Security

Network of 4,000+ fake sites found pushing phony deals on Facebook

A Milwaukee tool chest or Birkenstock sandals at half price? A massive fake marketplace scam campaign involving dozens of major brand impersonations and over 4,000 domains has been discovered. Scammers are running tons of ads on social media.
Read more about Network of 4,000+ fake sites found pushing phony deals on Facebook

Wazuh servers targeted by Mirai botnets

Potential attackers could exploit a critical flaw to remotely execute code by uploading what researchers from Akamai called an “unsanitized dictionary.”
Read more about Wazuh servers targeted by Mirai botnets

Trove of port agency’s data stolen, hackers claim

S5 Agency World, a major port agency, has allegedly been victimized by a ransomware gang. The attackers claim to have taken nearly 140 gigabytes of data.
Read more about Trove of port agency’s data stolen, hackers claim

Here’s why ignoring politics is no longer an option for cyber pros

You can’t understand cyber threats without grasping the nuances of global politics.
Read more about Here’s why ignoring politics is no longer an option for cyber pros

Texas Department of Transportation hacked, 300,000 car crash reports stolen

The Texas Department of Transportation (TxDOT) disclosed a major data breach during which nearly 300,000 crash reports containing sensitive private information were exfiltrated.
Read more about Texas Department of Transportation hacked, 300,000 car crash reports stolen

Italy cuts ties with Israeli spyware company after claims of spying on journalists and activists

Italy has terminated a contract with Israeli spyware maker Paragon, a parliamentary document showed on Monday, following allegations that the Italian government used its technology to hack critics' phones.
Read more about Italy cuts ties with Israeli spyware company after claims of spying on journalists and activists

What would break first if hackers hit US infrastructure?

A single cyberattack could knock out power, water, and emergency services across the US. Experts warn that aging tech, staff cuts, and weak defenses make it easier than ever.
Read more about What would break first if hackers hit US infrastructure?

Game cheaters getting hacked: dangerous malware controls computer, spies, and syphons crypto

Video game cheaters are under attack by Blitz, a new Windows malware distributed via backdoored game cheat packages, Unit 42, a security arm of Palo Alto Networks, has warned. Android gamers are lured into gaining an unfair advantage on computers using emulators.
Read more about Game cheaters getting hacked: dangerous malware controls computer, spies, and syphons crypto

Starlink in the White House is a security nightmare, but DOGE staff installed it anyway – media

Starlink internet services were installed in the White House despite concerns over data breaches and security risks.
Read more about Starlink in the White House is a security nightmare, but DOGE staff installed it anyway – media

Half of workers still can’t spot a phishing scam, even when they think they can

New research shows most executives and staff think they can spot a phishing scam. Most of them are wrong.
Read more about Half of workers still can’t spot a phishing scam, even when they think they can

Should you disable PowerShell and Command Prompt? Experts weigh in

Fake CAPTCHAs, malicious software update prompts or error messages, phishing emails, and other deceptive social engineering schemes increasingly rely on tricking users to run harmful commands in PowerShell and Command Prompt (CMD). Disabling them would shut down this key vulnerable point, but security experts are divided.
Read more about Should you disable PowerShell and Command Prompt? Experts weigh in

Akamai says it's time to ditch corporate VPN: plug holes in firewalls

As breaches related to corporate VPN flaws skyrocket, security vendors are increasingly urging to drop VPNs altogether. Instead of drilling a hole in firewalls, they suggest adopting outbound-only tunnels offered by Zero Trust Network Access (ZTNA) solutions.
Read more about Akamai says it's time to ditch corporate VPN: plug holes in firewalls

35,000 solar power systems found exposed online, targeted by hackers

A massive fleet of vulnerable solar inverters has been discovered online. Almost 35,000 solar power devices have internet-exposed management interfaces and can be targeted using a range of known vulnerabilities.
Read more about 35,000 solar power systems found exposed online, targeted by hackers

Handling digital evidence: a guide for civilian analysts

When I'm not writing articles, I do a lot of freelance OSINT work. While the majority of that work involves de-anonymizing predators or tracking missing persons, this realm of OSINT contains a vital, inalienable component: handling digital evidence.
Read more about Handling digital evidence: a guide for civilian analysts

IT pros weigh in on AI’s role in coding: doing more of what they hate the most

Instead of writing code, programmers complain they now have to proof one written by artificial intelligence (AI). As the New York Times aptly put it, many feel like bystanders to their own job. I decided to run a quick vox populi to see what coders actually think about the so-called vibe coding.
Read more about IT pros weigh in on AI’s role in coding: doing more of what they hate the most

White House releases new cybersecurity directives to defend nation's digital infrastructure

The Trump administration on Friday released an upgraded cybersecurity executive with nearly a dozen directives aiming to beef up national security, from the adoption of AI and post-quantum cryptology to IoT labeling and defending against nation-state threats.
Read more about White House releases new cybersecurity directives to defend nation's digital infrastructure

Notorious hackers return as BreachForums reboots under new domain

After a mysterious takedown in April, one of the deep web’s most notorious hacking forums appears to be making a comeback with help from some familiar names.
Read more about Notorious hackers return as BreachForums reboots under new domain

France estimates GDPR’s cyber benefits to be worth 1 billion euros, or one Meta fine

The French cyber watchdog has analyzed GDPR’s cybersecurity benefits and found them to be between 585 million and 1.4 billion euros at the EU level, in five years. The sum is comparable to a single 1.2 billion euro fine issued to Meta for GDPR violations.
Read more about France estimates GDPR’s cyber benefits to be worth 1 billion euros, or one Meta fine

Bad actors targeting addicts in latest search scams, FTC warns

Those struggling with substance abuse issues may be in for a nasty surprise when searching for clinics.
Read more about Bad actors targeting addicts in latest search scams, FTC warns

FBI urges users to check their cheap Android devices from China: millions infected with BadBox

Despite multiple take-down attempts, millions of consumer Android devices are running BadBox 2.0 malware, which comes preinstalled on cheap off-brand devices produced in China. The FBI wants you to check your gadgets for any suspicious activity.
Read more about FBI urges users to check their cheap Android devices from China: millions infected with BadBox