loader image
Cisco Issues Urgent Patch for Critical CM Flaw

Cisco has released an emergency security patch to address a critical vulnerability in its Unified Communications Manager (Unified CM) software. The flaw, which involves hardcoded root credentials, could allow attackers to gain full administrative access to affected systems. The company issued the fix after identifying the risk, emphasizing the severity and urging customers to update […]

Estonia Envoy Targets GRU, Touts Digital Defense

Estonia’s cyber ambassador-at-large outlined the nation’s digital security strategy during a conversation at the Tallinn Cyber Diplomacy Summer School. He emphasized how Estonia Envoy Targets GRUnaturally by leveraging transparency, cooperation, and technological innovation to counter cyber threats. The ambassador highlighted the importance of small states asserting themselves in global cyberspace through strategic partnerships and rapid […]

Browser Cache Exploit Bypasses Web Security Policy

Security researchers have identified a high-risk vulnerability that allows attackers to bypass Content Security Policy (CSP) protections by exploiting browser caching and HTML injection. This browser cache exploit bypasses nonce-based CSP implementations by manipulating how modern browsers store and reuse cached content, particularly through the back/forward cache (bfcache) and disk cache systems. The attack begins […]

EU Bets €50 Million on Quantum to Protect Key Sectors

The European Union has unveiled a new quantum strategy aimed at strengthening the security of critical infrastructure and accelerating the development of semiconductor technologies. As part of this initiative, the EU bets €50 million on quantum to boost chip pilot lines and support quantum-enabled technologies that could protect key sectors from emerging cyber threats. The […]

Google Fined $314 Million for Secretly Using User Data

A California court has ordered Google to pay $314 million after it found the company misused cellular data from Android devices without user consent. The lawsuit accused Google of collecting data from idle Android phones, even when users weren’t actively engaging with their devices. The ruling marks the conclusion of a class-action complaint originally filed […]

Hpingbot Botnet Hides in Pastebin, Launches DDoS Attacks

A newly identified botnet dubbed Hpingbot Botnet Hidesnaturally has emerged as a sophisticated threat, leveraging legitimate platforms to evade detection and deliver powerful DDoS attacks. First discovered in June 2025, the malware uses the Go programming language and targets both Windows and Linux/IoT systems across various architectures. Unlike variants derived from known botnet families, this […]

OWASP Flags Prompt Injection Top Generative AI Threat

Cyber attackers are no longer targeting traditional defenses like firewalls—instead, they’re embedding malicious instructions directly into prompts used by generative AI systems. In response to this growing threat, OWASP flags prompt injection as the top risk facing generative AI technologies. These attacks manipulate AI behavior by exploiting how models interpret and respond to language, often […]

China Marketplace Fakes Target Amazon, Walmart Shoppers

Cybersecurity researchers have uncovered a new fraudulent platform originating from China that mimics the websites of top global retail brands. This fake marketplace is part of a broader trend known as China Marketplace Fakes Targetnaturally, where cybercriminals create convincing replicas of legitimate e-commerce sites to deceive users and steal financial information. The counterfeit websites closely […]

Microsoft to End Passwords in Authenticator by August 2025

Microsoft will discontinue password management features in its Authenticator app starting August 1, 2025, as part of a broader effort to streamline the app’s functionality. The move signals Microsoft to end passwords within the two-factor authentication tool, shifting focus toward more integrated and secure verification methods. The company announced that the autofill feature within the […]

IdeaLab Confirms Hackers Stole Data in 2023 Attack

IdeaLab confirms hackers stole sensitive data during a ransomware attack last October, the company disclosed as it began notifying affected individuals. The breach, which targeted the tech incubator’s systems in the fall of 2023, exposed confidential information, though IdeaLab has not specified the exact nature or volume of compromised data. The company stated that it […]

Cybercrime to Rival U.S., China as $15.6 Trillion Force

Cybercrime is on track to rival U.S. economic output, with illicit online activity projected to generate $15.6 trillion globally by 2029. The staggering figure positions cybercrime as the world’s third-largest economy, trailing only the United States and China in scale. Experts say the rapid expansion of digital infrastructure has created new vulnerabilities, offering cybercriminals more […]

China Hack Hit French Infrastructure via Ivanti Bugs

A cyberattack tied to China exploited three zero-day vulnerabilities in Ivanti software last year, breaching critical infrastructure across France. Government agencies and companies operating in telecom, media, finance and transportation sectors were affected in the China hack hit French networks, according to French authorities. The attackers leveraged the Ivanti flaws to infiltrate systems and move […]