Security
Verizon opens investigation into stolen customer data being sold online
More than six million telecom customer records are now allegedly up for sale online, raising fresh fears about how deeply attackers may have penetrated a major Verizon partner.
Read more about Verizon opens investigation into stolen customer data being sold online
Microsoft uncovers new campaign built on persistent Teams voice phishing
In a sign that attackers are increasingly leveraging trusted infrastructure to evade detection, a new campaign, uncovered by Microsoft, relied less on exploiting software vulnerabilities and more on deception and legitimate tools.
Read more about Microsoft uncovers new campaign built on persistent Teams voice phishing
EU sanctions Chinese and Iranian companies for carrying out cyberattacks against Member States
The Council of the European Union has taken action against two Chinese tech companies, two Chinese nationals, and an Iranian tech company for executing cyberattacks.
Read more about EU sanctions Chinese and Iranian companies for carrying out cyberattacks against Member States
100,000 personal emails of ex-Mossad research head leaked, pro-Iran hackers claim with new Stryker leak
Pro-Iranian hacker group Handala claims it leaked 100,000 personal emails tied to an ex-Mossad research head as medtech firm Stryker says it contained cyberattack.
Read more about 100,000 personal emails of ex-Mossad research head leaked, pro-Iran hackers claim with new Stryker leak
Da Vinci robot maker Intuitive Surgical hit by hackers, data compromised
Hackers breached Intuitive Surgical after a targeted phishing attack, exposing employee and customer data. The company says its da Vinci and Ion platforms remain safe and operational.
Read more about Da Vinci robot maker Intuitive Surgical hit by hackers, data compromised
Sweden’s digital ID provider CGI Sweden confirms data breach
Hackers claim they’ve cracked a contractor tied to Sweden’s digital ID system, leaking code and credentials that could expose how citizens log in to government services.
Read more about Sweden’s digital ID provider CGI Sweden confirms data breach
BreachForums down, cyber defenders claim it was their doing
BreachForums, the notorious cybercriminal marketplace that’s used for trading, leaking, and selling stolen data, is now offline, showing a persistent “502 Bad Gateway” error on both its clearnet and onion versions. What happened?
Read more about BreachForums down, cyber defenders claim it was their doing
Threat actors linked to Russia target Ukrainian entities with new backdoor
A new campaign targeting Ukrainian entities and attributed to actors linked to Russia employs various judicial- and charity-themed lures to deploy a JavaScript‑based backdoor that runs in the Edge browser.
Read more about Threat actors linked to Russia target Ukrainian entities with new backdoor
Scammers are now skipping inboxes and going straight for your calendar
Cybercriminals are abusing calendar invites to skip inboxes and deliver fake invoices. They’re tricking victims into taking immediate action, which usually involves contacting the scammers, Malwarebytes warns.
Read more about Scammers are now skipping inboxes and going straight for your calendar
Microsoft reveals SEO poisoning campaign that baits users into downloading fake VPN software
Hackers are manipulating search results to lure users looking for legitimate VPN software to malicious downloads that install trojanized VPN clients and steal enterprise credentials.
Read more about Microsoft reveals SEO poisoning campaign that baits users into downloading fake VPN software
“No” means “Yes”: developers are going crazy over disobedient Claude coding assistant
Vibe-coders are complaining that Claude Code, the flagship AI coding assistant from Anthropic, has a compliance problem. “No” isn’t a hard stop – when specifically told not to do something, the AI assistant runs with its original idea anyway.
Read more about “No” means “Yes”: developers are going crazy over disobedient Claude coding assistant
Meta shuts down 150,000 Facebook scam accounts, 21 arrested in global crackdown
The operation removed more than 150,000 fraudulent accounts across Facebook and led to the arrest of 21 individuals linked to organized fraud groups targeting victims worldwide.
Read more about Meta shuts down 150,000 Facebook scam accounts, 21 arrested in global crackdown
South Korea fines Lotte Card after hack exposes data of nearly 3 million customers
South Korean regulators have fined credit card provider Lotte Card 9.6 billion won (about $6.5 million) after a cyberattack exposed the sensitive personal data of 2.97 million customers.
Read more about South Korea fines Lotte Card after hack exposes data of nearly 3 million customers
Authorities shut down cybercrime service that sold access to 369,000 home internet connections
Authorities have disrupted a massive cybercrime platform, SocksEscort, which quietly hijacked 369,000 WiFi routers and other devices, and helped hackers hide their malicious traffic behind residential IP addresses. People were often unaware that their IPs were being used for cybercrime.
Read more about Authorities shut down cybercrime service that sold access to 369,000 home internet connections
Researchers ask AI agents to create LinkedIn posts. They publish passwords instead
No one asked them to do it. No adversarial prompting was employed. But these AI agents, deployed for routine enterprise tasks in a test, still went rogue and autonomously hacked the systems they were operating in.
Read more about Researchers ask AI agents to create LinkedIn posts. They publish passwords instead
How Oscar season becomes prime time for malware attacks
Illegally downloading the latest Oscar contender might feel like beating the system. But when the malware kicks in, as Morpheus once said, “Welcome to the real world.” Lurking in the shadows lies a common enemy of both the illegal streamer and the movie studios.
Read more about How Oscar season becomes prime time for malware attacks
Researcher discovers severe antivirus blind spot: corrupted ZIP files evade nearly all scanners
Hackers can change a single byte to insert malware undetected, posing as an apparently corrupted ZIP file dubbed Zombie Zip. A security researcher demonstrated this by tricking Windows Defender and most other antivirus software, with 65 of 66 security solutions failing to detect the malware.
Read more about Researcher discovers severe antivirus blind spot: corrupted ZIP files evade nearly all scanners
We ranked the most pirated Oscar nominees of the past 15 years, from Anora to Avatar
Were you betting on Sinners to take home the Best Picture award from the 98th Oscars? Or did you know all along that One Battle After Another would win?
Read more about We ranked the most pirated Oscar nominees of the past 15 years, from Anora to Avatar
Oscars 2026: attackers exploit Best Picture hype for One Battle After Another to spread malware via Google
Your obsession with the Academy Awards might drain your bank account. Cybernews researchers found that illegally downloading this years' Best Picture nominees may result in installing dangerous wallet-draining malware.
Read more about Oscars 2026: attackers exploit Best Picture hype for One Battle After Another to spread malware via Google
Russia military command tells troops to ditch unsafe MAX app and use Telegram again
The Kremlin recently moved to reduce usage of the popular messenger Telegram across the country and ordered the troops invading Ukraine to switch to MAX, a state-run service. Now, though, the military command seems to have realized that MAX is even less safe and is telling troops to reinstall Pavel Durov’s app on their devices.
Read more about Russia military command tells troops to ditch unsafe MAX app and use Telegram again