Information Security News Blog
-
The Medusa threat group has attacked more than 500 U.S. critical infrastructure organizations since June 2021. As recently as February 2025, American authorities had counted just over 300 confirmed victims, meaning the roster of...
-
More than 50,000 Berlin households risk not receiving their housing benefit payments on time following a hacker attack on the city government’s information systems. The disruption has affected not only benefit payments, but also...
-
The Clop threat group is likely using a purpose-built web shell to steal data from PTC Windchill and FlexPLM servers. The malware is engineered specifically around Windchill’s internal architecture: it connects to the application...
In a stunning display of cyber aggression, a lone operator successfully infiltrated over 14,500 Dahua security cameras within a mere five weeks. Alarmingly, the attacker meticulously planted a hidden backdoor account on nearly 2,000...
Microsoft finds itself unable to release the inaugural cumulative update for Exchange Server Subscription Edition according to its original schedule. Initially anticipated by the close of the first half of 2026, the Exchange SE...
Malicious actors brazenly targeted developers utilizing counterfeit packages deployed simultaneously across two highly prominent repositories. Cybercriminals stealthily introduced 16 malicious libraries into RubyGems and strategically placed another 37 within the npm registry. They meticulously...
Ransomware attackers disrupted the engineering systems of Manitoba’s largest hospital, in the Canadian province. Following a cyberattack at the Health Sciences Centre in Winnipeg, problems emerged in the centralized control of ventilation, air conditioning,...
Israeli cryptocurrency company Bits of Gold has warned customers of a personal data leak following an incident within a third-party support system. Attackers may have obtained names, national ID numbers, email addresses, phone numbers,...
An AI agent designed to hunt for vulnerabilities independently discovered a flaw within a public Snowflake repository and used it to gain access to the company’s internal Jira system. The vulnerability had existed for...
Iranian intelligence agencies have intensified their efforts to compromise Israeli journalists. Threat actors aggressively target media personnel through WhatsApp and Telegram. Specifically, they impersonate familiar individuals to build trust. Afterwards, they offer interviews, collaborative...
A Massive Dark Web Data Sale Threat actors recently listed 3.64 million corporate records for sale on the dark web. A seller known as “TheHatman” claims these databases originate from Microsoft Azure and Entra...
France’s tax authority has begun warning hundreds of thousands of citizens after its systems were compromised twice, granting attackers access to the tax records of individuals and companies alike. 350,000 Citizens Notified, 678,000 Total...
Attackers have begun exploiting a critical vulnerability in macOS’s built-in Screen Sharing feature to gain access to Mac computers without any valid credentials whatsoever. In several confirmed cases, attackers who established this unauthorized connection...
Large-scale DDoS attacks on the evening of August 11 cut off user access to the secure messaging app Threema, followed by a fresh wave of disruptions the following morning of August 12. According to...
A software flaw at a payment contractor allowed criminals to drain approximately 30 million euros from customer accounts at Germany’s Commerzbank over the course of just four days. The stolen funds were laundered through...