loader image
C&M Worker Paid $920 in $140 Million Bank Hack

Hackers siphoned nearly $140 million from six Brazilian banks by exploiting login credentials purchased from an employee at C&M, a company specializing in financial connectivity services. The C&M worker received just $920 in exchange for the sensitive access, which attackers later used to orchestrate one of the country’s most damaging cyber heists. The breach targeted […]

AT&T to Pay $177 Million in Data Breach Deal

AT&T has agreed to pay $177 million to settle claims linked to data breaches that occurred in 2019 and 2024. The breaches exposed sensitive customer information, prompting legal action and regulatory scrutiny. The settlement aims to compensate affected individuals and resolve legal disputes stemming from the incidents. The resolution follows investigations into how unauthorized actors […]

Nova Scotia Power Hack Exposes 300,000 to Data Theft

Hackers infiltrated Nova Scotia Power’s critical systems, compromising the personal data of nearly 300,000 individuals, according to the findings of an internal investigation. The Nova Scotia Power hack gave attackers access to sensitive information, including driver’s license numbers, Canadian Social Insurance details, and bank account information. Investigators confirmed that the breach involved unauthorized access to […]

Bert Ransomware Hits Tech, Health Firms Worldwide

A newly identified ransomware group known as Bert has launched a series of cyberattacks against organizations across several continents, focusing primarily on the healthcare and technology sectors. Researchers at Trend Micro revealed that the Bert Ransomware hits Technaturally, disrupting operations and compromising data in targeted industries that often struggle with outdated cybersecurity defenses. The attackers […]

Qantas Extorted After Hackers Steal Customer Data

Qantas Airways is facing a ransomware extortion attempt after hackers breached its systems and claimed to have stolen sensitive data tied to millions of customers. In a statement, the airline confirmed that threat actors are now demanding payment, marking the latest development in the ongoing cyberattack. Qantas extorted after hackers accessed internal data, possibly affecting […]

IBM Cloud Pak Flaws Let Hackers Hijack Systems

IBM has identified critical vulnerabilities in its Cloud Pak System, revealing new cyber risks for enterprise users. The disclosed IBM Cloud Pak flaws could allow remote attackers to manipulate system functions by exploiting HTML injection and prototype pollution issues. Security researchers at GBHackers News highlighted the potential for these bugs to undermine system integrity, leaving […]

Grafana Fixes High-Risk Flaws in Chromium Plugin

Grafana has released critical security updates addressing four high-severity vulnerabilities found in its Image Renderer plugin and Synthetic Monitoring Agent’s Chromium component. The flaws, which stem from outdated Chromium libraries, posed significant risk to users running affected versions. The Grafana fixes high-risk issues by updating the underlying Chromium browser dependency, which both plugins rely on […]

Identity Cyberattacks Jump 156% in 15-Month Surge

Identity-related cyber incidents have surged dramatically, totaling 19,000 attacks from 2024 through the first quarter of 2025. According to Infosecurity Magazine, identity cyberattacks jumped 156% compared to 2023, signaling a sharp escalation in threats targeting user credentials and verification systems. The spike highlights the growing urgency for organizations to strengthen identity management protocols. Cybersecurity professionals […]

Spyware Hits Russian Industrial Firms, Kaspersky Says

A newly identified spyware campaign has compromised over 100 victims within Russia’s industrial sector, according to cybersecurity firm Kaspersky. Based in Moscow, the company reported that the malware has infiltrated several dozen organizations, though it declined to name specific targets. Spyware hits Russian industrial systems as attackers continue to exploit vulnerabilities in the country’s critical […]

Italy Arrests Alleged Silk Typhoon Vaccine Cyberspy

Italian authorities have arrested a man accused of cyberespionage linked to the Silk Typhoon threat group, which allegedly targeted COVID-19 vaccine data. The suspect, identified as Zewei Xu, was taken into custody as part of an ongoing investigation into espionage activities tied to the pandemic’s critical medical research. The case, widely reported under the headline […]

Infostealer Services Drive Surge in Identity Hacks

Cybercriminals are increasingly turning to subscription-based malware platforms, pushing global identity theft incidents to unprecedented levels. Infostealer services drive surges naturally in stolen credentials by offering low-cost, scalable access to malicious tools. These services allow even low-skilled actors to deploy spyware that captures login data, personal information, and financial credentials. Hackers then trade or sell […]

RondoDox Botnet Hijacks TBK, Four-Faith Devices

Cybersecurity analysts have uncovered a malicious campaign that exploits known vulnerabilities in TBK digital video recorders and Four-Faith routers to form a new distributed denial-of-service (DDoS) botnet named RondoDox. The RondoDox Botnet hijacks TBK DVR-4104 and DVR-4216 models by leveraging CVE-2024-3721, a medium-severity command injection flaw. Attackers also target Four-Faith routers using CVE-2024-12856, which affects […]