Information Security News Blog
Jaguar Land Rover has announced the gradual resumption of operations at its factories following a massive cyberattack that brought global production to a complete halt in September. At the same time, the company has...
The threat actor known as BatShadow, linked to Vietnam, has launched a new malicious campaign targeting job seekers and digital marketing professionals. Posing as recruiters, the attackers distribute forged job descriptions; when victims open...
A drone that falls under the control of malicious actors can transform in a fraction of a second from a precise instrument into an unpredictable threat. Once compromised, it begins to behave erratically—hovering, spinning...
promptfoo is an open-source CLI and library for evaluating and red-teaming LLM apps. With promptfoo, you can: Build reliable prompts, models, and RAGs with benchmarks specific to your use-case Secure your apps with automated red teaming and pentesting...
A network of hackers linked to North Korea has stolen more than $2 billion worth of crypto assets in the first nine months of 2025, according to a report by Elliptic. Analysts describe this...
A privilege escalation vulnerability in Microsoft Windows systems is once again being actively exploited, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned, adding the flaw to its official catalog of known exploited...
The Scattered Lapsus$ Hunters group has resurfaced — this time with a bizarre and unorthodox extortion tactic. The cybercriminals announced a bounty of $10 in cryptocurrency to anyone willing to take part in a...
The OpenSSH development team has announced the release of OpenSSH 10.1, marking a new stable version of the widely used secure communication suite. Build archives will soon be available on the project’s official mirrors....
The developers of Redox OS, an operating system written entirely in Rust, have enabled multithreading support by default for systems based on the x86 architecture. Previously available only as an experimental feature, it has...
Google DeepMind has unveiled CodeMender — a groundbreaking AI agent designed to automatically detect and repair vulnerabilities in software code. According to the company’s official blog, the system integrates the reasoning power of Gemini...
The DeFi platform Abracadabra.money has once again fallen victim to cybercriminals—its third successful breach in just two years. This time, attackers exploited a vulnerability in outdated token pools on the Ethereum mainnet, allowing them...
Redis, one of the most widely used in-memory caching and database systems, has faced a startling revelation: a critical vulnerability had silently existed in its codebase for thirteen years. The flaw, identified as CVE-2025-49844...