Latest Cybersecurity News and Articles

ShinyHunters Hackers Threaten 400 Firms Over Stolen Salesforce Data

ShinyHunters, a notorious hacking group, has issued a final warning to approximately 400 organizations, threatening to leak sensitive data unless their extortion demands are met.

China-Linked Hackers Hit Qatar with Backdoor Disguised as War News

China-linked hackers, including the Camaro Dragon group, are targeting Qatar with malware disguised as Middle East conflict news. The attackers are focusing on the Gulf's energy industry and military targets, using tools like PlugX and Cobalt Strike.

Bell Ambulance data breach impacted over 238,000 people

A significant data breach at Bell Ambulance has impacted 237,830 individuals, exposing sensitive personal information. The breach was executed by the Medusa ransomware group, who accessed the network between February 7 and 14, 2025.

Middle East Conflict Fuels Cyber Attacks

The ongoing Middle East conflict has led to a surge in opportunistic cyber attacks. Threat actors are exploiting the situation through phishing, malware distribution, and scams, with notable malware including LOTUSLITE and StealC.

One click on this fake Google Meet update can give attackers control of your PC

A phishing attack disguised as a Google Meet update is exploiting a legitimate Windows feature to gain control over victims' devices. This attack highlights a growing trend of using legitimate OS features and cloud platforms for malicious purposes.

New Social Security Scam Emails Use Fake Tax Documents to Hijack PCs

A new phishing campaign is targeting individuals in the US by impersonating the Social Security Administration. The emails use urgent language such as "Important Disclosures" or "Important Regulatory Information" to prompt immediate action.

Termite ransomware breaches linked to ClickFix CastleRAT attacks

Velvet Tempest, also known as DEV-0504, is a threat group involved in ransomware attacks for over five years. They have been linked to ransomware strains such as Ryuk, REvil, Conti, BlackMatter, BlackCat/ALPHV, LockBit, and RansomHub.

Critical Nginx UI flaw CVE-2026-27944 exposes server backups

A critical vulnerability in Nginx UI, identified as CVE-2026-27944, allows attackers to download and decrypt server backups without authentication. This flaw poses a significant risk by exposing sensitive data.

WordPress membership plugin bug exploited to create admin accounts

A critical vulnerability in the User Registration & Membership plugin for WordPress is being actively exploited. This flaw allows attackers to create administrator accounts without authentication, affecting over 60,000 sites.

Chinese state hackers target telcos with new malware toolkit

A Chinese state-sponsored threat actor, UAT-9244, has been identified targeting telecommunications providers in South America with a sophisticated malware toolkit. This group is associated with the FamousSparrow and Tropic Trooper groups.

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags