Security News

CISA Warns of Suspected Broader SaaS Attacks Exploiting App Secrets and Cloud Misconfigs
2025-05-23 05:16

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday revealed that Commvault is monitoring cyber threat activity targeting applications hosted in their Microsoft Azure...

US indicts leader of Qakbot botnet linked to ransomware attacks
2025-05-22 20:16

The U.S. government has indicted Russian national Rustam Rafailevich Gallyamov, the leader of the Qakbot botnet malware operation that compromised over 700,000 computers and enabled ransomware...

Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network Attacks
2025-05-22 12:07

A recently patched pair of security flaws affecting Ivanti Endpoint Manager Mobile (EPMM) software has been exploited by a China-nexus threat actor to target a wide range of sectors across Europe,...

US teen to plead guilty to extortion attack against PowerSchool
2025-05-21 21:33

The 19-year-old and a partner first tried to extort an unnamed telco, but failed A 19-year-old student has agreed to plead guilty to hacking into the systems of two companies as part of an...

Kettering Health hit by system-wide outage after ransomware attack
2025-05-21 11:45

Kettering Health, a healthcare network that operates 14 medical centers in Ohio, was forced to cancel inpatient and outpatient procedures following a cyberattack that caused a system-wide...

How to Detect Phishing Attacks Faster: Tycoon2FA Example
2025-05-21 10:30

It takes just one email to compromise an entire system. A single well-crafted message can bypass filters, trick employees, and give attackers the access they need. Left undetected, these threats...

Researchers Expose PWA JavaScript Attack That Redirects Users to Adult Scam Apps
2025-05-21 09:01

Cybersecurity researchers have discovered a new campaign that employs malicious JavaScript injections to redirect site visitors on mobile devices to a Chinese adult-content Progressive Web App...

Nation-state APTs ramp up attacks on Ukraine and the EU
2025-05-21 04:00

Russian APT groups intensified attacks against Ukraine and the EU, exploiting zero-day vulnerabilities and deploying wipers, according to ESET. Ukraine faces rising cyber threats The...

Premium WordPress 'Motors' theme vulnerable to admin takeover attacks
2025-05-20 19:46

A critical privilege escalation vulnerability has been discovered in the premium WordPress theme Motors, which allows unauthenticated attackers to hijack administrator accounts and take complete...

RVTools hit in supply chain attack to deliver Bumblebee malware
2025-05-20 14:39

The official website for the RVTools VMware management tool was taken offline in what appears to be a supply chain attack that distributed a trojanized installer to drop the Bumblebee malware...