Information Security News Blog
The arrest of the alleged administrator of the Russian-speaking forum XSS[.]is, known under the alias Toha, has become a critical inflection point for the entire underground market. According to law enforcement, on July 22,...
The Linux Lite 7.6 distribution, developed in New Zealand, has been released. Built on Ubuntu 24.04.3 and powered by the 6.8 kernel, it retains the Xfce 4.18 desktop environment. The system makes minimal modifications...
Researchers at Eclypsium have recorded a sharp increase in scanning activity targeting outdated and long-abandoned network equipment. The chief danger lies in the fact that many of these attacks are being launched from already-compromised...
Artificial intelligence systems have often been criticized for producing convoluted vulnerability reports and overwhelming open-source developers with irrelevant complaints. Yet researchers from Nanjing University and the University of Sydney have presented a striking counterexample:...
Cybercriminals have launched a new wave of attacks that employ SVG files as carriers for phishing pages. According to researchers at VirusTotal, the attackers disguise themselves as representatives of the Colombian Prosecutor’s Office, distributing...
The world’s largest chess platform, Chess.com, has notified thousands of users of a compromise of their personal data following a breach of a third-party contractor responsible for information storage. The incident involved files transferred...
The August Windows security update has unexpectedly turned into a major headache for administrators. At the heart of the issue lies CVE-2025-50173, a vulnerability linked to the Windows Installer authentication process. The flaw allowed...
The Japanese tire manufacturer Bridgestone has announced an investigation into a cybersecurity incident in North America that disrupted operations at several of its factories. The first reports of outages surfaced on September 2, when...
TP-Link has confirmed the existence of a new zero-day vulnerability affecting several of its router models. The flaw was first identified by an independent security researcher operating under the alias Mehrun (ByteRay), who reported...
Researchers from the School of Computer Science at Carnegie Mellon University have unveiled the results of a large-scale analysis revealing that GitHub’s “star” system—long regarded as a measure of a project’s popularity and trustworthiness—has...
Minino is an original multiprotocol, and multiband board made for sniffing, communicating, and attacking IoT (Internet of Things) devices. It was designed as a mini Cat that integrates the powerful ESP32C6 and a GPS,...
Kaspersky Lab has published its first comprehensive technical analysis of cyber groups most actively targeting Russian organizations. The report details 14 groups, outlining their tactics, tools, and the confirmed links between them. Experts identified...