Latest Cybersecurity News and Articles

One threat actor responsible for 83% of recent Ivanti RCE attacks

A single threat actor is responsible for the majority of exploitation activities targeting two critical vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM), identified as CVE-2026-21962 and CVE-2026-24061.

Snail mail letters target Trezor and Ledger users in crypto-theft attacks

Hackers are targeting Trezor and Ledger users with physical phishing letters, urging them to scan QR codes leading to malicious sites. These letters claim that users must complete an "Authentication Check" or "Transaction Check" by specific dates.

Fintech firm Figure disclosed data breach after employee phishing attack

Figure Technology Solutions, a US-based fintech firm known for its blockchain-based HELOCs and other lending products, has disclosed a data breach following a phishing attack on an employee.

Pastebin comments push ClickFix JavaScript attack to hijack crypto swaps

A novel ClickFix-style attack has been identified, utilizing JavaScript to hijack cryptocurrency swaps on Swapzone.io. This is one of the first known instances where JavaScript is used to alter webpage functionality for malicious purposes.

Malicious npm and PyPI packages Llinked to Lazarus APT fake recruiter campaign

The Lazarus Group, a North Korean APT, has launched a sophisticated campaign using malicious npm and PyPI packages. This operation, known as 'graphalgo', targets developers through fake recruitment schemes.

Canada Goose investigating as hackers leak 600K customer records

Canada Goose is investigating a data leak involving over 600,000 customer records, allegedly stolen by the data extortion group ShinyHunters. The company has stated that there is no evidence of a breach in their systems.

Fake AI Chrome extensions with 300K users steal credentials, emails

A malicious campaign involving 30 Chrome extensions, known as AiFrame, has been identified, affecting over 300,000 users. These extensions masquerade as AI assistants to steal credentials, email content, and browsing information.

SMS and OTP Bombing Campaigns Found Abusing API, SSL and Cross-Platform Automation

The Muddled Libra group, also known as Scattered Spider, executed a sophisticated attack using a rogue virtual machine within a VMware vSphere environment. This attack exposed critical tactics, techniques, and procedures (TTPs) used by the group.

World Leaks Ransomware Adds Custom Malware ‘RustyRocket' to Attacks

World Leaks, a notorious cyber-criminal group, has enhanced its attack arsenal with a new malware named 'RustyRocket'. This sophisticated toolset is a critical component of World Leaks' operations.

Odido data breach exposes personal info of 6.2 million customers

Odido, a major telecommunications provider in the Netherlands, has experienced a significant data breach affecting 6.2 million customers. The breach exposed various personal data.

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags