loader image
Telefónica Update Triggers Telecom Outage Across Spain

Telecommunications services across Spain suffered a widespread outage on Tuesday, May 20, 2025, following a scheduled network update by Telefónica that triggered a cascading failure across multiple carriers. Fixed-line and mobile services were disrupted nationwide, with Madrid, Barcelona and other urban centers reporting significant connectivity issues. Major providers including Movistar, Orange, Vodafone, Digimobil and O2 […]

Fake Chrome Extensions Steal Logins, Inject Ads

More than 100 malicious Chrome browser extensions have been discovered hijacking user sessions, stealing credentials, and injecting unwanted ads, according to recent findings. The campaign, active since at least February 2024, involves an unidentified threat actor who has developed and distributed the rogue extensions under the guise of legitimate utilities and productivity tools. The extensions […]

Russian Hackers Void Blizzard Escalate Spy Campaign

A Russian-linked hacking group known as Void Blizzard has intensified its cyber-espionage operations, focusing on infiltrating organizations by targeting their external partners and contractors, according to new findings. The group is reportedly leveraging these indirect access points to obtain login credentials and sensitive internal data, heightening concerns among cybersecurity professionals. Void Blizzard’s strategy reflects a […]

Hackers Fake OneNote Login to Steal Microsoft Emails

Hackers are deploying a highly sophisticated phishing campaign that mimics Microsoft OneNote login prompts to steal Office 365 and Outlook credentials, according to researchers at ANY.RUN. The operation primarily targets Italian and U.S. users and abuses trusted platforms such as Notion, Glitch, Google Docs and RenderForest to host fake login pages. Victims receive emails with […]

Deutsche Bank IT Worker Let Lover Into Data Center

A Deutsche Bank IT employee allowed his romantic partner unauthorized access to the company’s data center, raising concerns over internal security protocols at the financial institution. The incident, which occurred at the bank’s facility managed by Computacenter, has drawn attention due to the sensitive nature of the infrastructure involved. Details surrounding the motivation behind the […]

Hungary Biometric Laws Breach EU AI Act, Group Says

Hungary’s newly enacted biometric surveillance laws contravene the European Union’s Artificial Intelligence Act, according to European Digital Rights (EDRi), a civil rights group focused on digital freedoms. The organization argues that the legislation enables the use of invasive surveillance technologies that may infringe on fundamental rights, particularly the rights to privacy and freedom of assembly. […]

SpyCloud Finds 94% of Fortune 50 Hit by Phishing

SpyCloud, a cybersecurity firm based in Austin, Texas, has released findings showing that 94% of Fortune 50 companies have experienced employee data exposure linked to phishing attacks. The analysis, published on May 7, 2025, underscores the growing threat posed by credential theft and social engineering tactics targeting major U.S. corporations. The report highlights how stolen […]

Masimo Hit by Cyberattack, Disrupts Operations

Masimo Corp., a medical technology firm, is experiencing operational disruptions following a cybersecurity breach that has impacted parts of its production processes. The company has initiated coordination with law enforcement agencies in response to the incident, which has raised concerns over the security of its digital infrastructure. The breach has triggered interruptions in manufacturing operations, […]

U.S. Disrupts Botnet, Charges Russians in Crackdown

U.S. authorities have disrupted a major cybercrime operation involving two proxy services—Anyproxy and 5socks—that leveraged infected devices to form a botnet, according to a law enforcement announcement. The takedown targeted infrastructure used to mask malicious online activity by routing traffic through compromised systems without the owners’ knowledge. The operation, which disabled both platforms, marks a […]

PupkinStealer Malware Loots Logins, Sends Data via Telegram

A new information-stealing malware written in .NET, dubbed PupkinStealer, has emerged, targeting browser credentials and user data with exfiltration conducted via Telegram, cybersecurity firm CYFIRMA said. Detected in April 2025, the malware is attributed to a developer using the alias “Ardent” and reflects a growing trend of threat actors abusing legitimate platforms for command-and-control operations. […]

EU Cybersecurity Agency Launches Vulnerability Database

The European Union Agency for Cybersecurity (ENISA) has launched the European Vulnerability Database, a centralized resource aimed at enhancing cybersecurity resilience across the region. The platform aggregates reliable and actionable data on security vulnerabilities affecting Information and Communication Technology (ICT) products and services. Designed to support risk mitigation efforts, the database includes critical information such […]

Ivanti Patches Zero-Days Used in Code Execution Attacks

Ivanti urged customers on Thursday to apply security patches for its Endpoint Manager Mobile (EPMM) software to address two critical zero-day vulnerabilities. The flaws, which have been actively exploited in the wild, can be chained together by attackers to achieve remote code execution on targeted systems. The company issued the warning after identifying that threat […]