loader image
Europol Seizes 300 Servers in Global Ransomware Bust

European law enforcement agencies have dismantled a major ransomware infrastructure in a coordinated global crackdown, seizing 300 servers and freezing €3.5 million in assets, according to details emerging from the latest phase of Operation Endgame. The operation, which began in May 2024, targets networks that support or directly engage in ransomware attacks, including those providing […]

U.S. Plans Data Hub to Centralize Spy Purchases

The U.S. government is developing a centralized platform designed to streamline the purchase of Americans’ personal data by intelligence and law enforcement agencies. The initiative, described as a “one-stop shop,” aims to improve access to commercially available data while raising concerns among privacy advocates about surveillance overreach and potential violations of the Fourth Amendment. In […]

Facebook Data Sale Claims 1.2 Billion Records—Doubted

A threat actor is reportedly selling a data trove claiming to contain 1.2 billion Facebook user records, according to cybersecurity-focused outlet Hackread. The alleged breach was advertised on a hacking forum, where the seller claimed the data includes names, emails, phone numbers, and other personal details. However, discrepancies in the listing have raised doubts among […]

Ransomware Gangs Deploy Skitnet for Silent Spying

Several ransomware groups have begun integrating a malware strain known as Skitnet into their post-exploitation toolkits, aiming to exfiltrate sensitive data and gain remote access to infected systems, according to Swiss cybersecurity firm PRODAFT. The malware has been available for purchase on underground forums such as RAMP since April 2024, but its use has grown […]

Fake KeePass App Triggers ESXi Ransomware Assault

Threat actors have been distributing malicious versions of the KeePass password manager for at least eight months, according to cybersecurity researchers. These trojanized applications serve as a vehicle to infiltrate corporate networks, enabling attackers to install Cobalt Strike beacons, harvest user credentials, and ultimately deploy ransomware. The campaign specifically targets systems running VMware ESXi, a […]

GhostSpy Android Malware Hijacks Phones, Evades Removal

A newly discovered Android malware known as GhostSpy is allowing threat actors to gain full control over infected devices, according to researchers at Cyfirma. The sophisticated Remote Access Trojan (RAT) uses a multi-stage infection chain that begins with a dropper app disguised as a legitimate update or system tool. Once installed, it escalates privileges and […]

Germany Names TrickBot, Conti Ringleader as Russian

Germany’s Federal Criminal Police Office (Bundeskriminalamt, or BKA) has identified the alleged leader of the notorious Conti ransomware and TrickBot cybercrime operations as Vitaly Nikolaevich Kovalev, a 36-year-old Russian national. The announcement marks a significant move by German authorities in their ongoing efforts to dismantle international ransomware networks. The BKA publicly named Kovalev, who is […]

Russian Spy Hacking Ops Exposed by Server Breach

A covert cyber unit within the Russian military has been exposed after an unsecured server linked to its operations was accessed by investigative journalists, according to a report from Cybernews. The server belonged to Unit 29155, a division of the Main Directorate of the General Staff of the Armed Forces, and reportedly contained sensitive information […]

Kettering Health Hit by Interlock Ransomware Attack

Kettering Health, a major healthcare provider operating 14 medical centers across Ohio, has confirmed that the Interlock ransomware group was responsible for a cyberattack that compromised its network in May. The organization reported that threat actors gained unauthorized access and exfiltrated data during the breach. The incident underscores ongoing cybersecurity challenges facing the healthcare sector, […]

2ClickPortal Software Hit by SQL Injection Flaw

A critical SQL injection vulnerability has been identified in the 2ClickPortal software, according to an advisory published by CERT Poland. The flaw, tracked as CVE-2025-4568, could allow attackers to manipulate backend databases by injecting malicious SQL code through user-facing input fields. Such vulnerabilities may be exploited to access, modify, or delete sensitive data without proper […]

Apple iMessage Flaw Let Hackers Spy With No Clicks

A previously undisclosed zero-click vulnerability in Apple’s iMessage platform has come to light, involving the misuse of its nickname feature, researchers revealed. The flaw, which has since been patched, may have been exploited to target high-profile individuals without requiring any user interaction, according to cybersecurity analysts. Zero-click exploits are particularly concerning due to their stealthy […]

Gargle Leak Exposes 2.7 Million U.S. Patient Records

Nearly 2.7 million patient profiles and 8.8 million appointment records in the United States were left exposed due to a misconfigured MongoDB database, according to a report by Cybernews. The unsecured database is believed to have been operated by Gargle, a U.S.-based dental marketing firm. The exposed data included sensitive health-related information, raising concerns about […]