Latest Articles

Iberia Airlines Data Breach

Iberia Airlines Data Breach

Spanish flag-carrier Iberia Airlines has confirmed a data-security incident involving unauthorized access to customer data. The airline states that the breach stems from a compromise of systems...

SitusAMC Hack Impacting Major U.S. Banks

SitusAMC Hack Impacting Major U.S. Banks

On 12 November 2025, U.S. real-estate-loan-servicing vendor SitusAMC disclosed a cyberattack that may have exposed sensitive corporate and customer-data belonging to several major U.S. banks. The...

7-Zip Zero-Click Code Execution Flaw Exposes Millions as Public Exploit Emerges

7-Zip Zero-Click Code Execution Flaw Exposes Millions as Public Exploit Emerges

November 23, 2025 A long-patched but widely unmitigated vulnerability in 7-Zip has officially entered its most dangerous phase: a fully functional, easy-to-use exploit is now publicly available...

Harvard University Alumni Affairs Data Breach Exposes Sensitive Community Information

Harvard University Alumni Affairs Data Breach Exposes Sensitive Community Information

Harvard University has announced a data breach affecting its Alumni Affairs systems, raising concerns across the global academic community. The university confirmed that an unauthorized party gained...

AerodromeFi Frontend Breach Sparks Urgent Security Response

AerodromeFi Frontend Breach Sparks Urgent Security Response

AerodromeFi, a popular decentralized finance platform operating on the Base network, experienced a significant security breach after attackers compromised its frontend interface. The platform...

Cl0p Ransomware Strikes Broadcom: Zero-Day in Oracle E-Business Suite Exposes Semiconductor Crown Jewel

Cl0p Ransomware Strikes Broadcom: Zero-Day in Oracle E-Business Suite Exposes Semiconductor Crown Jewel

Between November 19 and November 21, Cl0p added more than twenty major organizations to its dark-web leak site in a coordinated exploitation wave targeting a previously unknown zero-day vulnerability...

DragonForce Ransomware Cartel Hits Four New Victims in U.S. and UAE

DragonForce Ransomware Cartel Hits Four New Victims in U.S. and UAE

Date: November 21, 2025 A major escalation in DragonForce’s ransomware operations has been reported: the group claims four new victims within the past 48 hours, with targets spread across the...

Devman Ransomware Targets U.S. Procurement Firm Procure.com in Severe Cyberattack

Devman Ransomware Targets U.S. Procurement Firm Procure.com in Severe Cyberattack

Date: November 18, 2025 Summary: Devman ransomware operators have launched a major cyberattack against Procure.com, a prominent U.S.-based procurement and supply-chain management services...

Indian Shipyard Data Leak Leads to Multiple Arrests as Authorities Uncover Espionage Operation

Indian Shipyard Data Leak Leads to Multiple Arrests as Authorities Uncover Espionage Operation

Indian authorities have arrested several individuals in connection with a significant data leakage incident involving sensitive information from major shipyards across the country. The breach,...

The New Front Lines: Fileless Attacks via Browser Notifications & Weaponized Security Tools

The New Front Lines: Fileless Attacks via Browser Notifications & Weaponized Security Tools

The cybersecurity landscape is rapidly evolving, with threat actors abandoning traditional malware techniques for stealthier, more sophisticated methods. Two major campaigns are dominating recent...

ALERT: CISA Warns of Critical Oracle Identity Manager Zero-Day Under Active Attack

ALERT: CISA Warns of Critical Oracle Identity Manager Zero-Day Under Active Attack

A critical flaw in **Oracle Identity Manager (OIM)** is being leveraged by threat actors for unauthenticated Remote Code Execution (RCE). Organizations must patch immediately. ...

Google Threat Intelligence Tracks Three Year Espionage Campaign Using BADAUDIO Malware

Google Threat Intelligence Tracks Three Year Espionage Campaign Using BADAUDIO Malware

Google Threat Intelligence Group has revealed findings from a multi year investigation into APT24, a threat actor linked to the People's Republic of China. The group has been conducting a long...

Salesforce-Gainsight Supply-Chain Breach Exposes Customer Data at Scale

Salesforce-Gainsight Supply-Chain Breach Exposes Customer Data at Scale

Salesforce Inc. has disclosed a major security incident in which customer data may have been accessed via third-party applications published by Gainsight. The breach highlights the growing risk...

CrowdStrike Fires Insider After Discovery of Sensitive Data Leak to Hackers

CrowdStrike Fires Insider After Discovery of Sensitive Data Leak to Hackers

CrowdStrike has dismissed an employee following the discovery of an internal breach involving the unauthorised sharing of sensitive information with external threat actors. The incident has...

Cl0p Ransomware Allegedly Breaches Broadcom via Oracle E-Business Suite Zero-Day

Cl0p Ransomware Allegedly Breaches Broadcom via Oracle E-Business Suite Zero-Day

The ransomware gang known as Cl0p has claimed responsibility for compromising Broadcom Inc., the major U.S.-based semiconductor and infrastructure software company. According to published statements...

Massive Global Scanning Campaign Targets Palo Alto Networks GlobalProtect VPN Portals

Massive Global Scanning Campaign Targets Palo Alto Networks GlobalProtect VPN Portals

Summary: A large, coordinated scanning operation has been probing GlobalProtect VPN portals at scale, raising concerns about reconnaissance, credential theft, and potential follow-on attacks against...

HackOnChat WhatsApp Scam Targets Users With Fake Support Messages

HackOnChat WhatsApp Scam Targets Users With Fake Support Messages

A new WhatsApp scam known as HackOnChat is circulating rapidly across multiple regions. The operation relies on convincing social engineering tactics that trick users into handing over...

Sturnus Trojan Resurfaces With Advanced Capabilities and Expanding Global Reach

Sturnus Trojan Resurfaces With Advanced Capabilities and Expanding Global Reach

The Sturnus Trojan is making a renewed appearance across multiple regions, prompting security teams to raise their alert levels. Originally identified several years ago, the malware has evolved...

ShadowRay 2.0 Emerges as a Stealthier and More Persistent Cyber Threat

ShadowRay 2.0 Emerges as a Stealthier and More Persistent Cyber Threat

A newly identified wave of malicious activity known as ShadowRay 2.0 is drawing widespread concern in the cybersecurity community. This updated variant of the original ShadowRay operation is...

Pro-Russian Hackers Breach Australian Defence Supplier IKAD Engineering in Supply-Chain Attack

Pro-Russian Hackers Breach Australian Defence Supplier IKAD Engineering in Supply-Chain Attack

In a carefully orchestrated supply-chain attack, the pro-Russian hacktivist collective known as “J Group” has penetrated IKAD Engineering, a critical second-tier subcontractor on Australia’s $1.5...