loader image
Amazon CSO Warns AI Era Exposes Human Weakness

Amazon CSO Warns AI Era naturally shifts the cybersecurity landscape toward human vulnerabilities, not just software flaws. In a recent conversation on the Click Here podcast, Steve Schmidt revealed how Amazon’s digital honeypot, dubbed MadPot, played a key role in uncovering the activities of Volt Typhoon, a state-backed cyber threat group. The tool lured attackers […]

Citrix Zero-Day Flaw Hit as Hackers Exploit NetScaler

Citrix has disclosed a critical vulnerability affecting its NetScaler ADC and NetScaler Gateway products, warning users that the flaw is actively being exploited in the wild. The Citrix Zero Day Flaw, which surfaced just nine days after the company identified two separate defects in the same systems, poses a significant security risk to enterprise users […]

Google Drops Trust in China, Hungary Web Certificates

Google plans to revoke trust in digital certificates issued by Chunghwa Telecom of China and Hungary-based NetLock, citing “patterns of concerning behavior” by both certificate authorities. The decision will affect users of the Chrome web browser, which will no longer recognize certificates from these entities as valid. The move reflects growing scrutiny over the practices […]

Honeywell Says 46% Ransomware Surge Hits OT Systems

Ransomware attacks surged 46% over the past year, with operational technology (OT) systems emerging as primary targets, according to Honeywell’s newly released 2025 Cyber Threat Report. The findings underscore a growing trend of cybercriminals shifting focus from traditional IT infrastructure to critical industrial systems, raising alarms across the manufacturing and energy sectors. The report highlights […]

WhatsApp Joins Apple in UK Encryption Clash

WhatsApp is signaling support for Apple in its ongoing standoff with the United Kingdom over encryption and user privacy. The messaging platform is aligning itself with Apple’s position that technology companies should not be compelled to maintain access to users’ encrypted content, such as data stored in iCloud accounts, to satisfy government surveillance demands. The […]

Windows SMB Flaw Lets Hackers Hijack System Privileges

A critical Windows SMB vulnerability tracked as CVE-2025-33073 has been exploited in the wild using a technique known as Reflective Kerberos Relay Attack. Microsoft addressed the flaw during its June 2025 Patch Tuesday updates, assigning it a CVSS score of 9.8 due to the high risk of privilege escalation and low exploitation complexity. The Reflective […]

Ex-US Army Sergeant Admits Selling Secrets to China

An ex US Army sergeant admits he provided classified military information to Chinese intelligence agents, deepening concerns over insider threats to national security. The former soldier allegedly shared sensitive data over multiple years, compromising U.S. defense operations. Officials say the individual received payments in exchange for the information during and after his military service. As […]

UK Fines 23andMe $3 Million Over Cyber Failures

The United Kingdom’s primary data privacy watchdog fined personal genomics firm 23andMe over $3 million on Tuesday, citing inadequate cybersecurity measures. The penalty comes after a significant data breach that raised concerns about the company’s ability to protect sensitive genetic information. The UK fines 23andMe cybernaturally as part of broader efforts to hold companies accountable […]

Default Gateway Lets You Control Network Access Points

A default gateway acts as a central hub in a local network, directing traffic from devices like laptops, smartphones, and IoT gadgets to destinations beyond their subnet. Typically, this role is handled by a router, which connects the internal network to the internet. Knowing your default gateway lets you control network settings and access key […]

Linux Flaws Let Hackers Steal Password Hashes at Scale

Two critical vulnerabilities in widely used Linux distributions could allow local attackers to extract password hashes by manipulating core dump files, according to researchers at Qualys Threat Research Unit. The flaws—CVE-2025-5054 and CVE-2025-4598—affect Ubuntu’s Apport and systemd-coredump used in Red Hat Enterprise Linux 9/10 and Fedora 40/41. Both bugs exploit race conditions that let users […]

Meta Halts Android Tracking After Localhost Flaw Found

Meta has paused a tracking technique in its Pixel tool for Android after researchers disclosed that it exploited a localhost loophole. The method allowed browser data to be potentially linked to individual app users, raising privacy concerns. According to researchers, both Meta—referred to in the summary as Zuckercorp—and Yandex leveraged this method to associate online […]

94 Billion Stolen Browser Cookies Found Online

A trove of nearly 94 billion stolen browser cookies has surfaced on the dark web, exposing a significant cybersecurity threat to users worldwide. These cookies, which store session data and authentication information, can grant attackers unauthorized access to online accounts without needing passwords. The massive cache was discovered circulating across underground forums and marketplaces, suggesting […]