Malicious browser extensions sometimes slip into official marketplaces like the Chrome Web Store by disguising themselves as genuine tools. Detecting them becomes even harder when they behave legitimately at first, only turning harmful after users have grown to trust…
Category: CySecurity News – Latest Information Security and Hacking Incidents
AI in Cybercrime: What’s Real, What’s Exaggerated, and What Actually Matters
Artificial intelligence is increasingly influencing the cyber security infrastructure, but recent claims about “AI-powered” cybercrime often exaggerate how advanced these threats currently are. While AI is changing how both defenders and attackers operate, evidence does not support the idea…
OpenAI Warns Future AI Models Could Increase Cybersecurity Risks and Defenses
Meanwhile, OpenAI told the press that large language models will get to a level where future generations of these could pose a serious risk to cybersecurity. The company in its blog postingly admitted that powerful AI systems could eventually…
Malicious Software Compromises 26000 Devices Across New Zealand
Thousands of devices have been infected with malware through New Zealand’s National Cyber Security Center, showing the persistent risk posed by credential-stealing cybercrime, which has been causing New Zealand’s National Cyber Security Center to notify individuals after an exposure. About…
India Witnesses Sharp Surge in Cybercrime, Fraud Dominates NCRB 2023 Report
The cybercrime landscape in India has witnessed a drastic increase with NCRB data indicating cases jacking up from above 52,000 in 2021 to over 86,000 by 2023 led by fraud and online financial crime. Concurrently, threat intelligence shows that India is…
Askul Discloses Scope of Customer Data Theft Following October Ransomware Incident
Japanese e-commerce firm Askul Corporation has officially confirmed that a ransomware attack earlier this year led to the unauthorized access and theft of data belonging to nearly 740,000 individuals. The company made the disclosure after completing a detailed investigation…
Fix SOC Blind Spots: Real-Time Industry & Country Threat Visibility
Modern SOCs are now grappling with a massive visibility problem, essentially “driving through fog” but now with their headlights dimming rapidly. The playbook for many teams is still looking back: analysts wait for an alert to fire, investigate the incident, and…
Rockrose Development Notifies Over 47,000 People of July 2025 Data Breach Linked to Play Ransomware Gang
Rockrose Development confirmed over the weekend that it has notified 47,392 individuals about a data breach that occurred in July 2025. The incident exposed sensitive personal information belonging to both residents and employees. According to the company, the compromised…
Critical FreePBX Vulnerabilities Expose Authentication Bypass and Remote Code Execution Risks
Researchers at Horizon3.ai have uncovered several security vulnerabilities within FreePBX, an open-source private branch exchange platform. Among them, one severity flaw could be exploited to bypass authentication if very specific configurations are enabled. The issues were disclosed privately to…
Fake Microsoft Support Call Center Scam Targeting US Citizens Brought Down
An investigation by the Bengaluru police has revealed that a sophisticated cyber fraud operation was operating in the city masquerading as Microsoft Technical Support, targeting U.S. citizens in an attempt to defraud them, bringing an end to a transnational…
PyStoreRAT Campaign Uses Fake GitHub Projects to Target OSINT and IT Professionals
Cybersecurity researchers have identified a previously undocumented malware operation that leverages GitHub to distribute a threat known as PyStoreRAT. The campaign primarily targets individuals working in information technology, cybersecurity, and open-source intelligence research, exploiting their reliance on open-source tools.…
700Credit Data Breach Exposes Sensitive Information of 5.6 Million Individuals
U.S.-based fintech and data services firm 700Credit has confirmed a major data breach that compromised the personal information of at least 5.6 million individuals. The exposed data includes names, residential addresses, dates of birth, and Social Security numbers. Headquartered…
Data Breach at Fieldtex Affects 274000 as Ransomware Gang Takes Credit
The Fieldtex Products Corporation, a company that makes contract sewing products and fulfills medical supply orders from U.S. manufacturers, has notified hundreds of thousands of individuals after confirming an attack which compromised sensitive health-related information as a result of ransomware. …
Pierce County Library System Data Breach Exposes Information of Over 340,000 People
A cyber attack on the Pierce County Library System in the state of Washington has led to the compromise of personal data of over 340,000 people, which is indicative of the rising threat of cybersecurity breaches being posed to…
Chrome ‘Featured’ Urban VPN Extension Caught Harvesting Millions of AI Chats
A popular browser extension called Urban VPN Proxy, available for users of Google’s Chrome browser, has been discovered secretly sniffing out and harvesting confidential AI conversation data of millions of users across sites such as ChatGPT, Claude, Copilot, Gemini,…
Neo AI Browser: How Norton’s AI-Driven Browser Aims to Change Everyday Web Use
Web browsers are increasingly evolving beyond basic internet access, and artificial intelligence is becoming a central part of that shift. Neo, an AI-powered browser developed by Norton, is designed to combine browsing, productivity tools, and security features within a…
AI-Powered Shopping Is Transforming How Consumers Buy Holiday Gifts
Artificial intelligence is emerging with a new dimension in holiday shopping for consumers, going beyond search capabilities into a more proactive role in exploration and decision-making. Rather than endlessly clicking through online shopping sites, consumers are increasingly turning to…
Online Retail Store Coupang Suffers South Korea’s Worst Data Breach, Leak Linked to Former Employee
33.7 million customer data leaked Data breach is an unfortunate attack that businesses often suffer. Failing to address these breaches is even worse as it costs businesses reputational and privacy damage. A breach at Coupang that leaked the data of…
Circle and Aleo Roll Out USDCx With Banking-Level Privacy Features
Aleo and Circle are launching USDCx, a new, privacy-centric version of the USDC stablecoin designed to provide “banking-level” confidentiality while maintaining regulatory visibility and dollar backing. The token is launching first on Aleo’s testnet and was built using Circle’s…
PayPal Subscription Feature Exploited to Send Real Emails With Fake High-Value Purchase Alerts
A new email scam is misusing PayPal’s Subscriptions billing system to send genuine PayPal emails that contain fraudulent purchase claims hidden inside the Customer Service URL field. Over the last few months, multiple users have reported receiving PayPal emails…