A fourth wave of the GlassWorm malware campaign is targeting macOS developers through malicious extensions distributed on the OpenVSX registry and the Microsoft Visual Studio Marketplace, according to researchers at Koi Security. The campaign involves compromised extensions designed for…
Category: CySecurity News – Latest Information Security and Hacking Incidents
This Week in Cybersecurity: User Data Theft, AI-Driven Fraud, and System Vulnerabilities
This week surfaced several developments that accentuate how cyber threats continue to affect individuals, corporations, and governments across the globe. In the United States, federal records indicate that Customs and Border Protection is expanding its use of small surveillance…
Apple Forces iOS 26 Upgrade Amid Active iPhone Security Threats
Apple has taken an unusually firm stance on software updates by effectively forcing many iPhone users to move to iOS 26, citing active security threats targeting devices in the wild. The decision marks a departure from Apple’s typical approach…
2FA Fail: Hackers Exploit Microsoft 365 to Launch Code Phishing Attacks
Two-factor authentication (2FA) has been one of the most secure ways to protect online accounts. It requires a secondary code besides a password. However, in recent times, 2FA has not been a reliable method anymore, as hackers have started exploiting…
India’s RBI Opens Doors to Lateral Hiring in 2026, Signalling a Tech-First Shift in Financial Regulation
In a move highlighting the rapid evolution of India’s financial and digital landscape, the Reserve Bank of India (RBI) has announced a major lateral hiring initiative for 2026, inviting private-sector and specialist professionals into the central bank. This marks…
Taiwan Holds 210 BTC Seized from Criminals, Debates Bitcoin’s Strategic Value
Taiwan’s government said it is holding more than 210.45 bitcoin, worth about $18 million, all of which were seized during criminal investigations related to fraud, money laundering, and other financial crime. This disclosure was in response to a legislator’s demand for…
IBM Issues Critical Alert Over Authentication Bypass Flaw in API Connect Platform
IBM has warned organizations using its API Connect platform about a severe security vulnerability that could allow unauthorized individuals to access applications remotely. The company has urged customers to apply security updates immediately to reduce the risk of exploitation. API…
Why Lightweight Browsers Are the Key to Faster, More Focused Web Productivity
As modern web browsers continue to expand into multifunctional platforms, they often sacrifice speed and efficiency in the process. What was once a simple tool for accessing the internet has become a complex workspace packed with features that many…
South Africa Warns of Cybercrime Surge Amid Festive Season
South Africa is experiencing a sudden and deeply concerning rise in cybercrime this holiday season, with consumers and businesses being warned to prepare for more aggressive attacks on digital banking, mobile applications and online services. Surge in festive-season attacks The…
Antivirus vs Identity Protection Software: What to Choose and How?
Users often put digital security into a single category and confuse identity protection with antivirus, assuming both work the same. But they are not. Before you buy one, it is important to understand the difference between the two. This blog…
Amazon Links Five-Year Cloud Cyber Campaign to Russia’s Sandworm Group
Amazon is talking about a hacking problem that has been going on for a long time. This problem was targeting customers who use cloud services in countries. Amazon says that a group called Sandworm, which is linked to Russias…
India’s Spyware Policy Could Reshape Tech Governance Norms
Several months ago, India’s digital governance landscape was jolted by an unusual experiment in the control of state-controlled devices, one that briefly shifted the conversation from telecommunication networks to the mobile phones carried in consumers’ pockets during the conversation. …
NYC Inauguration Security Policy Draws Attention for Targeting Specific Tech Tools
New York City’s official guidelines for the 2026 mayoral inauguration of Zohran Mamdani include an unusual restriction: attendees are not permitted to bring Flipper Zero devices or Raspberry Pi computers to the event. The prohibition appears in the event’s…
Chinese-linked Browser Extensions Linked to Corporate Espionage Hit Millions of Users
A Chinese-linked threat actor has been tied to a third large-scale malicious browser extension campaign that has compromised data from millions of users across major web browsers, according to new findings by cybersecurity firm Koi Security. The latest campaign,…
Why the Leak of 16 Billion Passwords Remains a Live Cybersecurity Threat in 2025
As the year 2025 comes to an end people are still talking about a problem with cybersecurity. This problem is really big. It is still causing trouble. A lot of passwords and login credentials were exposed. We are talking…
Trust Wallet Chrome Extension Hack Costs $8.5 Million Theft
Chrome extension compromise resulted in millions of theft Trust Wallet recently disclosed that the Sha1-Hulur supply chain attack last year in November might be responsible for the compromise of its Google Chrome extension, causing $8.5 million assets theft. About the…
TikTok US Deal: ByteDance Sells Majority Stake Amid Security Fears
TikTok’s Chinese parent company, ByteDance, has finalized a landmark deal with US investors to restructure its operations in America, aiming to address longstanding national security concerns and regulatory pressures. The agreement, signed in late December 2025, will see a…
Bitcoin’s Security Assumptions Challenged by Quantum Advancements
While the debate surrounding Bitcoin’s security architecture has entered a familiar yet new phase, theoretical risks associated with quantum computing have emerged in digital forums and investor circles as a result of the ongoing debate. Although quantum machines may not…
Unleash Protocol Suffers $3.9M Crypto Loss After Unauthorized Smart Contract Upgrade
Decentralized intellectual property platform Unleash Protocol has reported a loss of approximately $3.9 million in digital assets following an unauthorized upgrade to its smart contracts that enabled illicit withdrawals. The Unleash team stated that the attacker managed to gain…
Two US Banks Disclose Customer Data Exposure Linked to Marquis Software Ransomware Attack
Two American banks have issued public warnings to customers after being affected by a ransomware incident that occurred in August at a widely used financial software provider. Artisans’ Bank and VeraBank notified regulators in Maine last week that recent…