Security News

ConnectWise customers get mysterious warning about 'sophisticated' nation-state hack
2025-05-30 19:01

Pen tester on ScreenConnect bug: This one ‘terrifies’ me ConnectWise has brought in the big guns to investigate a "sophisticated nation state actor" that broke into its IT environment and then...

Botnet hacks 9,000+ ASUS routers to add persistent SSH backdoor
2025-05-28 16:44

Over 9,000 ASUS routers are compromised by a novel botnet dubbed "AyySSHush" that was also observed targeting SOHO routers from Cisco, D-Link, and Linksys. [...]

Russian Laundry Bear cyberspies linked to Dutch Police hack
2025-05-27 11:16

A previously unknown Russian-backed cyberespionage group now tracked as Laundry Bear has been linked to a September 2024 Dutch police security breach. [...]

Adidas warns of data breach after customer service provider hack
2025-05-27 08:29

German sportswear giant Adidas disclosed a data breach after attackers hacked a customer service provider and stole some customers' data. [...]

DoorDash Hack
2025-05-20 11:05

A DoorDash driver stole over $2.5 million over several months: The driver, Sayee Chaitainya Reddy Devagiri, placed expensive orders from a fraudulent customer account in the DoorDash app. Then,...

Israel arrests new suspect behind Nomad Bridge $190M crypto hack
2025-05-16 16:25

An American-Israeli national named Osei Morrell has been arrested in Israel for his alleged involvement in exploiting the Nomad bridge smart-contract in August 2022 that allowed hackers to siphon...

Russia-Linked APT28 Exploited MDaemon Zero-Day to Hack Government Webmail Servers
2025-05-15 10:05

A Russia-linked threat actor has been attributed to a cyber espionage operation targeting webmail servers such as Roundcube, Horde, MDaemon, and Zimbra via cross-site scripting (XSS)...

Learning How to Hack: Why Offensive Security Training Benefits Your Entire Security Team
2025-05-14 10:54

Organizations across industries are experiencing significant escalations in cyberattacks, particularly targeting critical infrastructure providers and cloud-based enterprises. Verizon’s recently...

iClicker site hack targeted students with malware via fake CAPTCHA
2025-05-11 14:16

The website of iClicker, a popular student engagement platform, was compromised in a ClickFix attack that used a fake CAPTCHA prompt to trick students and instructors into installing malware on...

Critical Langflow RCE flaw exploited to hack AI app servers
2025-05-06 16:05

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has tagged a Langflow remote code execution vulnerability as actively exploited, urging organizations to apply security updates and...