Information Security News Blog

Apple updating Hide My Email addresses to a new dedicated domain 0

Apple Modifies Hide My Email Feature to Use Dedicated Domain

Apple intends to substantively diminish the efficacy of one of its most advantageous privacy mechanisms designed for premium iCloud subscribers. The technology giant will systematically transition masked email aliases to a distinct, dedicated domain....

JetBrains malicious plugins stealing API keys from developers 0

JetBrains Malicious Plugins Steal Developer API Keys

Development acceleration tools increasingly gain access to our most precious professional secrets. Malicious plugin creators for the JetBrains Marketplace deliberately exploited this profound zone of trust. Recently, a comprehensive report detailed how multiple JetBrains...

Firefox 152 release notes screenshot showing tab mute shortcut and JPEG XL image format support Firefox 151.0.2 update 0

Firefox 152 Adds Tab Mute Shortcut and JPEG XL

Firefox 152 arrives after an unusually busy month for its predecessor. Firefox 151 received no fewer than four minor patches in quick succession, and this new release focuses on making the browser more convenient...

Novo Nordisk cyberattack exposing clinical trial data breach details 0

Novo Nordisk Cyberattack: Clinical Trial Data Breach

Novo Nordisk recently fell victim to a sophisticated cyberattack. Consequently, this incident compromised a segment of patient data from clinical trials. Fortunately, the company asserted that names and direct identifiers remained unexposed. Therefore, unauthorized...

SQL Server 2025 AI features exploited for data exfiltration and command and control 0

SQL Server 2025 AI Features Enable Data Exfiltration

Databases have long evolved beyond mere tabular repositories. However, new functionalities within SQL Server 2025 illustrate the inherent dangers of this progression. Recently, SpecterOps researchers discovered significant vulnerabilities. They detailed how attackers can abuse...

OptinMonster supply chain attack CDN compromise diagram showing backdoor plugin installation on WordPress admin accounts 0

OptinMonster Supply Chain Attack Hits 1.2M Sites

Popular WordPress plugins have found themselves at the center of a supply chain attack, where the products themselves were not compromised directly. Instead, attackers targeted the infrastructure responsible for distributing them. Three plugins from...

Payroll Pirate AiTM phishing diagram showing session hijacking and payroll redirect attack flow bank phishing reimbursement Nova ransomware apology StablR stablecoin depeg hack 0

Payroll Pirate Hijacks Sessions to Steal Paychecks

Payroll systems rarely attract attention until a single edited bank detail quietly turns a routine paycheck into a direct transfer to criminals. Researchers at BushidoToken Threat Intel have detailed a new financially motivated campaign...

CVE-2026-46316 KVM escape KVM arm64 vulnerability, Linux kernel guest escape, vGIC-ITS race condition 0

CVE-2026-46316: KVM arm64 Guest Escapes to Host

Security researcher Hyeonwoo Kim has disclosed a vulnerability named ITScape that disrupted behavior within KVM on arm64 and allowed a guest virtual machine to break out onto its host system. Critical Severity in the...