Data

The European Space Agency has confirmed a cybersecurity incident involving unauthorised access to external servers used to support unclassified engineering activities, following claims by threat...

Coupang Data Breach Suspect Allegedly Tried to Destroy Evidence by Throwing Laptop into River

Coupang Data Breach Suspect Allegedly Tried to Destroy Evidence by Throwing Laptop into River

South Korean e-commerce giant Coupang has been drawn into renewed scrutiny after investigators revealed that a suspect linked to a recent data breach allegedly attempted to conceal evidence by...

Sax LLP Data Breach Exposes Personal Information of Over 220,000 Individuals After 16-Month Delay

Sax LLP Data Breach Exposes Personal Information of Over 220,000 Individuals After 16-Month Delay

Sax LLP, a prominent United States accounting and advisory firm, has disclosed a major data breach that compromised the sensitive personal information of more than 220,000 individuals. The incident,...

DNS Poisoning as an APT Weapon: Inside Evasive Panda’s MgBot Campaign

DNS Poisoning as an APT Weapon: Inside Evasive Panda’s MgBot Campaign

A sophisticated cyber espionage campaign attributed to the China-linked advanced persistent threat group known as Evasive Panda has revealed how DNS poisoning can be weaponized to achieve silent,...

Ransomware Attack Disrupts IT Systems at Oltenia Energy Complex Without Affecting Romania’s Power Supply

Ransomware Attack Disrupts IT Systems at Oltenia Energy Complex Without Affecting Romania’s Power Supply

Romania’s largest coal based energy producer, Oltenia Energy Complex, has confirmed it was hit by a ransomware attack that disrupted internal IT systems but did not impact national energy production...

ManageMyHealth New Zealand Hit by Kazu Ransomware Attack as Healthcare Sector Faces Rising Cyber Risk in 2025

ManageMyHealth New Zealand Hit by Kazu Ransomware Attack as Healthcare Sector Faces Rising Cyber Risk in 2025

ManageMyHealth, a New Zealand based digital health platform, has fallen victim to a ransomware attack attributed to the Kazu cybercrime group, highlighting the continued targeting of healthcare...

France’s CNIL Fines Nexpublica €1.7 Million Over Cybersecurity Failures Exposing Sensitive Documents

France’s CNIL Fines Nexpublica €1.7 Million Over Cybersecurity Failures Exposing Sensitive Documents

France’s data protection authority, the Commission Nationale de l’Informatique et des Libertés, has imposed a €1.7 million fine on Nexpublica France after determining that inadequate cybersecurity...

 Sophisticated Spear-Phishing Campaign Abuses npm Registry to Host Credential-Stealing Lures

Sophisticated Spear-Phishing Campaign Abuses npm Registry to Host Credential-Stealing Lures

In a alarming development for the open-source software ecosystem, cybersecurity researchers have uncovered a prolonged and highly targeted spear-phishing operation that cleverly repurposes the...

MongoBleed Vulnerability Exploitation Raises Alarm Over Memory Disclosure Risks in MongoDB Deployments

MongoBleed Vulnerability Exploitation Raises Alarm Over Memory Disclosure Risks in MongoDB Deployments

A recently highlighted vulnerability known as “MongoBleed” has drawn renewed attention to the risks posed by memory disclosure flaws in widely deployed database platforms. The issue, affecting...

Coinbase Insider Data Breach Case Sees First Arrest as Indian Authorities Detain Former Support Agent

Coinbase Insider Data Breach Case Sees First Arrest as Indian Authorities Detain Former Support Agent

Indian law enforcement has arrested a former customer service agent linked to the insider driven data breach disclosed by :contentReference[oaicite:0]{index=0} earlier this year, marking the first...

Ubisoft Investigates Alleged Data Breach Amid Claims of 900GB Internal Data Exposure Linked to MongoDB Flaw

Ubisoft Investigates Alleged Data Breach Amid Claims of 900GB Internal Data Exposure Linked to MongoDB Flaw

Ubisoft is investigating a potential cybersecurity incident following unconfirmed claims that attackers accessed and exfiltrated a large volume of internal company data. According to reports...

AI-Driven Threats: Identity is the New Battleground in 2025

AI-Driven Threats: Identity is the New Battleground in 2025

In 2025, the cybersecurity paradigm has undergone a fundamental shift. Attackers have pivoted away from attacking hardened infrastructure and toward attacking the human identity. By weaponizing...

The Wrench Attack Explained: Why Physical Coercion Breaks Digital Security and What CISOs Must Do About It

The Wrench Attack Explained: Why Physical Coercion Breaks Digital Security and What CISOs Must Do About It

The “wrench attack” is one of the most uncomfortable truths in cybersecurity. It refers to a scenario where attackers bypass encryption, authentication, and digital safeguards entirely by using...