IT Security News: today roundup
- Organizations must adapt training strategies to build cybersecurity workforces capable of countering evolving threats.
- Europol assisted in dismantling a European criminal network that trafficked horses using forged documents and modified microchips.
- Security Affairs released a malware digest highlighting North Korean cyberattacks, AI analysis evasion, and V8 bytecode deobfuscation.
- Hackers Online Club published a comprehensive tutorial explaining methods to audit and secure REST APIs against vulnerabilities.
- A Ukrainian hacker was sentenced to four years in U.S. prison for developing malware tools for Conti ransomware.
- Dell released security updates addressing critical remote code execution vulnerabilities in its ObjectScale and Elastic Cloud Storage systems.
- Four Chinese state-sponsored hacking groups targeted defense and government entities using a shared Chrome zero-day exploit kit.
- Florida confirmed a motor vehicle department data breach resulting from stolen login credentials saved on a police officer's personal device.
- Hackers are actively scanning for and exploiting a maximum-severity directory traversal vulnerability in unpatched GitLab instances.
- A scraped database exposing details and email addresses from over 4.6 million Chess.com accounts was published online.
Sources
- The Cybersecurity Hiring Challenge
- Thousands of horses caught up in Europe-wide trafficking scheme
- SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 114
- API Security Testing Tutorial: How to Test REST APIs For Vulnerabilities
- Conti Ransomware Ties Lead to Four-Year Prison Sentence
- Critical Dell ObjectScale Vulnerabilities Allows Malicious Users to Compromise the Affected system
- Several Chinese Hacking Groups Observed Using Identical Chrome Zero-Day Exploit
- Florida Says Motor Vehicle Data Breach Tied to Credentials Stolen From Officer's Personal Device
- GitLab's Worst-Rated Vulnerability Is Already Being Exploited
- Chess.com (2026) – 4,653,212 breached accounts