Security

NCSC warns ransomware attacks to intensify due to AI

The number of cyberattacks will “almost certainly” increase in the next two years as artificial intelligence lowers the entry barrier for less skilled hackers, Britain’s cyber chiefs say..
Read more about NCSC warns ransomware attacks to intensify due to AI

3.5M users' dinner habits exposed in data leak

FreshMenu, which delivers food to Bangalore, Mumbai, Gurgaon, and Delhi, has exposed its customer data to the public.
Read more about 3.5M users' dinner habits exposed in data leak

CISA warns Apple users to update multiple products

Multiple iOS versions running on certain Apple products are at risk from hackers and should be updated now, warns the US Cybersecurity Infrastructure and Security Agency (CISA).
Read more about CISA warns Apple users to update multiple products

iPhone users: turn on new security feature

Apple has released a new security feature called Stolen Device Protection – and you should definitely turn it on, experts say.
Read more about iPhone users: turn on new security feature

Cybercriminals crave cookies, not passwords

All cookies are vulnerable, but they are all it takes to compromise Google or other accounts, Trevor Hilligoss, former FBI digital crime expert and current Vice President of SpyCloud Labs, warns. This was proven by the recently discovered OAuth vulnerability.
Read more about Cybercriminals crave cookies, not passwords

Mother of all breaches reveals 26 billion records: what we know so far

3
The supermassive leak contains data from numerous previous breaches, comprising an astounding 12 terabytes of information, spanning over a mind-boggling 26 billion records.
Read more about Mother of all breaches reveals 26 billion records: what we know so far

Microsoft suffers Russian fueled nation-state attack

The Russian-backed hacker group Midnight Blizzard was detected trying to infiltrate the tech giant’s corporate systems, Microsoft said in a disclosure report filed with the SEC Friday.
Read more about Microsoft suffers Russian fueled nation-state attack

Over a million exposed as Slovenian retailer leaks data

Slovenian retailer DFVU, known for brands like S-mania, Layoners, Mazzaci, and RedLynx, left its customers' private data open, exposing 1.1 million individuals and company administrators.
Read more about Over a million exposed as Slovenian retailer leaks data

Russian threat group ColdRiver launches new malware campaign, say researchers

The Russian threat group ColdRiver – backed by the Kremlin and known for targeting high-ranking Western officials – has added malware to its arsenal of hacking tools.
Read more about Russian threat group ColdRiver launches new malware campaign, say researchers

Erasmus leaves exchange students at risk

A misconfiguration in one of the largest student network systems exposed exchange students in Poland to the risk of fraud and phishing attacks.
Read more about Erasmus leaves exchange students at risk

Cyber spies launch PDF campaign

After nine months, a cyber espionage group has returned to the scene, targeting organizations across North America with infected files.
Read more about Cyber spies launch PDF campaign

Indian trade association exposes sensitive data

The Federation of Indian Chamber of Commerce and Industry (FICCI) exposed an important file, risking indirect financial loss and reputational damage, as well as legal and compliance problems.
Read more about Indian trade association exposes sensitive data

Facebook users targeted with “I’ll miss him so much” scam

The Facebook-oriented scam abuses users’ sense of grief and incorporates BBC branding to attract victims.
Read more about Facebook users targeted with “I’ll miss him so much” scam

Ransomware landscape overview 2023

In 2023, the ransomware groups that we tracked claimed that they successfully targeted a total of 4191 victims, signifying an exceptional year of cyber threats.
Read more about Ransomware landscape overview 2023

Leaked COVID tests expose sensitive patient data

The COVID-19 testing platform, Coronalab.eu, has exposed a database containing 11.8 million patient records, including COVID-19 certificates, test records, passport numbers, and other sensitive details.
Read more about Leaked COVID tests expose sensitive patient data

Facebook jobs scams and how to avoid them

Threat actors are posing as Qualys recruiters, advertising remote job opportunities via Facebook to obtain sensitive information and funds while compromising users and their direct connections.
Read more about Facebook jobs scams and how to avoid them

Team Liquid’s wiki leak exposes 118K users

Liquipedia, an online e-sports platform run by Team Liquid, exposed a database revealing its users’ email addresses and other details.
Read more about Team Liquid’s wiki leak exposes 118K users

India’s Cherrinet ISP leaks user data, exposes accounts to abuse attempts

Some Indian internet users should worry about their data being in the wrong hands. The Cybernews research team discovered an open 1.8TB data trove belonging to internet service provider Cherrinet.
Read more about India’s Cherrinet ISP leaks user data, exposes accounts to abuse attempts

Entire population of Brazil possibly exposed in massive data leak

The private data of hundreds of millions of Brazilians were publicly accessible to threat actors, putting individuals at risk.
Read more about Entire population of Brazil possibly exposed in massive data leak

Saudi Ministry exposed sensitive data for 15 months

Saudi Arabia’s Ministry of Industry and Mineral Resources (MIM) had an environment file exposed, opening up sensitive details for anybody willing to take them. The Cybernews research team believes that the sensitive data was accessible for 15 months.
Read more about Saudi Ministry exposed sensitive data for 15 months