Latest Articles

Akira Ransomware Targets ARH Associates: Exposing Over 12GB of Sensitive Engineering Data

Akira Ransomware Targets ARH Associates: Exposing Over 12GB of Sensitive Engineering Data

In a stark reminder of the escalating threats facing the engineering sector, the notorious Akira ransomware group has claimed responsibility for a major cyberattack on ARH Associates, a prominent...

Google Issues Emergency Patch for Actively Exploited Chrome Zero-Day Vulnerability

Google Issues Emergency Patch for Actively Exploited Chrome Zero-Day Vulnerability

Google has released an urgent security update for its Chrome browser to address a critical zero-day vulnerability currently being exploited in the wild. The flaw, tracked as CVE-2025-13223, affects...

Browser-in-the-Browser Attacks: How Fake Login Windows Are Fooling Even Trained Users

Browser-in-the-Browser Attacks: How Fake Login Windows Are Fooling Even Trained Users

A new wave of phishing attacks known as Browser in the Browser, or BitB, is rapidly gaining traction among cybercriminals. These attacks mimic legitimate pop up authentication windows with remarkable...

Petrobras Data Theft Incident: Risk, Exposure and Lessons for Industrial Energy

Petrobras Data Theft Incident: Risk, Exposure and Lessons for Industrial Energy

Brazil’s state-controlled oil & gas giant Petrobras has recently come under scrutiny following reports of a data theft incident that exposed internal documents, production blueprints and sensitive...

Major Ransomware Claim Hits Under Armour: What We Know So Far

Major Ransomware Claim Hits Under Armour: What We Know So Far

Under Armour, the US-based global sports apparel brand, is reportedly the target of a major ransomware incident claimed by the Everest ransomware group. The group published a notice on its dark-web...

Massive DDoS Attack Floods Microsoft Azure and 365 Services

Massive DDoS Attack Floods Microsoft Azure and 365 Services

Microsoft recently experienced a significant disruption when a large-scale distributed denial-of-service (DDoS) attack targeted its cloud infrastructure and productivity services. The event impacted...

Cloudflare Global Outage Disrupts Internet Traffic Across Multiple Regions

Cloudflare Global Outage Disrupts Internet Traffic Across Multiple Regions

A major outage at Cloudflare triggered global service disruptions affecting websites, applications and internet services that rely on the company’s vast edge network. The incident caused slow loading...

Balancer DeFi Protocol Hit by $116 Million Smart Contract Exploit

Balancer DeFi Protocol Hit by $116 Million Smart Contract Exploit

November 18, 2025 - Balancer, the third-largest decentralized liquidity protocol on Ethereum with $2.13 billion in total value locked, suffered a devastating smart contract exploit early Monday...

Major Data Breach at Eurofiber France: Ticket Platform and Cloud Portal Compromised

Major Data Breach at Eurofiber France: Ticket Platform and Cloud Portal Compromised

Eurofiber France has confirmed a significant cybersecurity breach involving unauthorized access to its internal ticket management system and its customer-facing cloud portal. The incident, discovered...

Sinobi Ransomware Disrupts Lincoln IT Operations Amid Targeted Attack

Sinobi Ransomware Disrupts Lincoln IT Operations Amid Targeted Attack

Lincoln IT, a well known managed service provider in the United States, has been hit by a targeted ransomware attack attributed to the Sinobi group. The incident disrupted critical IT services and...

SeAH Holdings Hit by Contractor Breach Exposing Source Code and Internal Credentials

SeAH Holdings Hit by Contractor Breach Exposing Source Code and Internal Credentials

In late 2025, Korean special-steel giant SeAH Holdings revealed that a breach involving one of its contractors had exposed sensitive internal resources. While the parent company has not publicly...

Inside Bengaluru’s Rising Digital Arrest Scam and How Victims Are Being Manipulated

Inside Bengaluru’s Rising Digital Arrest Scam and How Victims Are Being Manipulated

Bengaluru has witnessed a sharp surge in a disturbing form of cyber fraud popularly known as the Digital Arrest scam. This scheme uses intimidation, impersonation and advanced social engineering to...

Ransomware Shakes Pennsylvania’s Legal Hub: How the INC Attack Disrupted Critical Infrastructure

Ransomware Shakes Pennsylvania’s Legal Hub: How the INC Attack Disrupted Critical Infrastructure

In August 2025, the Pennsylvania Office of the Attorney General (PA OAG) found itself at the centre of a major cyber incident when the ransomware-affiliated group known as INC Ransom infiltrated its...

Nova Ransomware Group Paralyzes University of Gävle in Targeted Cyberattack

Nova Ransomware Group Paralyzes University of Gävle in Targeted Cyberattack

November 17, 2025 Cybersecurity Desk The University of Gävle (Högskolan i Gävle), a public institution serving more than 16,000 students and 700 staff in central Sweden, has been completely...

UK Debates Ransom Payment Ban - Lawmakers, Industry and Security Experts Clash Over Risks and Remedies

UK Debates Ransom Payment Ban - Lawmakers, Industry and Security Experts Clash Over Risks and Remedies

Date: November 15, 2025 Summary: A fresh round of debate has erupted in the UK over the government’s proposal to ban ransomware payments by public bodies and critical national infrastructure (CNI)...

Spark Power Ransomware Attack Disrupts Energy Services and Exposes Sensitive Operational Data

Spark Power Ransomware Attack Disrupts Energy Services and Exposes Sensitive Operational Data

Spark Power has confirmed a significant ransomware attack that disrupted internal systems, impacted day to day operations and raised concerns across the energy services sector. The company, known for...

AI Side-Channel Attack on LLMs Exposes Sensitive Model Outputs - The “Whisper Leak”

AI Side-Channel Attack on LLMs Exposes Sensitive Model Outputs - The “Whisper Leak”

Date: November 15, 2025 Summary: Security researchers have disclosed a newly identified class of side-channel attack against large language models (LLMs) deployed in multi-tenant cloud and...

The Top 10 XDR Platforms Empowering Enterprise Cybersecurity in 2025

The Top 10 XDR Platforms Empowering Enterprise Cybersecurity in 2025

The Definitive 2025 Guide to Autonomous, AI-Powered Extended Detection and Response In 2025, XDR is no...

SilentButDeadly: The Network Communication Blocker Neutralizing EDR/AV

SilentButDeadly: The Network Communication Blocker Neutralizing EDR/AV

In the ever-escalating cat-and-mouse game between red teamers and blue team defenders, new tools and techniques constantly emerge to test the limits of security solutions. One such tool that has...

RondoDox Botnet Expands to Enterprise: Critical XWiki Flaw Now Under Active Attack

RondoDox Botnet Expands to Enterprise: Critical XWiki Flaw Now Under Active Attack

A dangerous, multi-purpose botnet known as RondoDox has significantly escalated its operations by adding a critical, unauthenticated remote code execution vulnerability in the XWiki enterprise...