loader image
Forescout Warns Europe Leads in Solar Gear Exposure

Europe has emerged as the leading region with the highest number of exposed solar power systems, according to new research from cybersecurity firm Forescout. The findings raise fresh concerns about the security of critical infrastructure amid growing reliance on renewable energy sources. Forescout’s analysis highlights vulnerabilities in solar energy equipment that is accessible through the […]

Scattered Spider Hacks IT Desks, Bypasses MFA Systems

A cybercriminal group known as SCATTERED SPIDER is intensifying attacks on IT support teams to bypass multi-factor authentication (MFA), according to researchers at SOSIntelligence. Active since at least 2022, the group employs native English speakers to impersonate employees and exploit help desk personnel through voice phishing and MFA reset requests. SCATTERED SPIDER operates primarily as […]

Salesforce Users Hit in Google-Uncovered Attack Spree

A cybercrime group tracked as UNC6040 has targeted approximately 20 organizations through a series of social-engineering attacks exploiting Salesforce customer accounts, according to Google’s Threat Intelligence Group. The campaign involves tricking individuals into providing sensitive information, enabling attackers to gain unauthorized access to enterprise systems. The attacks represent a growing trend in threat actors leveraging […]

Episource Hack Exposes Data of 5.4 Million Patients

Hackers breached healthcare services firm Episource, compromising personal and health data of approximately 5.4 million individuals. The Episource Hack Exposes Data tied to customers of healthcare organizations that rely on the company for critical services. The attackers accessed sensitive information, including personal identifiers and medical details, raising concerns about patient privacy and data security across […]

23andMe Fined $3.1 Million by UK Over Data Breach

The UK’s data protection authority has fined DNA testing company 23andMe £2.31 million ($3.12 million) for what it described as “serious security failings” that led to a major data breach in 2023. The regulator said the incident exposed sensitive genetic information, causing what it called “profoundly damaging” consequences. The penalty has drawn international scrutiny, with […]

APT28 Hits Ukraine With Malware in Signal Chat Attack

Russia-linked hacking group APT28 hits Ukraine with new malware by exploiting Signal, a secure messaging platform, according to recent cybersecurity findings. The attackers targeted Ukrainian government entities using malicious documents delivered through Signal chats, raising concerns over the platform’s misuse in cyber operations. Security researchers identified the malware as a fresh tool in APT28’s arsenal, […]

Ofsted Flags AI Champions, Ethics in U.K. Schools

Ofsted has released a report outlining critical considerations for integrating artificial intelligence into schools and further education settings. The review highlights the importance of designated AI leaders—referred to as “AI champions”—who can guide institutions in adopting the technology effectively. According to the findings, these champions play a central role in promoting best practices and ensuring […]

Deutsche Bank IT Worker Let Lover Into Data Center

A Deutsche Bank IT employee allowed his romantic partner unauthorized access to the company’s data center, raising concerns over internal security protocols at the financial institution. The incident, which occurred at the bank’s facility managed by Computacenter, has drawn attention due to the sensitive nature of the infrastructure involved. Details surrounding the motivation behind the […]

Hungary Biometric Laws Breach EU AI Act, Group Says

Hungary’s newly enacted biometric surveillance laws contravene the European Union’s Artificial Intelligence Act, according to European Digital Rights (EDRi), a civil rights group focused on digital freedoms. The organization argues that the legislation enables the use of invasive surveillance technologies that may infringe on fundamental rights, particularly the rights to privacy and freedom of assembly. […]

SpyCloud Finds 94% of Fortune 50 Hit by Phishing

SpyCloud, a cybersecurity firm based in Austin, Texas, has released findings showing that 94% of Fortune 50 companies have experienced employee data exposure linked to phishing attacks. The analysis, published on May 7, 2025, underscores the growing threat posed by credential theft and social engineering tactics targeting major U.S. corporations. The report highlights how stolen […]

Masimo Hit by Cyberattack, Disrupts Operations

Masimo Corp., a medical technology firm, is experiencing operational disruptions following a cybersecurity breach that has impacted parts of its production processes. The company has initiated coordination with law enforcement agencies in response to the incident, which has raised concerns over the security of its digital infrastructure. The breach has triggered interruptions in manufacturing operations, […]

PupkinStealer Malware Loots Logins, Sends Data via Telegram

A new information-stealing malware written in .NET, dubbed PupkinStealer, has emerged, targeting browser credentials and user data with exfiltration conducted via Telegram, cybersecurity firm CYFIRMA said. Detected in April 2025, the malware is attributed to a developer using the alias “Ardent” and reflects a growing trend of threat actors abusing legitimate platforms for command-and-control operations. […]