loader image
TikTok Hires UK Privacy Chief Amid Probe, Fine Fight

TikTok has appointed a senior official from the UK’s privacy watchdog as it confronts regulatory pressure, including an ongoing investigation and a financial penalty. The social media giant’s decision signals a strategic move as TikTok hires UK privacy regulator Stephen Bonner, who currently holds a leadership role at the Information Commissioner’s Office. Bonner is expected […]

Sarcoma Hits Swiss Health Nonprofit in Data Breach

Sarcoma, a newly emerged ransomware group, carried out a cyberattack against Radix, a nonprofit healthcare organization based in Zurich, Switzerland. In a statement released by the organization, Radix confirmed that threat actors gained unauthorized access to its systems. The breach highlights growing cybersecurity risks in the nonprofit medical sector as Sarcoma hits Swiss health infrastructure […]

Firefox Add-Ons Steal Data, Spy on Millions of Users

Security researchers have uncovered eight malicious Firefox extensions that steal OAuth tokens, passwords, and monitor user activity. The campaign, linked to the threat actor “mre1903,” uses fraudulent add-ons posing as popular games to deceive users. These Firefox add-ons steal data by redirecting users to scam websites or deploying hidden tracking tools. The investigation began with […]

Norwegian Dam Breach Triggered by Cyberattack

A cyberattack disrupted operations at a hydroelectric facility in Norway, forcing a dam valve to remain open for several hours. The incident, now under investigation, resulted in unauthorized access that compromised critical infrastructure. Officials confirmed the Norwegian dam breach triggered naturally by the attack, raising concerns about the security of the nation’s energy systems. The […]

ScriptCase Flaws Let Hackers Seize Servers Without Login

Two critical vulnerabilities in ScriptCase’s Production Environment module allow attackers to execute remote commands and gain full control of affected web servers. Security researchers from SYNACTIV identified that the ScriptCase flaws let hackers bypass authentication and inject system-level commands without requiring login credentials. Tracked as CVE-2025-47227 and CVE-2025-47228, the bugs affect version 1.0.003-build-2 of the […]

Suspended UK IT Worker Jailed for Hacking Employer

A suspended UK IT worker has been sentenced to seven months in prison after launching a retaliatory cyberattack on his employer’s systems. The man, who had recently been removed from his position, used his access to alter login credentials and disrupt internal operations. The court found that the suspended UK IT worker deliberately compromised the […]

NightEagle Hacks China Tech Using Stealthy 0-Days

A highly sophisticated hacking group known as NightEagle (APT-Q-95) has launched targeted cyberattacks on China’s critical technology sectors, leveraging undisclosed Exchange vulnerabilities and memory-based malware. Since 2023, the group has focused on artificial intelligence, semiconductors, quantum computing, and military industries. These NightEagle Hacks China Technaturally, exploiting zero-days, have enabled sustained email data exfiltration from high-value […]

Bluetooth Flaws Let Hackers Hijack Sony, Bose Devices

A trio of critical Bluetooth flaws let hackers take control of millions of popular headphones and earbuds without pairing or authentication. Security researchers at ERNW identified the vulnerabilities in Airoha Bluetooth chips used in devices from Sony, Bose, Marshall, and others. Hackers only need to be within 10 meters to exploit the flaws. The vulnerabilities—CVE-2025-20700, […]

APT36 Hacks BOSS Linux to Spy on Indian Defense Data

Pakistan-linked threat actor APT36, also known as Transparent Tribe, has expanded its cyber-espionage operations by targeting India’s BOSS Linux systems. In a marked evolution of tactics, the group now deploys phishing campaigns leveraging weaponized ZIP files instead of relying solely on Windows-based attacks. The campaign, dubbed “APT36 Hacks BOSS Linux,” aims to infiltrate government systems […]

Canada Orders Hikvision to Exit Over Security Fears

Canada has ordered Chinese surveillance giant Hikvision to cease operations within its borders, citing national security concerns. The directive marks a significant move as Canada orders Hikvision exit amid increasing scrutiny of foreign technology firms with potential government ties. The order forms part of a broader stance against high-risk vendors in the country’s critical infrastructure. […]

Northern Ireland IT Projects Slammed by Auditor

A new report from the Northern Ireland Audit Office criticizes the performance of major Northern Ireland IT projects, citing persistent issues in planning, delays in implementation, and a reliance on outdated contract extensions. The findings point to a troubling pattern of mismanagement across several large-scale digital initiatives. Auditors found that weak project oversight and poor […]

Cloudflare Open-Sources Encrypted Video App Code

Cloudflare has introduced end-to-end encryption to its video conferencing platform, Orange Meets, and released the underlying technology to the public. By making the codebase available, Cloudflare open sources encrypted video tools to promote transparency and security in digital communications. The addition of end-to-end encryption ensures that only participants in a call can access its content, […]