loader image
OpenSSL Prague 2025 Speaker Deadline Nears

Organizers of the OpenSSL Prague 2025 speaker program are urging cybersecurity professionals to submit their proposals as the application deadline nears. The annual event, set to take place in the Czech capital, aims to spotlight advancements in encryption, secure communications, and open-source cryptographic tools. Organizers are looking for experienced voices to lead technical sessions, workshops, […]

Hackers Fake SonicWall VPN to Steal Corporate Logins

Hackers are distributing a fake SonicWall VPN application to steal corporate login credentials from remote users. The malicious software mimics SonicWall’s legitimate NetExtender SSL VPN app, which allows employees to securely connect to internal networks. Dubbed “SilentRoute” by Microsoft Threat Intelligence, the trojanized version tricks users into installing it, giving attackers access to sensitive data. […]

Microsoft Tests Quick Recovery Tool in Windows 11

Microsoft is testing a new feature in Windows 11 that introduces a dedicated page within the system’s Settings app for quick machine recovery, offering users streamlined access to recovery tools. The addition is designed to simplify the process of restoring a device following system issues, providing more control over configuration options during recovery. The update […]

Play Ransomware Hit 900 Victims, FBI Says in Warning

The Play ransomware group has compromised approximately 900 organizations worldwide as of May 2025, according to an updated joint advisory issued by the Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), and the Australian Cyber Security Centre. The figure marks a threefold increase compared to the number of victims reported in […]

Salesforce Flaw Exposes Customer Data in Plain Text

Salesforce’s OmniStudio platform contains a critical vulnerability that exposes sensitive customer data in plain text, according to researchers at AppOmni. The flaw stems from misconfigurations in the platform’s data processing pipeline, where key components like FlexCard and OmniScript bypass standard encryption protocols. This leaves personally identifiable information — such as names, Social Security numbers and […]

Graphite Spyware Hits iPhones of European Journalists

Security investigators have confirmed that attackers deployed Graphite Spyware Hits iPhones in a series of zero-click exploits targeting Apple iOS devices. The spyware platform, developed by Paragon, infiltrated the smartphones of at least two journalists based in Europe, according to a forensic analysis. Graphite Spyware Hits iPhones without requiring user interaction, making it highly effective […]

Archetyp Dark Web Market Busted, Admin Held in Spain

European authorities have seized the Archetyp Dark Web Market and apprehended its alleged administrator in Spain, disrupting one of the latest illicit marketplaces operating on the dark net. Officials coordinated the takedown as part of a targeted crackdown on cybercrime networks that facilitate the sale of illegal goods and services online. The operation resulted in […]

Atari Outsmarts ChatGPT as Apple Dismisses AI Thinking

In the latest episode of The AI Fix, Atari outsmarts ChatGPT in a surprising twist that pits vintage gaming against cutting-edge artificial intelligence. The show dives into this unexpected victory, illustrating how traditional programming can still challenge modern machine learning tools. Meanwhile, Apple counters the AI hype by asserting that machine “thinking” is nothing more […]

UK Cyber Agency Seeks Advisors to Help Protect SMEs

The UK Cyber Agency seeks advisors to join a national initiative aimed at bolstering cybersecurity support for small and medium-sized enterprises. The program recruits professionals who can offer practical, hands-on guidance to help businesses defend against evolving digital threats. With cyberattacks continuing to rise, the agency is expanding its Cyber Advisor scheme to meet growing […]

Fake Job Offers Spread PureHVNC Malware in Phishing Scam

Cybercriminals last year leveraged fake job offers from well-known fashion and beauty brands—including Bershka, John Hardy, Fragrance Du Bois, and Dear Klairs—to distribute the PureHVNC remote access trojan, according to a report from GBHackers News. The phishing campaign used these fraudulent employment lures as part of a multi-stage strategy to gain unauthorized access to victims’ […]

Cybersecurity ROI Climbs as Budgets Shrink: Report

Cybersecurity budgets have declined significantly over the past two years, despite evidence that security teams are generating measurable business value, according to a report cited by *Infosecurity Magazine*. The share of annual organizational spending allocated to cybersecurity has dropped from 1.1% to 0.6%, highlighting a growing disconnect between investment levels and cybersecurity’s contribution to enterprise-wide […]

Fake DocuSign Sites Spread RAT via PowerShell Attacks

A new cyber campaign is leveraging fake websites impersonating popular services like DocuSign and Gitcode to deploy NetSupport RAT malware through multi-stage PowerShell scripts, according to researchers from the DomainTools Investigations team. The operation uses deceptive domains to lure users into downloading malicious scripts that initiate the infection process. The attack begins when a user […]