loader image
Check Point Tracks Iranian Attacks on Israel UAE

Check Point tracks a wave of Iranian cyberattacks targeting critical sectors in Israel and the UAE, with a focus on the government and energy industries. These attacks, which employ password-spraying techniques, demonstrate a growing sophistication and persistence in threatening national infrastructures. Security researchers highlight the method’s effectiveness, as attackers use numerous common passwords to gain […]

Die Linke Faces Hackers Threatening Data Leak

Die Linke faces hackers after experiencing a serious cyberattack on its IT infrastructure in late March. The German political party confirmed the breach, revealing that hackers now threaten to leak potentially sensitive data. This incident has raised concerns over the security measures in place within political entities in Germany, especially as cyber threats become more […]

DeepLoad Uses ClickFix, WMI to Steal Logins

The emerging threat landscape has introduced a new challenge as DeepLoad uses the ClickFix social engineering tactic to distribute a sophisticated and previously undocumented malware loader. According to researchers at ReliaQuest, DeepLoad employs AI-assisted obfuscation and process injection to deftly bypass static scanning, making its detection challenging. Once deployed, the malware focuses on credential theft, […]

Dow Inc. Appears on Qilin Leak Site

The Qilin ransomware group has claimed a significant breach against Dow Inc., a worldwide leader in chemical manufacturing. This group has allegedly added Dow Inc. to its list of victims on a Tor leak site. Yet, it has not provided any proof supporting the claim of the Dow Inc. Qilin leak. Dow Inc., which generates […]

Dutch Finance Ministry Shuts Treasury Portal

The Dutch Finance Ministry shuts a treasury banking portal following a breach, which prompted officials to take some systems offline amid an ongoing investigation. This cyberattack, uncovered two weeks ago, has forced the ministry to bolster its defenses and scrutinize affected networks. Authorities are focusing on ensuring that the security of public finances remains uncompromised […]

Axios Compromise Pushes Cross-Platform RAT

The axios compromise pushes a Remote Access Trojan (RAT) across platforms, igniting significant concern in the cybersecurity space. The attack exploits a supply chain vulnerability in two npm package versions of the popular HTTP client, Axios. Specifically, versions 1.14.1 and 0.30.4 introduced a deceptive dependency, ‘plain-crypto-js’ version 4.2.1, which has been crafted for malicious intent. […]

Anthropic Tests Mythos, Sends Cyber Stocks Tumbling

Shares in cybersecurity firms took a hit on Friday as Anthropic tested its powerful new AI model, Mythos, which is causing ripples in the industry. The cutting-edge artificial intelligence, part of a project codenamed “Capybara,” outshines Anthropic’s previous models in crucial areas like academic reasoning, software coding, and uncovering cybersecurity vulnerabilities. The Global X Cybersecurity […]

Citrix NetScaler Flaw Probed, Could Leak Data

Attackers are actively probing a critical vulnerability in Citrix NetScaler Gateway, tracked as CVE-2026-3055, which could leak sensitive data. This flaw, a memory overread issue, has a CVSS score of 9.3 and affects systems configured as a SAML Identity Provider (SAML IDP). Citrix issued security updates this week to address this and another vulnerability. Without […]

Russia-Linked TA446 Targets iPhones With DarkSword

Russia-linked TA446, notorious for its persistent targeting strategies, has turned its focus to iPhones by utilizing the DarkSword iOS exploit kit. This advanced threat group, also known as SEABORGIUM and ColdRiver, is conducting spear-phishing campaigns aimed at compromising iOS devices through malevolent emails. TA446 has been a thorn in the side of NATO countries since […]

European Commission Confirms Data Breach

The European Commission has experienced a data breach after the cyberattack on its Europa.eu web platform, which hackers from the ShinyHunters extortion group have claimed. This incident underscores the growing cybersecurity threats targeting governmental institutions. As cybercriminals become more sophisticated, the breach raises questions about the robustness of digital defenses across critical entities within the […]

PolyShell Attacks Hit 56% of Magento Stores

PolyShell attacks hit Magento as cybercriminals exploit vulnerabilities in version 2 of Magento Open Source and Adobe Commerce installations. Reports indicate that more than half of all vulnerable stores have been targeted. The PolyShell vulnerability poses a significant threat to online retailers using the affected versions. Attackers may leverage this exploit to gain unauthorized access […]

TP‑Link Patches Archer NX Auth Bypass, Faces Suit

TP-Link has swiftly addressed a critical vulnerability in its Archer NX series by releasing a patch, following the discovery of a missing authentication check. This oversight allowed unprivileged attackers to upload firmware maliciously, posing significant security risks to users. The patch arrives amid TP-Link’s ongoing legal challenges. The company is currently embroiled in a lawsuit […]