Security News > 2025 > May

TikTok fined €530 million for sending European user data to China
2025-05-02 12:14

The Irish Data Protection Commission (DPC) has fined TikTok €530 million (over $601 million) for illegally transferring the personal data of users in the European Economic Area (EEA) to China,...

New Microsoft accounts will be “passwordless by default”
2025-05-02 11:13

Microsoft is making new Microsoft accounts passwordless by default, the company has announced on Thursday, which marked this year’s World Password Day. “As part of [a recently simplified sign-in...

NCSC Guidance on “Advanced Cryptography”
2025-05-02 11:03

The UK’s National Cyber Security Centre just released its white paper on “Advanced Cryptography,” which it defines as “cryptographic techniques for processing encrypted data, providing enhanced...

How to Automate CVE and Vulnerability Advisory Response with Tines
2025-05-02 10:30

Run by the team at workflow orchestration and AI platform Tines, the Tines library features pre-built workflows shared by security practitioners from across the community - all free to import and...

British govt agents step in as Harrods becomes third mega retailer under cyberattack
2025-05-02 10:25

Experts suggest the obvious: There is an ongoing coordinated attack on UK retail sector Harrods, a globally recognized purveyor of all things luxury, is the third major UK retailer to confirm an...

Microsoft fixes Exchange Online bug flagging Gmail emails as spam
2025-05-02 10:15

​Microsoft has resolved an issue with a machine learning model that mistakenly flagged emails from Gmail accounts as spam in Exchange Online. [...]

MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth Attacks
2025-05-02 08:57

The malware loader known as MintsLoader has been used to deliver a PowerShell-based remote access trojan called GhostWeaver. "MintsLoader operates through a multi-stage infection chain involving...

Microsoft makes all new accounts passwordless by default
2025-05-02 07:21

Microsoft has announced that all new Microsoft accounts will be "passwordless by default" to secure them against password attacks such as phishing, brute force, and credential stuffing. [...]

Microsoft Sets Passkeys Default for New Accounts; 15 Billion Users Gain Passwordless Support
2025-05-02 06:40

A year after Microsoft announced passkeys support for consumer accounts, the tech giant has announced a big change that pushes individuals signing up for new accounts to use the phishing-resistant...

AI and automation shift the cybersecurity balance toward attackers
2025-05-02 06:00

Threat actors are increasingly harnessing automation, commoditized tools, and AI to systematically erode the traditional advantages held by defenders, according to Fortinet. The post AI and...