Security
Scammers are blackmailing Dutch companies with fake reviews on Google
Dutch business owners are being bombarded with fake online reviews. Then they receive a message from a foreign number: pay up to have the negative reviews removed, or more will appear online.
Read more about Scammers are blackmailing Dutch companies with fake reviews on Google
The evolution of Hacker9: from hacking blog to cybersecurity hub
In the ever-changing world of cybersecurity, few platforms have managed to balance technical depth with everyday accessibility as effectively as...
Read more about The evolution of Hacker9: from hacking blog to cybersecurity hub
US Senators demand Tinder parent Match Group reveal how it protects users from dating scams
Match Group, the parent company of a portfolio of popular online dating apps, including Tinder and Hinge, is being called on by US lawmakers to prove that the company has adequate user protections against romance scams and dating fraud.
Read more about US Senators demand Tinder parent Match Group reveal how it protects users from dating scams
Law offices, tech firms targeted in new “BRICKSTORM” Chinese espionage campaign
BRICKSTORM, a new “highly evasive” malware campaign linked to Beijing, has been targeting the legal services and technology sectors for more than a year, according to new research published by Google’s Mandiant on Wednesday.
Read more about Law offices, tech firms targeted in new “BRICKSTORM” Chinese espionage campaign
CISA, GitHub take action after massive NPM supply chain compromise
After a massive supply-chain compromise of over 500 NPM packages, the US cybersecurity watchdog has released an alert urging organizations to check for potential malicious leftovers and compromised credentials. GitHub is enforcing stricter authentication for publishing packages.
Read more about CISA, GitHub take action after massive NPM supply chain compromise
Hackers claim German aviation firm, leak customer data
A cybercriminal cartel has claimed FAI Aviation Group, a German charter operator. The attackers say they’ve accessed a trove of sensitive data, ranging from company details to medical information.
Read more about Hackers claim German aviation firm, leak customer data
iPhone security settings: finding the sweet spot between safe and sane
When you buy a door, it ships unlocked by default. An iPhone is no different. It's up to the user to decide how much protection they actually want. Complete security is impossible, even if you ditch smartphones for curl commands on Kali Linux virtual machines. Here's what I do to harden my device without losing my sanity – at least, not all of it.
Read more about iPhone security settings: finding the sweet spot between safe and sane
App built to report Kirk’s critics outs its own users
The app built to “expose” Charlie Kirk’s critics ended up exposing its own users instead.
Read more about App built to report Kirk’s critics outs its own users
US Secret Service dismantles “imminent” nation-state threat targeting NYC telecom infrastructure
The US Secret Service on Tuesday said it has dismantled a massive nation-state threat campaign targeting senior US officials with more than 100,000 hidden networking devices aimed at disrupting New York City’s telecommunications infrastructure.
Read more about US Secret Service dismantles “imminent” nation-state threat targeting NYC telecom infrastructure
Pay to live: scammers spamming fake death threats in Switzerland
Spammers are actively disseminating fake emails with faux death threats. The Swiss National Cyber Security Center (NCSC) urges you to ignore them.
Read more about Pay to live: scammers spamming fake death threats in Switzerland
SonicWall under attack: CISA issues warning after cloud backup breach
SonicWall, a major provider of VPNs, firewalls, and other network security solutions, has alerted users about a data compromise affecting cloud backups for “fewer than 5%” of its firewall install base. Security researchers from Arctic Wolf are warning of a targeted ransomware campaign targeting SonicWall devices.
Read more about SonicWall under attack: CISA issues warning after cloud backup breach
DARPA, NASA software partner claimed by ransomware gang
The company, allegedly under attack, frequently works with US government bodies such as DARPA, the Department of War (DoW), and other key institutions.
Read more about DARPA, NASA software partner claimed by ransomware gang
Mac users targeted by large-scale attacks delivering infostealer malware
Mac users are being targeted by unknown threat actors offering malicious versions of well-known software, including LastPass, 1Password, and Thunderbird, via the developer platform GitHub.
Read more about Mac users targeted by large-scale attacks delivering infostealer malware
Hackers say they nabbed Brazil’s police medical files in massive breach
Hackers claim to have stolen two terabytes of Brazilian Military Police medical records in a breach that could expose officers and their families.
Read more about Hackers say they nabbed Brazil’s police medical files in massive breach
Attackers claim 150K users via data breach of insurance firm AIL
American Income Life (AIL), a major American supplemental insurance company, has allegedly had hundreds of thousands of customer records stolen, exposing personal details and insurance data.
Read more about Attackers claim 150K users via data breach of insurance firm AIL
Criminals plant fake CAPTCHAs on vibe-coding platforms, luring users to phishing pages
AI-powered development platforms are being used to host fake CAPTCHA pages that evade detection and deceive users, leading them to phishing websites, researchers have found.
Read more about Criminals plant fake CAPTCHAs on vibe-coding platforms, luring users to phishing pages
European airports struggle to fix check-in glitch after cyberattack
Some of Europe's biggest airports battled to restore normal operations on Sunday after hackers disrupted automatic check-in systems, with Brussels asking airlines to cancel half of Monday's flight departures due to persistent problems.
Read more about European airports struggle to fix check-in glitch after cyberattack
“Make it a quadruple no:” Why you might not want to connect your Oakley Meta Vanguard to Strava
It’s time we got smarter about using smart glasses.
Read more about “Make it a quadruple no:” Why you might not want to connect your Oakley Meta Vanguard to Strava
New kid on the block Warlock ransomware gang makes moves as attacks surge
The Warlock ransomware group, already linked to an outbreak of Microsoft SharePoint attacks this July, has been stepping up its attacks in recent weeks – and with a twist of ingenuity, Sophos researchers say.
Read more about New kid on the block Warlock ransomware gang makes moves as attacks surge
A lesson from NPM hacks: It’s time to remove the human factor from authentication factors
As the JavaScript ecosystem is still recovering from the massive supply chain attacks targeting NPM software packages, one thing is clear—you need phishing-resistant authentication now, urges Johannes B. Ullrich, Ph.D., dean of research at SANS.edu.
Read more about A lesson from NPM hacks: It’s time to remove the human factor from authentication factors