loader image
NordVPN, ProtonVPN Ordered to Block LaLiga Sites

A Spanish court has ordered NordVPN and ProtonVPN to block access to 16 websites that enable piracy of LaLiga football matches. This legal development marks a significant step in Spain’s ongoing battle against piracy, targeting well-known VPN providers in a bid to curb unauthorized streaming. The court issued the precautionary measures to ensure protection of […]

Dell RecoverPoint Zero-Day Hit by China Spy Unit

Dell RecoverPoint Zero-Day Hit has been exploited by an advanced cyberespionage group from China, according to cybersecurity firms GTIG and Mandiant. Identified as CVE-2026-22769, this critical vulnerability has been targeted by UNC6201 since at least 2024. The groups revealed that the threat actors have used this zero-day to conduct extensive surveillance operations. Dell’s RecoverPoint, a […]

U.S. Brands Dutch NGOs ‘Censorous’ Over Digital Act

On February 3, 2026, a report from the United States House Committee on the Judiciary labeled several Dutch NGOs as ‘censorous,’ raising concerns within Europe. U.S. brands Dutch NGOs such as EDRi member Bits of Freedom and Justice for Prosperity, among others, as restrictive entities. This provoked a swift response from European Digital Rights (EDRi), […]

LockBit 5.0 Strikes Windows Linux ESXi Proxmox

LockBit 5.0 strikes Windows, Linux, and ESXi systems with a formidable presence, marking a significant evolution in ransomware threats. Released in September 2025, it further establishes LockBit as a dominant force in cyber threats. By targeting multiple operating systems, this version supports a ransomware-as-a-service model that continues to disrupt businesses globally. Notably, the malware focuses […]

Eurail Says Stolen Traveler Data Hits Dark Web

Eurail says that stolen traveler data from a previous breach is now for sale on the dark web, raising significant concerns about privacy and security. Eurail B.V., which provides access to over 250,000 kilometers of European rail networks, confirmed this unsettling development. The breach, which occurred earlier this year, has exposed sensitive information of countless […]

CL Suite Chrome Extension Steals Meta 2FA

The CL Suite Chrome extension poses a significant threat to Facebook Business Manager users as it secretly siphons off two-factor authentication (2FA) codes and analytics data. This malicious extension, identified as “CL Suite by @CLMasters,” remains accessible on the Chrome Web Store and targets Meta Business Suite environments. Despite claims that data remains local, analysis […]

Apache NiFi Flaw Lets Users Bypass Controls

Apache NiFi, an essential tool utilized widely for automating cybersecurity, observability, event streams, and generative AI data pipelines, has identified a critical vulnerability. The newly disclosed Apache NiFi flaw, labeled CVE-2026-25903, allows users to bypass existing restrictions, raising substantial security concerns. This vulnerability may affect thousands of companies that rely on NiFi’s capabilities to streamline […]

Palo Alto Networks Buys CyberArk for $25 Billion

Palo Alto Networks has solidified its position in the cybersecurity market by acquiring identity security specialist CyberArk. This $25 billion deal, finalized on February 11, 2026, is strategically aligned with the rising need to secure identities amid escalating AI-driven threats. By integrating CyberArk’s technology, Palo Alto Networks aims to bolster its capacity to manage privileged […]

Dior, Louis Vuitton, Tiffany Fined $25 Million

In a significant move against data breaches, South Korea has levied a $25 million fine on luxury brands Dior, Louis Vuitton, and Tiffany. This penalty, stemming from incidents involving unauthorized access to Salesforce instances, highlights the country’s stern stance on cybersecurity breaches. Authorities linked the breaches to a campaign by the Scattered LAPSUS$ Hunters, a […]

Ivanti EPMM Under Single-IP RCE Siege

A critical remote code execution flaw, tracked as CVE-2026-1281, is affecting Ivanti Endpoint Manager Mobile (EPMM) and being heavily exploited, according to security data. GreyNoise reports that 83% of these attacks originate from one IP address, 193.24.123.42, registered to PROSPERO OOO, known for “bulletproof” hosting. This IP was notably absent from initial indicators of compromise […]

Joomla Framework Flaw Lets Attackers Hijack Sites

Critical security vulnerabilities have been discovered in the Joomla framework, specifically in the Novarain/Tassos Framework, exposing websites to significant threats like SQL injection and unauthorized file access. These flaws, located within multiple popular extensions such as Convert Forms and EngageBox, can lead to remote code execution if left unpatched. Security researchers identified three core weaknesses […]

287 Chrome Extensions Stole History of 37.4M

A covert campaign involving 287 Chrome extensions has compromised the browsing history of approximately 37.4 million users globally, according to new research. The scale of the breach represents nearly one percent of the Chrome user base, raising privacy concerns across the internet ecosystem. Researchers used a custom system of Docker containers and a man-in-the-middle proxy […]