Security
Hackers claim 1.4 TB theft from Iron Mountain, major data management company
A Russia-linked attacker group says they accessed a huge database of the S&P 500 company, allegedly accessing company and client data. The attached data sample provides some insight into the claimed data breach.
Read more about Hackers claim 1.4 TB theft from Iron Mountain, major data management company
Hugging Face platform abused to spread Android malware variants
Hugging Face is considered a trusted platform unlikely to trigger security warnings but a new Android malware campaign is using it as a repository for thousands of variations of an APK payload that collects sensitive credentials.
Read more about Hugging Face platform abused to spread Android malware variants
Github’s viral AI assistant Moltbot is a step away from a massive breach
Moltbot AI became viral overnight, but researchers warn that the “vibe-coded” tool might be leaking your credentials.
Read more about Github’s viral AI assistant Moltbot is a step away from a massive breach
Framework to host AI locally on Windows and macOS leaks massive amount of data
Shadow AI is spreading across the internet, and no one is really watching. Security researchers have discovered over 170,000 publicly accessible and unmonitored AI systems.
Read more about Framework to host AI locally on Windows and macOS leaks massive amount of data
Cyberattacks hit record high in Hong Kong as AI fuels phishing schemes
Hong Kong saw a record number of cyberattacks in 2025, with the total volume of digital incidents reaching an all-time high. Authorities warn that increasingly sophisticated tactics, including the use of AI, are making attacks harder to detect and defend against.
Read more about Cyberattacks hit record high in Hong Kong as AI fuels phishing schemes
EU facing unprecedented attacks, needs to rethink cybersec – bloc cyber chief
The European Union, already under constant pressure from US President Donald Trump-friendly big tech companies, also faces an unprecedented volume and pace of cyberattacks. This is extremely risky, the bloc’s cyber chief says.
Read more about EU facing unprecedented attacks, needs to rethink cybersec – bloc cyber chief
Belgian hospitals unable to pay employees due to ransomware attack
Two Belgian hospitals can’t pay 1,200 of their staff members because of a recent ransomware attack. Instead, they have to manage with a partial advance payment.
Read more about Belgian hospitals unable to pay employees due to ransomware attack
Personal data of nearly 37m job seekers exposed in France Travail breach
The French DPA has sanctioned France Travail, an unemployment agency, with a €5 million fine for compromising the personal data of more than 36.8 million people seeking work.
Read more about Personal data of nearly 37m job seekers exposed in France Travail breach
Google shuts down massive proxy botnet hijacking home internet
Google’s Threat Intelligence Group (GTIG) dismantles key infrastructure behind one of the world’s largest residential proxy operations – exposing a shadowy ecosystem that turns everyday consumer devices into tools for cybercrime and espionage.
Read more about Google shuts down massive proxy botnet hijacking home internet
Warning: cybercriminals are hijacking open-source AI for scams and disinformation
Hackers and other criminals can easily commandeer computers operating open-source large language models outside the guardrails and constraints of the major artificial-intelligence platforms, creating security risks and vulnerabilities, researchers said on Thursday.
Read more about Warning: cybercriminals are hijacking open-source AI for scams and disinformation
Bumble Hives group data found in ShinyHunters leak, researchers warn
The attacker group ShinyHunters has added the popular dating app Bumble to its latest victims, claiming that most of the data was taken from cloud services the company uses. The leaked data incudes list of Bumble groups, called Hives.
Read more about Bumble Hives group data found in ShinyHunters leak, researchers warn
Google fixes high-severity Chrome bug that may abuse background downloads
Google has released a new Chrome Stable Channel update to fix a high-severity vulnerability in the browser’s Background Fetch API, urging users to update as soon as possible to reduce potential security and privacy risks.
Read more about Google fixes high-severity Chrome bug that may abuse background downloads
500M+ Facebook records ‘cleaned’ by attackers: Why the 2019 leak is still dangerous?
Malicious actors are claiming that they’ve structured and cleaned data stolen during a 2019 Facebook data scrape. The Cybernews research team notes that old data remains useful to cybercriminals, as personal information doesn’t expire.
Read more about 500M+ Facebook records ‘cleaned’ by attackers: Why the 2019 leak is still dangerous?
Russian gang tied to recent massive cyberattack on Poland’s power grid
The massive cyberattack that nearly knocked out Poland’s power grid in late December has been attributed to a Russian state-sponsored hacking collective known as Electrum.
Read more about Russian gang tied to recent massive cyberattack on Poland’s power grid
WhatsApp to introduce stricter security settings for vulnerable users
Meta, the parent company of WhatsApp, has added Strict Account Settings on WhatsApp to better protect your account from cyberattacks.
Read more about WhatsApp to introduce stricter security settings for vulnerable users
NVIDIA: from gaming powerhouse to military tech player
Parents were right after all. Gaming and real-life violence are indeed related, at least by association. NVIDIA’s humble beginnings are...
Read more about NVIDIA: from gaming powerhouse to military tech player
Cyberattack on Delta smart alarm system paralyzes cars across Russia
Winter has hit Russia hard already, and now car owners across the country – those using a Delta smart alarm system – can’t unlock cars, stop active alarms, or even start their engines. A cyberattack is believed to be the cause.
Read more about Cyberattack on Delta smart alarm system paralyzes cars across Russia
Android AI apps leak Google secrets the most, 700TB of files already exposed
Android developers are still hardcoding secrets, while attackers exploit them in the wild. Cybernews has analyzed 1.8 million Android apps on the Google Play Store and found that most AI apps leak an average of five secrets.
Read more about Android AI apps leak Google secrets the most, 700TB of files already exposed
ShinyHunters claims 10M dating records from Match Group's Hinge and OkCupid
The alleged attack targets Tinder-owner Match Group's dating apps. The attackers claim they have millions of records, with the data sample revealing user IDs, transactions, IP addresses and other sensitive information.
Read more about ShinyHunters claims 10M dating records from Match Group's Hinge and OkCupid
Trump’s CISA chief at it again: uploads sensitive files into ChatGPT
The interim head of CISA, America’s cyber defense agency, decided it was A-okay to upload sensitive documents into ChatGPT after requesting special permission to use the popular chatbot right after arriving at the agency last May.
Read more about Trump’s CISA chief at it again: uploads sensitive files into ChatGPT