loader image
M&S Says Cyberattack to Cut Profit by £300 Million

Marks & Spencer said a recent cyberattack will reduce its operating profit by an estimated £300 million, citing ongoing disruption expected to last through July. The British retailer disclosed that the financial impact figure is calculated before factoring in potential cost mitigation, insurance coverage or trading-related actions. The company did not specify details about the […]

Enzene Biosciences Hit by Cyberattack on U.S. Ops

Enzene Biosciences, a biotechnology subsidiary of Indian pharmaceutical giant Alkem Laboratories, has experienced a cybersecurity breach that disrupted its U.S. operations, according to a report by The Cyber Express. The incident, which involved unauthorized access, reportedly led to a compromise of company funds, although the scope and financial impact have not been disclosed. The attack […]

Crawlomatic Plugin Patched for Critical RCE Flaw

A critical remote code execution vulnerability with a CVSS score of 9.8 has been patched in the Crawlomatic WordPress plugin, according to a notice published by cybersecurity sources. The flaw stemmed from a missing file type validation mechanism, which allowed attackers to upload arbitrary files to affected systems. This oversight enabled unauthorized users to execute […]

Arla Foods Hit by Cyberattack, Production Disrupted

Arla Foods has confirmed that it was targeted by a cyberattack that disrupted production operations, causing delays across its supply chain. The dairy giant disclosed the incident to BleepingComputer, stating that the attack affected its ability to produce and distribute goods efficiently. While the company did not provide details about the nature or scope of […]

Hackers Target macOS With Fake Ledger Apps, Steal Crypto

Hackers are ramping up efforts to compromise macOS users by deploying malware through counterfeit versions of Ledger Live, the software used to manage Ledger hardware cryptocurrency wallets, according to research by Moonlock. Since August 2024, at least four distinct campaigns have been identified, with attackers refining tactics to bypass Apple’s security measures and steal users’ […]

SK Telecom Hack Exposes 26 Million Mobile IDs

SK Telecom, South Korea’s largest wireless carrier, has disclosed a major cybersecurity breach involving a stealthy malware attack that persisted undetected for two years. The breach resulted in the unauthorized leakage of approximately 26 million International Mobile Subscriber Identity (IMSI) records—unique identifiers tied to mobile users and critical for network authentication and tracking. The attack, […]

EvilWorker Hijacks Browsers in Stealthier Phishing Blitz

A newly surfaced adversary-in-the-middle (AiTM) attack framework known as “EvilWorker” is gaining attention within the cybersecurity community for its innovative use of service workers to intercept and manipulate web traffic. Highlighted in a recent post on the r/netsec forum, EvilWorker is being compared to the widely known Evilginx2 tool, with users suggesting it may be […]

O2 Flaw Let Callers Track Users’ Locations Since 2017

A critical flaw in O2 UK’s Voice over LTE (VoLTE) service exposed the real-time location and device identifiers of its mobile customers during phone calls, according to a recent disclosure. The vulnerability, present since the service’s launch in March 2017, leaked sensitive data—including IMSI, IMEI, and precise cell tower information—via improperly configured SIP headers in […]

KrebsOnSecurity Hit by Record 6.3 Tbps DDoS Blast

Cybersecurity news site KrebsOnSecurity was targeted in a massive distributed denial-of-service (DDoS) attack that peaked at 6.3 terabits per second, according to HackRead. The attack was reportedly carried out by the Aisuru botnet, a network of compromised devices used to flood websites with traffic in an attempt to disrupt access. The scale of the incident […]

SK Telecom Hack Exposes 27 Million SIM Records

SK Telecom, one of South Korea’s largest telecommunications providers, suffered a major data breach exposing nearly 26.69 million international mobile subscriber identity (IMSI) records, according to a disclosure by the Ministry of Science and ICT. The breach, first reported last month, has raised concerns over the security of mobile communications and subscriber data in the […]

France Denies Telegram CEO’s Romania Election Claim

France’s foreign ministry pushed back against claims made by Telegram’s CEO, stating it “categorically rejects” accusations that French intelligence requested the platform to suppress conservative voices in Romania ahead of national elections. The ministry’s response follows a statement from Pavel Durov, who alleged that French authorities attempted to influence political discourse in the country through […]

Fake Clinics Lure Victims in Healthcare Phishing Wave

Cybercriminals are targeting the healthcare sector with a new wave of phishing scams involving fake medical clinics, according to GBHackers News. The attacks have contributed to a sharp rise in data breaches across the industry, with 92% of healthcare organizations reporting incidents that compromised more than 276 million patient records. On average, 758,000 records are […]