loader image
Gunra Ransomware Surge Hits Critical Infrastructure

Cybersecurity firm CYFIRMA has issued a warning over a surge in Gunra ransomware attacks, highlighting an increased threat to critical infrastructure sectors. The group behind the malware is employing double extortion tactics, combining system encryption with the theft and exposure of sensitive data to pressure victims into paying ransoms. According to CYFIRMA, the attackers are […]

Microsoft Teams to Block Screenshots in Meetings

Microsoft is introducing a new privacy feature for its Teams platform that will block screen captures during meetings, aiming to safeguard sensitive information shared in virtual environments. The “Prevent Screen Capture” capability, slated for global release in July 2025, ensures that any unauthorized attempt to take screenshots results in a blacked-out meeting window, making captured […]

UK Jails Six Bulgarians for Russian Spy Operations

Six Bulgarian nationals have been sentenced to more than 50 years collectively in the United Kingdom for conducting espionage operations on behalf of Russian intelligence, according to authorities. The individuals, who were not named in the summary, were found guilty of participating in a covert network that gathered sensitive information and carried out surveillance activities […]

Moldova Detains Suspect in DoppelPaymer Hack Spree

Moldovan authorities have arrested a 45-year-old individual suspected of involvement in ransomware attacks carried out by the DoppelPaymer group, officials said. The suspect is allegedly connected to cyberattacks that targeted multiple organizations in the Netherlands during 2021, according to a statement released by Moldovan law enforcement. The arrest marks a significant development in international efforts […]

CISA Adds TeleMessage Flaw to Exploited Bugs List

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly identified vulnerability affecting TeleMessage to its Known Exploited Vulnerabilities (KEV) catalog, following a confirmed security breach. The addition signals that threat actors have actively exploited the flaw, prompting federal agencies and organizations to take immediate remediation steps. TeleMessage, a provider of secure messaging […]

Alabama Confirms Cyberattack, Offers Few Details

Alabama’s state government acknowledged it was the target of a cybersecurity breach but released minimal information about the incident. Officials confirmed the attack occurred but did not specify when it began, how it was carried out, or what systems were affected. The lack of detail leaves questions about the scope of the breach and whether […]

SEC X Account Hacker Gets 14-Month Prison Sentence

An Alabama man has been sentenced to 14 months in federal prison for hacking the U.S. Securities and Exchange Commission’s official social media account, an incident that briefly disrupted cryptocurrency markets. The breach occurred in January 2024, when unauthorized access to the SEC’s account was used to publish fraudulent posts. The misleading messages falsely suggested […]

Konsola Proget Hit by Seven Security Flaws

CERT Polska has disclosed seven security vulnerabilities in Konsola Proget software, identified as CVE-2025-1415 through CVE-2025-1421. The flaws were reported to the organization and have since been documented on its official platform. Specific technical details surrounding the nature of the vulnerabilities were not provided in the summary, but the sequential CVE identifiers suggest a coordinated […]

Russian Hackers Target Firms Backing Ukraine’s Military

A Russian state-linked hacking group known as APT28 is intensifying cyber operations aimed at compromising the digital infrastructure of Western military organizations and private contractors supporting Ukraine. The group is reportedly targeting logistics networks and technology systems that play a critical role in sustaining Ukraine’s defense capabilities. Security analysts indicate that APT28’s campaign is designed […]

Fake Chrome Extensions Mimic Fortinet to Steal Data

A malicious campaign targeting Google Chrome users is leveraging more than 100 fake browser extensions to steal data and execute remote commands. The extensions, available through the Chrome Web Store, masquerade as legitimate services including Fortinet security tools, YouTube utilities, VPNs, AI assistants, and cryptocurrency platforms. Once installed, the extensions covertly exfiltrate browser cookies and […]

ChatGPT Flaw Exposes Users to Malicious Image Attacks

A newly disclosed vulnerability in OpenAI’s ChatGPT platform allows attackers to embed malicious SVG and image files into shared conversations, exposing users to cross-site scripting (XSS) attacks, phishing schemes and potentially harmful visual content. Tracked as CVE-2025-43714, the flaw affects the system through March 30, 2025. Security researchers found that ChatGPT improperly renders SVG files […]

Unimed Data Leak Exposes 14 Million Patient Chats

Unimed, the world’s largest healthcare cooperative based in Brazil, exposed at least 14 million patient-doctor communications due to a misconfiguration in its data infrastructure, Cybernews reported. The breach occurred through an unsecured deployment of Apache Kafka, an open-source platform used for real-time data transmission. The leaked data included conversations between patients and healthcare professionals, as […]