Security News

Sector by sector: How data breaches are wrecking bottom lines
2025-04-14 04:30

Data breaches are rising across industries, hitting healthcare, finance, and retail especially hard. The damage goes beyond lost data, as it’s financial, operational, and reputational. The post...

Organizations can’t afford to be non-compliant
2025-04-14 04:00

Non-compliance can cost organizations 2.71 times more than maintaining compliance programs, according to Secureframe. That’s because non-compliance can result in business disruption, productivity...

China reportedly admitted directing cyberattacks on US infrastructure
2025-04-14 03:30

PLUS: India's new electronics subsidies; Philippines unplugs a mobile carrier; Alibaba Cloud expands Asia In Brief Chinese officials admitted to directing cyberattacks on US infrastructure at a...

Hacktivism resurges – but don't be fooled, it's often state-backed goons in masks
2025-04-13 20:49

Military units, government nerds appear to join the fray, with physical infra in sights Feature From triggering a water tank overflow in Texas to shutting down Russian state news services on...

Chrome 136 fixes 20-year browser history privacy risk
2025-04-13 14:18

​Google is fixing a long-standing privacy issue that, for years, enabled websites to determine users' browsing history through the previously visited links. [...]

Week in review: Microsoft patches exploited Windows CLFS 0-day, WinRAR MotW bypass flaw fixed
2025-04-13 08:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft fixes actively exploited Windows CLFS zero-day (CVE-2025-29824) April 2025 Patch Tuesday...

Leak confirms OpenAI's GPT 4.1 is coming before GPT 5.0
2025-04-12 16:09

OpenAI is working on yet another AI model, reportedly called GPT-4.1, a successor to GPT-4o. [...]

Tycoon2FA phishing kit targets Microsoft 365 with new tricks
2025-04-12 15:16

Phishing-as-a-service (PhaaS) platform Tycoon2FA, known for bypassing multi-factor authentication on Microsoft 365 and Gmail accounts, has received updates that improve its stealth and evasion...

AI-hallucinated code dependencies become new supply chain risk
2025-04-12 14:19

A new class of supply chain attacks named 'slopsquatting' has emerged from the increased use of generative AI tools for coding and the model's tendency to "hallucinate" non-existent package names. [...]

LLMs can't stop making up software dependencies and sabotaging everything
2025-04-12 11:14

Hallucinated package names fuel 'slopsquatting' The rise of LLM-powered code generation tools is reshaping how developers write software - and introducing new risks to the software supply chain in...