Security

Hackers put 8M records of Mexicans’ debt data up for sale

A cybercriminal claims to be selling a massive database of over eight million records containing personal details of Mexican debtors.
Read more about Hackers put 8M records of Mexicans’ debt data up for sale

Qilin claims large pharmacy benefit manager MedImpact

Qilin has already claimed responsibility for more than 700 ransomware attacks this year alone but the gang isn’t stopping there. It’s just claimed that it has exfiltrated data from the large US pharmacy benefit manager, MedImpact.
Read more about Qilin claims large pharmacy benefit manager MedImpact

Google pushed to publicly deny false reports of massive Gmail breach

After a series of sensational stories claiming that a Gmail data breach had impacted hundreds of millions of accounts began appearing online, Google was pushed to publicly deny the reports.
Read more about Google pushed to publicly deny false reports of massive Gmail breach

Kremlin’s airspace game: drones fuel disinformation campaigns, undermining support for Ukraine

An increasing number of drone incursions in EU airspace are quickly exploited by the pro-Russia information campaigns to shape public perception. Google Threat Intelligence Team (GTIG) observed multiple campaigns sowing distrust in local governments and reducing public support for Ukraine.
Read more about Kremlin’s airspace game: drones fuel disinformation campaigns, undermining support for Ukraine

Major crypto exchange leak exposes user wallets, passwords

The unprotected database revealed millions of records ranging from two-factor authentication codes and hashed passwords to wallet addresses. What’s worse, the data has been accessible for months.
Read more about Major crypto exchange leak exposes user wallets, passwords

US sanctions backfire: Huawei thrives while American companies lose revenue

Huawei has developed its own operating system, built its own chips, has independent supply chains, and boosted its global market share in telecom equipment while entering new markets. Meanwhile, the US tech companies lost $33 billion in sales, and the Chinese government's retaliation is hurting the American economy, says think tank ITIF.
Read more about US sanctions backfire: Huawei thrives while American companies lose revenue

Ex-CISA head Easterly thinks AI will unalive the cybersecurity industry

Jen Easterly, former director of the Cybersecurity and Infrastructure Security Agency (CISA), has used the last couple of weeks to spread her idea that AI could spell the end of the cybersecurity industry. Why?
Read more about Ex-CISA head Easterly thinks AI will unalive the cybersecurity industry

HSBC USA data breach exposes client transactions, hackers claim

Cybercrooks have uploaded data allegedly revealing the personal details of HSBC USA bank customers, including bank account numbers and transaction details. The Cybernews research team says there are indications that the leaked data is legitimate.
Read more about HSBC USA data breach exposes client transactions, hackers claim

Dublin Airport under fire after devastating attack on European airports

Hackers threatening Dublin Airport to spill the data of over a million passengers unless ransomware is paid.
Read more about Dublin Airport under fire after devastating attack on European airports

Hackers exploiting Windows updates: Microsoft urges users to patch

Hackers are exploiting a Windows Server vulnerability that can turn system updates into a malware delivery machine. Microsoft is urging users to download patches.
Read more about Hackers exploiting Windows updates: Microsoft urges users to patch

Your questions, answered by Cybernews: Signal uses Google servers, but is your data safe?

Signal is using Google infrastructure. Does this mean that people searching for privacy are unwittingly falling back into the trap? Our team has selected one pressing and common reader issue and deconstructed it to help you stay safe online.
Read more about Your questions, answered by Cybernews: Signal uses Google servers, but is your data safe?

Half a terabyte of personal records exposed from youth non-profit

Attackers claim to have infiltrated Gerar, a Brazilian non-profit that provides training opportunities to youth. The breach allegedly involved sensitive details ranging from names to military service documents.
Read more about Half a terabyte of personal records exposed from youth non-profit

Toys ‘R’ Us data breach: What customer data was exposed?

Toys ‘R’ Us Canada has disclosed a data breach, which it learned about after attackers posted stolen customer information on the “unindexed internet.”
Read more about Toys ‘R’ Us data breach: What customer data was exposed?

Moroccan hackers caught using nation-state-levels of deception just to steal gift cards

Security researchers are warning about a group of Moroccan hackers who invest heavily in reconnaissance, launch convincing social engineering attacks that evade security tools, infiltrate cloud environments, and maintain persistence to ultimately steal gift cards.
Read more about Moroccan hackers caught using nation-state-levels of deception just to steal gift cards

F5 breach exposes powerful backdoor exploited by China-linked hackers

Researchers investigating artifacts from the recent F5 BIG-IP breach are warning about a stealthy and powerful backdoor used by China-linked threat actors. Known as Brickstorm, the malware leaves minimal traces, enabling attackers to gain long-term access.
Read more about F5 breach exposes powerful backdoor exploited by China-linked hackers

Lazarus Group now using fake job ads to target European drone manufacturers

A fresh wave of Operation DreamJob, a long-term campaign linked to North Korea’s Lazarus Group, is targeting European defense contractors – mostly firms involved in drone and UAV development, researchers say.
Read more about Lazarus Group now using fake job ads to target European drone manufacturers

German state minister accuses AfD of spying for the Kremlin

Georg Maier, the Minister of the Interior of the state of Thuringia, has accused the far-right wing political party Alternative für Deutschland (AfD) of espionage for Russia. Maier says he has evidence to support his claim.
Read more about German state minister accuses AfD of spying for the Kremlin

Millions relying on just one password for everything: does it still matter?

Using a single password across all accounts remains a widespread problem, leaving millions of people potentially exposed. Traditionally, users would be advised to change their passwords regularly, but with the evolution of cybercrime techniques, this may no longer always work.
Read more about Millions relying on just one password for everything: does it still matter?

Lithuanian police bust major bot farm, 75K SIM cards seized

Authorities in the Lithuanian capital, Vilnius, have dismantled a major SIM box operation, uncovering a trove of equipment suspected of being used in various fraud and cybercrime schemes on PayPal, Facebook, Google, and other platforms.
Read more about Lithuanian police bust major bot farm, 75K SIM cards seized

TikTok could quietly give ICE and DHS your IP address

TikTok has quietly altered its law enforcement guidelines to seemingly fit President Donald Trump’s vision of a country free from “illegal aliens.”
Read more about TikTok could quietly give ICE and DHS your IP address