loader image
Chinese Hackers Exploit SAP Flaw to Deploy SuperShell

A Chinese state-linked threat actor identified as Chaya_004 has been observed exploiting a critical remote code execution vulnerability in SAP NetWeaver, researchers at Forescout Vedere Labs said in a report released Tuesday. The flaw, tracked as CVE-2025-31324, carries a maximum CVSS severity score of 10.0 and has been under active exploitation since April 29, 2025. […]

Roblox Sued for Tracking Kids to Boost Ad Revenue

Roblox Corp. is facing a lawsuit that accuses the gaming platform of covertly tracking children’s online behavior to profit from their personal data. According to a report by Hackread, the legal complaint alleges that Roblox used hidden tracking tools embedded within its platform to collect data from underage users without obtaining proper consent. The lawsuit […]

Microsoft Uncovers Turkish Hacking of Kurdish Forces

Microsoft has identified a zero-day vulnerability exploited in a cyber-espionage campaign targeting Kurdish military operations in Iraq, the company said. The attacks involve hackers aligned with the Turkish government who have breached Output Messenger, a workplace communication platform, to monitor cross-border activities. According to the tech giant, the threat actors used the software’s weaknesses to […]

Proofpoint to Buy Hornetsecurity in $1 Billion Deal

Proofpoint Inc., a major player in the cybersecurity sector, has agreed to acquire Hornetsecurity, a European cloud security firm based in Germany, in a deal valued at more than $1 billion. The acquisition is expected to close later this year, pending regulatory approvals and customary closing conditions. Hornetsecurity specializes in safeguarding companies from cloud-based threats, […]

EDRi Warns EU Against Reopening Landmark GDPR Law

European Digital Rights (EDRi), a civil society group focused on digital rights, has urged the European Commission to uphold the General Data Protection Regulation (GDPR) amid concerns it may be reopened for revision. In a public statement, the organization warned that altering the landmark privacy law could jeopardize fundamental rights and weaken accountability in the […]

FBI Warns AI Voice Scams Mimic U.S. Government

The FBI has issued a warning about a growing wave of scams using artificial intelligence to replicate the voices of U.S. government officials. According to the agency, cybercriminals are leveraging advanced AI tools to create convincing audio deepfakes, deceiving victims into believing they are speaking with federal authorities. These voice-cloning schemes are being used to […]

Chrome Flaws Let Hackers Run Malicious Code Remotely

Google released a critical security update for its Chrome browser on May 21, patching eight vulnerabilities—including a high-severity flaw that could enable remote code execution. The most pressing issue, tracked as CVE-2025-5063, is a “use-after-free” vulnerability in Chrome’s Compositing system, which could allow attackers to run malicious code by luring users to compromised websites. The […]

Linux Flaws Let Hackers Steal Password Hashes at Scale

Two critical vulnerabilities in widely used Linux distributions could allow local attackers to extract password hashes by manipulating core dump files, according to researchers at Qualys Threat Research Unit. The flaws—CVE-2025-5054 and CVE-2025-4598—affect Ubuntu’s Apport and systemd-coredump used in Red Hat Enterprise Linux 9/10 and Fedora 40/41. Both bugs exploit race conditions that let users […]

Meta Halts Android Tracking After Localhost Flaw Found

Meta has paused a tracking technique in its Pixel tool for Android after researchers disclosed that it exploited a localhost loophole. The method allowed browser data to be potentially linked to individual app users, raising privacy concerns. According to researchers, both Meta—referred to in the summary as Zuckercorp—and Yandex leveraged this method to associate online […]

94 Billion Stolen Browser Cookies Found Online

A trove of nearly 94 billion stolen browser cookies has surfaced on the dark web, exposing a significant cybersecurity threat to users worldwide. These cookies, which store session data and authentication information, can grant attackers unauthorized access to online accounts without needing passwords. The massive cache was discovered circulating across underground forums and marketplaces, suggesting […]

US Offers $10 Million for RedLine Malware Mastermind

The U.S. government has announced a reward of up to $10 million for information leading to the identification or location of the developer behind the RedLine malware and members of a state-sponsored cybercrime group. The offer, issued under the Rewards for Justice program, targets individuals believed to be responsible for creating and deploying malicious software […]

UK Plans Supercomputer Hub at Edinburgh University

The UK government plans to invest in a new national supercomputer, with the facility to be based at the University of Edinburgh. The initiative is aimed at strengthening the country’s computing infrastructure and providing a powerful resource to support research, innovation, and data-driven projects across a range of sectors. The supercomputer is expected to deliver […]