Security
US policymakers mad about phones betraying troops' location to foreign adversaries
Hostile foreign adversaries are using commercial location data to target American servicemembers in an active war zone, 2 US politicians have confirmed for the first time.
Read more about US policymakers mad about phones betraying troops' location to foreign adversaries
Your OnlyFans may not be private – and neither are your passwords
The alleged OnlyFans leak is a stark reminder that your passwords, browsing habits, and private data are never truly hidden online. Experts warn that weak security habits and data breach fatigue are making users increasingly vulnerable to blackmail and fraud.
Read more about Your OnlyFans may not be private – and neither are your passwords
Notepad++ requires urgent update: hackers swapping configs to run malware
Notepad++, a popular text and source code editor used by 28 million users, has released emergency patches fixing three critical vulnerabilities that can be exploited to run malware. A simple, crafted shortcut file can trigger an attack.
Read more about Notepad++ requires urgent update: hackers swapping configs to run malware
IBM investigates alleged data breach spreading across underground forums
On cybercrime forums, even hackers are now wondering whether the latest IBM breach is real data or just another scam wrapped in a billion-dollar name, as IBM starts an investigation into claims of a data breach.
Read more about IBM investigates alleged data breach spreading across underground forums
OpenAI credential-stealing malware found hidden inside popular Codex tool
A popular Codex tool used by thousands of developers has been secretly stealing users’ login tokens for the past month, all by triggering the installation of a malicious npm package. It’s still available for download on Google Play as of today.
Read more about OpenAI credential-stealing malware found hidden inside popular Codex tool
Inside the Charter data breach: hackers leak 13M+ customer data
Charter Communications has suffered a data breach, with hackers leaking tens of millions of its records.
Read more about Inside the Charter data breach: hackers leak 13M+ customer data
CrowdStrike, Google smash Glassworm developer botnet
CrowdStrike has detailed how it joined forces with Google and Shadowserver Foundation in a coordinated effort to take down the Glassworm botnet.
Read more about CrowdStrike, Google smash Glassworm developer botnet
Major data leak hits nearly 20% of Lithuania's population
Around 540,000 people were affected by a data leak at the State Enterprise Centre of Registers. Names, surnames, personal codes, and various documents were exfiltrated.
Read more about Major data leak hits nearly 20% of Lithuania's population
Vengeful researcher Nightmare-Eclipse gets Microsoft’s attention: “Never justifiable and has real-world consequences”
Microsoft Security Response Center (MSRC) released a defensive blog post calling out the vindictive anonymous security researcher, known as Nightmare-Eclipse, for bypassing coordinated disclosure. Behind the corporate language, the message is clear: Microsoft wants researchers to stay in their lanes. It immediately struck a nerve among cyber pros.
Read more about Vengeful researcher Nightmare-Eclipse gets Microsoft’s attention: “Never justifiable and has real-world consequences”
Hackers tricked a Carnival employee and leaked customer names, addresses, and government IDs
Cruise operator Carnival Corp said on Wednesday it had detected a cybersecurity incident involving a compromised account of an employee in April, leading to the leak of certain personal information of individuals, including names, addresses and government-issued identification numbers.
Read more about Hackers tricked a Carnival employee and leaked customer names, addresses, and government IDs
Passports and selfies of 100,000 UK visa applicants leaked, issue remains unaddressed
UK Visa Portal, a third-party website that helps people obtain UK immigration visas, has suffered a major data breach.
Read more about Passports and selfies of 100,000 UK visa applicants leaked, issue remains unaddressed
Stranger danger? Here’s how a random person on the bus can still find you on Instagram
Two strangers exchanged glances on a bus. Then one of them followed the other’s burner account on Instagram.
Read more about Stranger danger? Here’s how a random person on the bus can still find you on Instagram
Hackers adopt double-tap tactics: steal gaming accounts, return with a convincing recovery scam
Victims who had their gaming accounts hijacked are receiving unsolicited Telegram or Discord messages from scammers claiming to have their login credentials and offering help. But it's a trap – gamers lose both the account and their money, Bitdefender warns.
Read more about Hackers adopt double-tap tactics: steal gaming accounts, return with a convincing recovery scam
Delivery mega leak: 840M+ files exposed as US delivery company leaks massive file storage
Over 840 million leaked records include customers’ full names, home addresses, parcel photos, and drivers’ sensitive information.
Read more about Delivery mega leak: 840M+ files exposed as US delivery company leaks massive file storage
More than 185,000 affected in 7-Eleven data breach linked to ShinyHunters
The convenience store giant is notifying more than 185,000 people that their personal data was exposed in a cyberattack, which may have involved a third-party recruitment or franchise management system.
Read more about More than 185,000 affected in 7-Eleven data breach linked to ShinyHunters
Multiple sophisticated fraud campaigns target FIFA World Cup
The 2026 FIFA World Cup, the world's biggest and greatest sports festival, is just a couple of weeks away. A new report shows that cybercriminals are warmed up and ready to take advantage.
Read more about Multiple sophisticated fraud campaigns target FIFA World Cup
Nightmare-Eclipse vs Microsoft saga continues: vigilante kicked off GitLab following GitHub ban
The controversial security researcher known as Nightmare-Eclipse, who has been persistently releasing unpatched Windows zero-days as a vendetta against Microsoft, has been booted from GitLab just days after migrating from GitHub.
Read more about Nightmare-Eclipse vs Microsoft saga continues: vigilante kicked off GitLab following GitHub ban
Apple and Google warn Canada bill could force secret backdoors into encrypted devices
Apple and Alphabet's Google on Tuesday pushed to amend an online safety bill working its way through Canada's parliament to add judicial oversight to what the firms described as a potential for secret orders to break the encryption of their software and devices.
Read more about Apple and Google warn Canada bill could force secret backdoors into encrypted devices
Dutch civil servants urge the government to leave X
Dutch ministries should stop using X for information purposes, senior civil servants have said in an internal memo citing hate speech, racism, and disinformation. However, so far, politicians are staying on X. Could it be because of serious political FOMO?
Read more about Dutch civil servants urge the government to leave X
Someone just deleted $8.2 million worth of bitcoin by sending it to a burn address
Someone just sent a crazy amount of money – 107 bitcoins, worth $8.2 million – to a burn address which has no private key, meaning that the money will never be recovered.
Read more about Someone just deleted $8.2 million worth of bitcoin by sending it to a burn address