loader image
Asana MCP AI Bug Exposed Customer Data to Rivals

Asana has alerted users to a flaw in its new Model Context Protocol (MCP), which may have exposed customer data across different organizations. The issue, linked to the Asana MCP AI Bug, surfaced in the early stages of the feature’s deployment. The company warned that the bug could have allowed data from one user’s instance […]

Google, Cloudflare Outages Hit Millions Worldwide

Google Cloud and Cloudflare suffered major outages on Wednesday, disrupting services for millions of users worldwide. Cloudflare’s failure began at 18:19 UTC, affecting its Zero Trust Access system and WARP connectivity. The disruption cascaded across key services including Workers KV, Browser Isolation, Durable Objects, Workers AI, and Cloudflare Stream. The root cause was traced to […]

Russia Detects NFC Malware Skimming Bank Card Data

Cybersecurity researchers have identified new SuperCard malware activity in Russia, marking the first known instance of the infection spreading beyond Italy. The latest campaign targets smartphones with near field communication (NFC) capabilities, allowing threat actors to covertly steal payment card information. Russia detects NFC malware exploiting this wireless feature, raising concerns about its expanding threat […]

SparkKitty Spyware Poses Photo Theft Threat to Crypto

Cybersecurity researchers have uncovered malicious apps on both the Apple App Store and Google Play Store that secretly steal users’ photos to extract cryptocurrency-related information. The apps, operating under the guise of photo-editing tools, deploy a threat identified as SparkKitty Spyware. SparkKitty Spyware poses photonaturally as a legitimate image enhancement utility while covertly scanning photo […]

Cisco Talos Warns AI Models Fuel Rise in Cybercrime

Cybersecurity researchers are raising alarms about a new trend in online threats: the misuse of artificial intelligence by malicious actors. Cisco Talos warns AI models are being manipulated to craft more sophisticated attacks, contributing to a surge in cybercrime. These AI-driven threats are reportedly amplifying the speed, scale and precision of malicious campaigns across digital […]

Microsoft Warns Hackers Exploit Apache Pinot Flaws

Microsoft is warning organizations that attackers are exploiting misconfigured Apache Pinot instances to access sensitive information. According to the company, improperly secured deployments of the open-source real-time analytics platform have created vulnerabilities that malicious actors are actively targeting. These misconfigurations can expose internal data, potentially leading to data breaches or further compromise of enterprise systems. […]

NETSCOUT Warns AI-Fueled DDoS Threatens Infrastructure

NETSCOUT issued a warning about a rising wave of distributed denial-of-service (DDoS) attacks powered by artificial intelligence, raising alarms over potential threats to critical infrastructure. The company highlighted that the use of AI is amplifying the scale and sophistication of these cyberattacks, making them harder to detect and mitigate. With more systems relying on automation […]

SonicWall VPN Flaw Exploited in Attacks Prompts Fix

SonicWall is urging administrators to immediately patch three security vulnerabilities found in its Secure Mobile Access (SMA) appliances, warning that one of the flaws is currently being exploited in active attacks. The company issued the alert to its customer base, emphasizing the critical nature of the vulnerabilities and the risk posed to networks using unpatched […]

MirrorFace Hits Japan, Taiwan With Spy Malware Duo

The cyber-espionage group known as MirrorFace has launched a targeted campaign against government agencies and public institutions in Japan and Taiwan, deploying advanced malware tools to infiltrate sensitive systems. According to findings from Trend Micro in March 2025, the group utilized spear-phishing tactics to deliver malicious payloads, including a custom malware strain dubbed ROAMINGMOUSE and […]

PowerSchool Paid Ransom, Hackers Target Teachers

PowerSchool, a widely used educational technology platform in North America, reportedly paid a ransom following a cyberattack. Despite the payment, hackers have shifted tactics and are now targeting individual teachers, according to cybersecurity sources. The attackers are leveraging stolen data to intimidate educators, threatening to expose sensitive information unless additional demands are met. The incident […]

20-Year Proxy Botnet Using IoT Devices Dismantled

A decades-old proxy botnet that hijacked thousands of vulnerable internet-connected devices has been dismantled in a coordinated operation involving Lumen Technologies’ Black Lotus Labs, the FBI, the U.S. Department of Justice and the Dutch National Police. Active since 2004, the botnet exploited unpatched Internet of Things (IoT) and end-of-life (EoL) devices, primarily in residential networks, […]

Google Warns ColdRiver Wields New LostKeys Malware

Google has identified a new cyber threat linked to the Russian-backed hacking group ColdRiver, which is deploying an undisclosed malware strain named “LostKeys.” The malware, previously unreported, marks an evolution in the group’s offensive toolkit, signaling heightened capabilities and potential new targets. ColdRiver, known for its persistent cyber-espionage campaigns, appears to be expanding its methods […]