Security News > 2025 > April

13 core principles to strengthen AI cybersecurity
2025-04-25 04:45

The new ETSI TS 104 223 specification for securing AI provides reliable and actionable cybersecurity guidance aimed at protecting end users. Adopting a whole-lifecycle approach, the framework...

Top must-visit companies at RSAC 2025
2025-04-25 04:30

RSAC 2025 Conference is taking place at the Moscone Center in San Francisco from April 28 – May 1. With hundreds of booths, countless product demos, and nonstop buzz, navigating RSAC can be...

SSNs and more on 5.5M+ patients feared stolen from Yale Health
2025-04-24 20:32

At least it wasn't Harvard Yale New Haven Health has notified more than 5.5 million people that their private details were likely stolen by miscreants who broke into the healthcare system's...

Hackers abuse OAuth 2.0 workflows to hijack Microsoft 365 accounts
2025-04-24 20:24

Russian threat actors have been abusing legitimate OAuth 2.0 authentication workflows to hijack Microsoft 365 accounts of employees of organizations related to Ukraine and human rights. [...]

New Linux Rootkit
2025-04-24 19:35

Interesting: The company has released a working rootkit called “Curing” that uses io_uring, a feature built into the Linux kernel, to stealthily perform malicious activities without being caught...

Lazarus hackers breach six companies in watering hole attacks
2025-04-24 19:13

In a recent espionage campaign, the infamous North Korean threat group Lazarus targeted multiple organizations in the software, IT, finance, and telecommunications sectors in South Korea. [...]

Microsoft fixes machine learning bug flagging Adobe emails as spam
2025-04-24 19:02

Microsoft says it mitigated a known issue in one of its machine learning (ML) models that mistakenly flagged Adobe emails in Exchange Online as spam. [...]

Microsoft mystery folder fix might need a fix of its own
2025-04-24 18:01

This one weird trick can stop Windows updates dead in their tracks Turns out Microsoft's latest patch job might need a patch of its own, again. This time, the culprit is a mysterious inetpub...

Frederick Health data breach impacts nearly 1 million patients
2025-04-24 16:19

​A ransomware attack in January at Frederick Health Medical Group, a major healthcare provider in Maryland, has led to a data breach affecting nearly one million patients. [...]

Assassin's Creed maker faces GDPR complaint for forcing single-player gamers online
2025-04-24 15:59

Collecting data from solo players is a Far Cry from being necessary, says noyb For anyone who's ever been frustrated by the need to go online to play a single-player video game, the European...