PaperCut Software has released a second emergency patch after confirming that attackers exploited two zero-day vulnerabilities in its NG and MF print…
Category: CySecurity News – Latest Information Security and Hacking Incidents
Chrome, Edge Extensions Found Stealing Cryptocurrency and Browser Data
Nineteen browser extensions for Google Chrome and Microsoft Edge were used to deliver a modular malware framework capable of draining cryptocurrency…
PaperCut NG and MF Flaws Exploited in the Wild, Prompting Emergency Security Patch
Malicious attackers are actively exploiting newly disclosed vulnerabilities in PaperCut NG and PaperCut MF that can allow unauthorized remote code…
Face ID and Fingerprint Unlocks May Put Your Privacy at Risk
Face ID and fingerprint unlock features allow for more convenient smartphone and account access but offer less privacy in the case of forced disclosure.…
Hasbro Data Breach Impacts Employee Personal Information
The Hasbro Company has notified its employees that their personal information could have been exposed as a result of a data breach involving one of their…
How We Find Critical Vulnerabilities with GLM 5.3 and Red Clippy
Over the last few months our red team exercises for BFSI customers have been run with an AI coding agent sitting in the loop. The findings that came out…
Russian-Speaking Hackers Used Cursor AI Agent to Target Seven Companies
Russian-speaking cybercriminals from the emerging Aur0ra ransomware group used Cursor’s AI coding agent to assist attacks against at least seven companies…
British Navy Drones Flagged Over China Link
British military drones have come under attention after a report claimed that Chinese-made cameras fitted in Royal Navy K3 surveillance drones were…
Storm-1175 Deploys StormEncryptor Ransomware After N-able N-central Vulnerability Exploitation
Financially motivated hackers believed to be based in China are using a new ransomware for the first time after targeting a vulnerability in the N-central…
Attackers Exploit Cosmos EVM Flaw Affecting Multiple Blockchain Networks
Cosmos EVM Flaw Exploited After Widespread Blockchain Exposure Was Confirmed It has been revealed that Cosmos Labs has disclosed exploiting a critical…
FBI Investigates Cyberattack on Kansas Water Technology Firm
The FBI is investigating a cyberattack targeting Micro-Comm, a Kansas-based company that develops technology used by water and wastewater utilities,…
OpenAI Reveals AI Agents Built Unauthorized Message Board That Contributed to Hugging Face Breach
OpenAI has revealed that an unauthorized communication system created by its own AI agents played a key role in an incident that led to parts of Hugging…
Berlin Confirms Extortion Attempt After Network Compromise as Manchester Airports Group Reports Customer Data Theft
The state of Berlin confirms that it is the victim of an extortion attempt after allegedly having its network hacked back in August. Authorities say they…
McKesson Probes Data Theft After ShinyHunters Claims Access to Patient Records
McKesson Corporation is investigating a cybersecurity incident involving unauthorized access to third-party applications and data exfiltration, while the…
US Says Chinese Hackers Hit Federal Agencies
The U.S. says a China-linked hacking operation broke into or targeted systems at NASA, the Federal Reserve, the Justice Department, the Senate, and other…
Bitcoin Lightning Nodes Drained Through Critical BTCPay Server Flaw
There has been another security breach of Bitcoin payment infrastructure as attackers exploited critical vulnerabilities in BTCPay Server deployments to…
700 AI Agents Helped Carry Out Hugging Face Attack
An overarching number of 700 artificial intelligence agents participated in a coordinated attack against Hugging Face after models running inside OpenAI’s…
AI Agent Hacks Gym Booking System
An AI agent designed to help with everyday tasks has ended up exposing a serious security flaw in a gym booking system. According to a report cited by…
OpenAI Says Reward Hacking Fueled AI Agents’ Hugging Face Cyberattack
OpenAI has disclosed that reward hacking played a central role in an AI-driven cyberattack targeting Hugging Face, revealing that signs of misaligned…
Critical Avada WordPress Vulnerability Allows Unauthenticated PHP Code Execution
A critical vulnerability chain in the popular Avada theme for WordPress could allow an unauthenticated attacker to execute arbitrary PHP code on the…
