loader image
Hackers Exploit WordPress Alone Theme for Site Takeovers

Hackers exploit WordPress Alone theme vulnerabilities to launch remote code execution attacks, putting thousands of websites at risk of full compromise. The flaw, an unauthenticated arbitrary file upload vulnerability, allows attackers to bypass security measures and gain control over affected sites. Once inside, threat actors can execute malicious scripts, manipulate content, and take over administrative […]

SonicWall Warns Users to Patch 3 VPN Flaws Urgently

SonicWall warns users to patch immediately after uncovering three critical vulnerabilities in its VPN products. The security flaws, which affect several of the company’s firewall and remote access solutions, could allow attackers to bypass authentication or execute remote code. These risks pose a serious threat to organizations relying on SonicWall to secure remote connections. The […]

Russia Bans Speedtest Tool Citing Cybersecurity Risk

Russia has blocked access to Speedtest, a widely used internet performance tool developed by Seattle-based company Ookla, citing national security risks. The move, announced by Russia’s telecommunications regulator, comes as officials raise concerns that data collected through the tool could be leveraged in cyberattacks. Russia bans Speedtest tool as part of broader efforts to limit […]

FunkSec Ransomware Cracked as Hackers Vanish

Cybersecurity researchers have released a free public decryptor for the FunkSec ransomware strain, marking a significant win for victims who lost access to their data. The tool became available after the group behind the FunkSec ransomware was deemed inactive. Experts confirmed that the FunkSec ransomware cracked open following signs that its operators had ceased all […]

IBM Says U.S. Data Breach Costs Hit Record $10 Million

The average cost of a data breach in the U.S. surged to a record $10 million this year, IBM says US data breach costs continue to outpace global trends. While the global average dropped to $4.45 million—a 9% decline from 2024—U.S. organizations experienced the steepest financial impact among surveyed countries. IBM says US data breach […]

Lenovo Fixes BIOS Flaws That Bypass Secure Boot

Lenovo has released new UEFI firmware updates to address high-severity BIOS vulnerabilities that could allow attackers to bypass Secure Boot protections. The flaws affect specific all-in-one desktop models that use customized Insyde UEFI firmware. As part of this security response, Lenovo fixes BIOS flaws that posed a risk to device integrity and system trust. The […]

TraderTraitor Hacks Cloud to Steal Billions in Crypto

A North Korean hacking unit known as TraderTraitor has intensified its focus on cryptocurrency firms by breaching cloud platforms and poisoning supply chains, according to new findings. The TraderTraitor hacks cloud environments by leveraging trojanized applications and social engineering, often targeting developers with fake job offers on LinkedIn or Telegram. Since 2020, the group has […]

Orange Hit by Cyberattack Disrupting IT Systems

Orange, the French multinational telecommunications and digital services provider, faced a cybersecurity breach on Friday that targeted one of its information systems, according to a report by BleepingComputer. The incident left operations disrupted, raising concerns about the resilience of its digital infrastructure. Orange hit by cyberattack, has yet to disclose full details about the breach […]

Microsoft Uncovers macOS Flaw That Bypasses Privacy

Microsoft has identified a vulnerability in macOS, dubbed “Sploitlight,” that could allow attackers to bypass Transparency, Consent, and Control (TCC) protections. Microsoft uncovers macOS flaw in the system’s logging framework, which could expose sensitive user data by exploiting how the operating system grants app permissions. According to Microsoft, the flaw resided in how macOS logged […]

Base44 AI Platform Hit by Critical Auth Flaw

A critical flaw in the Base44 AI Platform Auth flow has exposed users to significant security risks, according to a report from Infosecurity Magazine. The vulnerability allows threat actors to bypass Single Sign-On protocols, potentially registering and accessing private applications without proper authentication. Security researchers identified the issue within the platform’s authentication mechanism, which is […]

Ingram Micro Hackers Threaten 3.5TB Data Dump

Ingram Micro is facing a renewed cybersecurity crisis this week as hackers threaten to leak 3.5 terabytes of stolen data. Despite the looming threat, the global IT distributor claims to have fully restored its worldwide operations, although certain regional websites are only now returning online. The company has not disclosed specific details about the compromised […]

Avast Unleashes FunkSec Ransomware Decryptor

Cybersecurity firm Avast has unveiled a new tool to help victims recover from FunkSec ransomware attacks. In a targeted effort, Avast unleashes FunkSec ransomware decryption support through a publicly available tool and is actively assisting dozens of affected organizations. The ransomware strain, described as short-lived, had impacted multiple victims before being disrupted. Avast collaborated closely […]