Information Security News Blog
A network of hackers linked to North Korea has stolen more than $2 billion worth of crypto assets in the first nine months of 2025, according to a report by Elliptic. Analysts describe this...
A privilege escalation vulnerability in Microsoft Windows systems is once again being actively exploited, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) has warned, adding the flaw to its official catalog of known exploited...
The Scattered Lapsus$ Hunters group has resurfaced — this time with a bizarre and unorthodox extortion tactic. The cybercriminals announced a bounty of $10 in cryptocurrency to anyone willing to take part in a...
The OpenSSH development team has announced the release of OpenSSH 10.1, marking a new stable version of the widely used secure communication suite. Build archives will soon be available on the project’s official mirrors....
The developers of Redox OS, an operating system written entirely in Rust, have enabled multithreading support by default for systems based on the x86 architecture. Previously available only as an experimental feature, it has...
Google DeepMind has unveiled CodeMender — a groundbreaking AI agent designed to automatically detect and repair vulnerabilities in software code. According to the company’s official blog, the system integrates the reasoning power of Gemini...
The DeFi platform Abracadabra.money has once again fallen victim to cybercriminals—its third successful breach in just two years. This time, attackers exploited a vulnerability in outdated token pools on the Ethereum mainnet, allowing them...
Redis, one of the most widely used in-memory caching and database systems, has faced a startling revelation: a critical vulnerability had silently existed in its codebase for thirteen years. The flaw, identified as CVE-2025-49844...
The French Prosecutor’s Office has launched an investigation into Apple’s Siri voice assistant following allegations of unlawful data collection. The inquiry was prompted by a complaint from the Ligue des Droits de l’Homme (LDH),...
The Storm-1175 group, linked to the operators behind the Medusa ransomware, has been actively exploiting a critical vulnerability in GoAnywhere MFT for nearly a month to infiltrate corporate networks. The flaw, tracked as CVE-2025-10035,...
A fire at South Korea’s national data center has reduced the country’s digital infrastructure to ashes, serving as a stark reminder of the perils of overreliance on a single hub. The blaze erupted at...
LinkedIn has once again found itself confronting large-scale attempts to harvest user data — this time, the company has filed a lawsuit against ProAPIs, accusing it of orchestrating an extensive network of fake accounts...