Latest Articles

Habib Bank AG Zurich – Qilin Hit

Habib Bank AG Zurich – Qilin Hit

Breaking | Wednesday, 5 November 2025 On the morning of 5 November 2025, the notorious Qilin ransomware gang added Switzerland’s Habib Bank AG Zurich to its dark-web leak site—claiming the...

Top 10 Cloud Misconfigurations Still Exploited in 2025 - and How to Fix Them

Top 10 Cloud Misconfigurations Still Exploited in 2025 - and How to Fix Them

As cloud adoption accelerates, so do the mistakes. Misconfigurations remain the leading cause of cloud breaches — responsible for more than 60% of cloud security incidents according to recent...

Balancer V2 Exploit Drains Over $100 Million in Latest DeFi Liquidity Attack

Balancer V2 Exploit Drains Over $100 Million in Latest DeFi Liquidity Attack

Balancer — a major automated market maker (AMM) and liquidity infrastructure protocol — suffered a large exploit against its V2 vaults, resulting in rapid drains from multiple liquidity pools and...

Hackers Abuse OpenAI Accounts for Malware Command-and-Control: A New Frontier in Cyber Threats

Hackers Abuse OpenAI Accounts for Malware Command-and-Control: A New Frontier in Cyber Threats

In the ever-evolving landscape of cybersecurity, where innovation and malice dance a perilous tango, a chilling new tactic has emerged from the shadows. Hackers are no longer content with traditional...

Rhysida Ransomware Gang Launches Malvertising Campaign Deploying OysterLoader

Rhysida Ransomware Gang Launches Malvertising Campaign Deploying OysterLoader

Date: October 31, 2025 Overview: The ransomware-as-a-service group Rhysida has initiated a new malvertising campaign that uses fake search-ads and spoofed download portals to deliver the...

Zero-Day Nightmare: How China’s TICK APT Weaponized Lanscope for Total Endpoint Takeover

Zero-Day Nightmare: How China’s TICK APT Weaponized Lanscope for Total Endpoint Takeover

In the most explosive zero-day campaign of 2025, China’s elite TICK unit—also known as Bronze Butler—turned Japan’s favorite endpoint manager into a skeleton-key for 200+ enterprises. For 53 straight...

Proton Breach Alert: 300M+ Stolen Credentials

Proton Breach Alert: 300M+ Stolen Credentials

Over 300 Million Stolen Credentials Exposed on the Dark Web in 2025 November 3, 2025 CRITICAL ALERT The underground economy of stolen data has...

 Boyd Gaming Suffers Major Data Breach Impacting Employee Information

Boyd Gaming Suffers Major Data Breach Impacting Employee Information

Boyd Gaming Corporation, one of the largest casino and entertainment companies in the United States, has disclosed a significant cybersecurity incident involving unauthorized access to its internal...

Hacker Claims Responsibility for Penn Email Breach, Alleges Theft of Data from 1.2 Million People

Hacker Claims Responsibility for Penn Email Breach, Alleges Theft of Data from 1.2 Million People

A threat actor claiming responsibility for a recent mass-email incident tied to the University of Pennsylvania (Penn) says they stole data for approximately 1.2 million students, alumni and donors....

BADCANDY Implant Targets Cisco IOS XE Devices (CVE-2023-20198)

BADCANDY Implant Targets Cisco IOS XE Devices (CVE-2023-20198)

Threat actors are deploying a malicious implant dubbed BADCANDY on Cisco IOS XE devices vulnerable to CVE-2023-20198, a previously exploited privilege-escalation flaw that allows unauthenticated...

Qilin Ransomware Unleashes Hybrid Attack Using Windows Subsystem for Linux

Qilin Ransomware Unleashes Hybrid Attack Using Windows Subsystem for Linux

In-Depth Cyber Threat Analysis | November 2025 The ransomware battlefield has shifted once again. Qilin, one of the most aggressive and technically sophisticated...

Apache OpenOffice Hit by Alleged Akira Ransomware Breach

Apache OpenOffice Hit by Alleged Akira Ransomware Breach

The Akira ransomware group claims it exfiltrated ~23 GB of data from Apache OpenOffice. Data allegedly includes personal, financial, and internal project files. No verified evidence of encryption...

Nation-State Cyberattack Hits Ribbon Communications: Telecom Infrastructure Vendor Compromised

Nation-State Cyberattack Hits Ribbon Communications: Telecom Infrastructure Vendor Compromised

Location: United States • Date disclosed: October 2025 Incident Summary: Ribbon Communications, a U.S.-based provider of telecom software, voice and data networking technologies, and a vendor to...

Conduent Data Breach: Over 10.5 Million Individuals Exposed in Prolonged Cyber Intrusion

Conduent Data Breach: Over 10.5 Million Individuals Exposed in Prolonged Cyber Intrusion

In one of the most significant cybersecurity events of 2025, Conduent Business Services, LLC—a leading provider of back-office and digital solutions for governments and enterprises—has disclosed a...

The MasTec Infrastructure Breach: Clop Ransomware Targets Critical Construction

The MasTec Infrastructure Breach: Clop Ransomware Targets Critical Construction

BREAKING CRITICAL INFRASTRUCTURE CLOP RANSOMWARE Published November 1, 2025 | CyberWatch Report ...

University of Pennsylvania Investigates Security Breach After Offensive Email Campaign

University of Pennsylvania Investigates Security Breach After Offensive Email Campaign

The University of Pennsylvania (Penn) is currently investigating a cybersecurity incident in which multiple students, alumni and faculty received inflammatory emails sent from official university...

The TMF Logistics Ransomware Attack: Disrupting North African Supply Chains

The TMF Logistics Ransomware Attack: Disrupting North African Supply Chains

November 1, 2025 In an era where global trade relies on seamless logistics, ransomware attacks pose a severe threat to interconnected supply chains. The recent assault on TMF...

China Mandates 1-Hour Reporting for “Serious” Cybersecurity Incidents

China Mandates 1-Hour Reporting for “Serious” Cybersecurity Incidents

China’s Cyberspace Administration of China (CAC) has finalized the Administrative Measures for the Reporting of National Cybersecurity Incidents, creating a unified national framework that...

Botnet Surge: Mirai, Gafgyt and Mozi Ramp Up Attacks Against PHP, IoT and Cloud Gateways

Botnet Surge: Mirai, Gafgyt and Mozi Ramp Up Attacks Against PHP, IoT and Cloud Gateways

Date: October 30, 2025 Summary: Security researchers have observed a rapid surge in automated botnet activity over the last 24 hours, with long-standing IoT botnets — Mirai, Gafgyt and Mozi —...

China-Linked APT Exploits VMware Zero-Day CVE-2025-41244 to Breach Enterprise Networks

China-Linked APT Exploits VMware Zero-Day CVE-2025-41244 to Breach Enterprise Networks

Date: October 30, 2025 Overview: A previously undocumented zero-day vulnerability (CVE-2025-41244) in the widely used virtualization platform VMware vCenter Server is being actively exploited by a...