Security

Hackers claim 1.4 TB theft from Iron Mountain, major data management company

A Russia-linked attacker group says they accessed a huge database of the S&P 500 company, allegedly accessing company and client data. The attached data sample provides some insight into the claimed data breach.
Read more about Hackers claim 1.4 TB theft from Iron Mountain, major data management company

Hugging Face platform abused to spread Android malware variants

Hugging Face is considered a trusted platform unlikely to trigger security warnings but a new Android malware campaign is using it as a repository for thousands of variations of an APK payload that collects sensitive credentials.
Read more about Hugging Face platform abused to spread Android malware variants

Github’s viral AI assistant Moltbot is a step away from a massive breach

Moltbot AI became viral overnight, but researchers warn that the “vibe-coded” tool might be leaking your credentials.
Read more about Github’s viral AI assistant Moltbot is a step away from a massive breach

Framework to host AI locally on Windows and macOS leaks massive amount of data

Shadow AI is spreading across the internet, and no one is really watching. Security researchers have discovered over 170,000 publicly accessible and unmonitored AI systems.
Read more about Framework to host AI locally on Windows and macOS leaks massive amount of data

Cyberattacks hit record high in Hong Kong as AI fuels phishing schemes

Hong Kong saw a record number of cyberattacks in 2025, with the total volume of digital incidents reaching an all-time high. Authorities warn that increasingly sophisticated tactics, including the use of AI, are making attacks harder to detect and defend against.
Read more about Cyberattacks hit record high in Hong Kong as AI fuels phishing schemes

EU facing unprecedented attacks, needs to rethink cybersec – bloc cyber chief

The European Union, already under constant pressure from US President Donald Trump-friendly big tech companies, also faces an unprecedented volume and pace of cyberattacks. This is extremely risky, the bloc’s cyber chief says.
Read more about EU facing unprecedented attacks, needs to rethink cybersec – bloc cyber chief

Belgian hospitals unable to pay employees due to ransomware attack

Two Belgian hospitals can’t pay 1,200 of their staff members because of a recent ransomware attack. Instead, they have to manage with a partial advance payment.
Read more about Belgian hospitals unable to pay employees due to ransomware attack

Personal data of nearly 37m job seekers exposed in France Travail breach

The French DPA has sanctioned France Travail, an unemployment agency, with a €5 million fine for compromising the personal data of more than 36.8 million people seeking work.
Read more about Personal data of nearly 37m job seekers exposed in France Travail breach

Google shuts down massive proxy botnet hijacking home internet

Google’s Threat Intelligence Group (GTIG) dismantles key infrastructure behind one of the world’s largest residential proxy operations – exposing a shadowy ecosystem that turns everyday consumer devices into tools for cybercrime and espionage.
Read more about Google shuts down massive proxy botnet hijacking home internet

Warning: cybercriminals are hijacking open-source AI for scams and disinformation

Hackers and other criminals can easily commandeer computers operating open-source large language models outside the guardrails and constraints of the major artificial-intelligence platforms, creating security risks and vulnerabilities, researchers said on Thursday.
Read more about Warning: cybercriminals are hijacking open-source AI for scams and disinformation

Bumble Hives group data found in ShinyHunters leak, researchers warn

The attacker group ShinyHunters has added the popular dating app Bumble to its latest victims, claiming that most of the data was taken from cloud services the company uses. The leaked data incudes list of Bumble groups, called Hives.
Read more about Bumble Hives group data found in ShinyHunters leak, researchers warn

Google fixes high-severity Chrome bug that may abuse background downloads

Google has released a new Chrome Stable Channel update to fix a high-severity vulnerability in the browser’s Background Fetch API, urging users to update as soon as possible to reduce potential security and privacy risks.
Read more about Google fixes high-severity Chrome bug that may abuse background downloads

500M+ Facebook records ‘cleaned’ by attackers: Why the 2019 leak is still dangerous?

Malicious actors are claiming that they’ve structured and cleaned data stolen during a 2019 Facebook data scrape. The Cybernews research team notes that old data remains useful to cybercriminals, as personal information doesn’t expire.
Read more about 500M+ Facebook records ‘cleaned’ by attackers: Why the 2019 leak is still dangerous?

Russian gang tied to recent massive cyberattack on Poland’s power grid

The massive cyberattack that nearly knocked out Poland’s power grid in late December has been attributed to a Russian state-sponsored hacking collective known as Electrum.
Read more about Russian gang tied to recent massive cyberattack on Poland’s power grid

WhatsApp to introduce stricter security settings for vulnerable users

Meta, the parent company of WhatsApp, has added Strict Account Settings on WhatsApp to better protect your account from cyberattacks.
Read more about WhatsApp to introduce stricter security settings for vulnerable users

NVIDIA: from gaming powerhouse to military tech player

Parents were right after all. Gaming and real-life violence are indeed related, at least by association. NVIDIA’s humble beginnings are...
Read more about NVIDIA: from gaming powerhouse to military tech player

Cyberattack on Delta smart alarm system paralyzes cars across Russia

Winter has hit Russia hard already, and now car owners across the country – those using a Delta smart alarm system – can’t unlock cars, stop active alarms, or even start their engines. A cyberattack is believed to be the cause.
Read more about Cyberattack on Delta smart alarm system paralyzes cars across Russia

Android AI apps leak Google secrets the most, 700TB of files already exposed

Android developers are still hardcoding secrets, while attackers exploit them in the wild. Cybernews has analyzed 1.8 million Android apps on the Google Play Store and found that most AI apps leak an average of five secrets.
Read more about Android AI apps leak Google secrets the most, 700TB of files already exposed

ShinyHunters claims 10M dating records from Match Group's Hinge and OkCupid

The alleged attack targets Tinder-owner Match Group's dating apps. The attackers claim they have millions of records, with the data sample revealing user IDs, transactions, IP addresses and other sensitive information.
Read more about ShinyHunters claims 10M dating records from Match Group's Hinge and OkCupid

Trump’s CISA chief at it again: uploads sensitive files into ChatGPT

The interim head of CISA, America’s cyber defense agency, decided it was A-okay to upload sensitive documents into ChatGPT after requesting special permission to use the popular chatbot right after arriving at the agency last May.
Read more about Trump’s CISA chief at it again: uploads sensitive files into ChatGPT