loader image
94 Billion Stolen Browser Cookies Found Online

A trove of nearly 94 billion stolen browser cookies has surfaced on the dark web, exposing a significant cybersecurity threat to users worldwide. These cookies, which store session data and authentication information, can grant attackers unauthorized access to online accounts without needing passwords. The massive cache was discovered circulating across underground forums and marketplaces, suggesting […]

US Offers $10 Million for RedLine Malware Mastermind

The U.S. government has announced a reward of up to $10 million for information leading to the identification or location of the developer behind the RedLine malware and members of a state-sponsored cybercrime group. The offer, issued under the Rewards for Justice program, targets individuals believed to be responsible for creating and deploying malicious software […]

UK Plans Supercomputer Hub at Edinburgh University

The UK government plans to invest in a new national supercomputer, with the facility to be based at the University of Edinburgh. The initiative is aimed at strengthening the country’s computing infrastructure and providing a powerful resource to support research, innovation, and data-driven projects across a range of sectors. The supercomputer is expected to deliver […]

Stryker Android Hacking App Offers Free Access to 2050

The Stryker Android hacking app, a penetration testing tool for mobile security professionals, has made its premium features available for free until the year 2050, according to a post on the r/netsec subreddit. Designed for ethical hackers and cybersecurity researchers, the app enables users to conduct advanced security assessments on Android devices, offering a suite […]

Military Bases Face Rising Cyberattack Threats

Critical infrastructure supporting U.S. defense operations increasingly finds itself in the crosshairs of cybercriminals. As military bases face rising cyberattacks, vulnerabilities in power grids, communication systems and logistics networks pose growing risks to national security. These digital threats do not target combat zones alone—they infiltrate the everyday systems that enable troop readiness and mission execution. […]

Hackers Exploit Microsoft Tools to Breach Energy Firms

A newly identified cyber campaign, dubbed OneClik, targets the energy, oil and gas sectors using a blend of legitimate tools and custom malware. Hackers exploit Microsoft tools, specifically the ClickOnce deployment framework, to deliver malicious payloads with minimal detection. Researchers say the attackers rely on deceptive links to lure victims into launching the compromised applications. […]

Tech Titans Dominate as Public Sector Spend Surges

Public sector spending on technology continues to climb, driven by major suppliers and a surge in demand for IT services. A new report from Tussell highlights how 150 leading suppliers, dubbed “tech titans,” dominate the procurement landscape. These firms secured a significant portion of government contracts, underscoring their influence in shaping public sector digital strategies. […]

SentinelOne Flaw Lets Hackers Deploy Babuk Ransomware

A newly identified technique is allowing threat actors to bypass SentinelOne’s endpoint detection and response (EDR) system, enabling the deployment of Babuk ransomware without triggering alerts, according to Aon’s Stroz Friedberg Incident Response team. Dubbed “Bring Your Own Installer,” the method exploits a flaw in SentinelOne’s agent upgrade process, terminating protection processes and leaving systems […]

Apache Parquet Java Flaw Opens Door to RCE Attacks

A critical vulnerability has been identified in Apache Parquet Java, an open-source columnar storage format, potentially exposing systems to remote code execution (RCE) attacks. The flaw, tracked as CVE-2025-46762, affects versions 1.15.1 and earlier, according to a disclosure. Attackers could exploit the vulnerability to execute arbitrary code on targeted systems, putting enterprise data and services […]

UK Legal Aid Agency Probes Breach, Data at Risk

The UK’s Legal Aid Agency is investigating a cybersecurity incident that may have exposed sensitive financial information, the agency warned law firms. The breach, which has not yet been publicly detailed, could impact the financial data handled by the agency, which operates under the Ministry of Justice and manages billions of pounds in legal funding. […]

Microsoft Bookings Flaw Let Hackers Hijack Meetings

A security flaw in Microsoft Bookings exposed users to significant risks by allowing attackers to alter meeting invitations and calendar details through HTML injection, researchers at ERNW reported. The vulnerability, rooted in inadequate input validation within the Bookings API, impacted fields such as `serviceNotes`, `additionalNotes`, and `body.content`. Exploitation was particularly effective via the “Reschedule” feature, […]

SonicWall Risks Rise as Flaws Exploited Again

SonicWall is facing renewed scrutiny after a resurgence of security flaws in its products landed the company on the U.S. Cybersecurity and Infrastructure Security Agency’s (CISA) catalog of known exploited vulnerabilities. The network security vendor has appeared on the list regularly, raising concerns among cybersecurity professionals and its customer base about the ongoing exploitation of […]