The attacker who stole 4,000 bitcoin (BTC) from Liquid Network’s federation wallet on the weekend has returned 85% of the funds after Blockstream…
Category: CySecurity News – Latest Information Security and Hacking Incidents
Attackers Exploit TeamCity Flaw to Breach JetBrains Cadence
JetBrains has revealed a security incident involving its Cadence cloud development service after attackers gained access through an unpatched TeamCity…
REVSTEALER Malware Disables Windows Security to Run a Crypto Miner
A new malware campaign associated with the REVSTEALER information stealing malware has been discovered using another four additional malicious programs to…
REVSTEALER Malware Disables Window Security to Run a Crypto Miner
A new malware campaign associated with the REVSTEALER information stealing malware has been discovered using another four additional malicious programs to…
Vadodara Businessman Duped of Rs 19.75 Lakh in Fake Supplier Email Scam
A city-based businessman lost close to Rs 20 lakh after fraudsters hijacked his correspondence with a Dubai supplier and rerouted a payment meant for a…
HPE Patches Multiple ArubaOS-CX Vulnerabilities
Hewlett Packard Enterprise has released a security advisory for Aruba Networking ArubaOS-CX, warning customers about multiple vulnerabilities affecting…
IDScan Sued Over Alleged Data Breach Affecting 153 Million Drivers
Identity verification company IDScan is being sued in multiple cases after hackers allegedly gained unauthorized access to the service and started selling…
MikroTik Routers Targeted Through Internet-Exposed SSH Access
The Secure Shell (SSH) remote-access service of MikroTik routers is actively being used by attackers to access internet-exposed MikroTik routers,…
StyleSmuggler Flaw Allows Attackers to Exploit Zero Day With Remote Code Execution
Threat actors are exploiting a newly found zero-day flaw in Magento Open Source and Adobe Commerce to install persistent backdoors and compromise online…
Baylor Genetics Confirms Cyberattack Exposed Patient Data
Baylor Genetics has disclosed a cybersecurity incident that may have exposed personal information belonging to some patients and employees, but the…
A New Magento Zero-Day Is Breaking Into Online Stores Right Now
Online stores running Magento Open Source and Adobe Commerce are being broken into through a security flaw that has no patch, no CVE number and, as of…
Origin Energy Data Breach Traced to Manila Call Centre, Ex-Accenture Employee Identified
An ex Accenture worker from Manila is suspected to be behind last month’s security breach. Accenture has an office in the city, which supports the energy…
Trezor Data Breach Rises to 67,000 US Customers
Hardware cryptocurrency wallet organization Trezor has disclosed that additional 67,000 customers in the US have been impacted by a data breach consisting…
Malicious Ted Backdoor Conceals Itself Inside HAProxy Builds for Traffic Monitoring
Two South Korean organizations have been identified as being infected with a previously undocumented Linux backdoor embedded directly within custom…
Elementor Pro WordPress Flaw Exploited to Upload Webshells and Execute Commands
A critical vulnerability in the Elementor Pro WordPress plugin is being actively exploited to upload malicious PHP files and execute commands remotely on…
AWS CodeCatalyst Blueprints SDK Hit by High-Severity Command Injection Flaw
There is a high-severity attack on Amazon CodeCatalyst blueprints that exploits an open-source framework for building them. This vulnerability has been…
Critical Nexus 9000 Flaw Could Permit Threat Actors to Gain Root Access
Cisco has issued security patches to fix a critical vulnerability impacting 10 Silicon One-based Nexus 9000 switches that could permit an unauthorized,…
Dropbox Says 5,000 Accounts Compromised After Flaw in Lenovo Login System
Dropbox has confirmed that hackers broke into roughly 5,000 user accounts last month by exploiting a weakness in how Lenovo verifies email addresses,…
Switchvox Vulnerability Triggers Active Exploitation Risk
Sangoma Switchvox CVE-2026-9586 is a serious unauthenticated SQL injection flaw that can lead to remote code execution, and Horizon3 says it has already…
redactproxy, a tool that lets pentesters use AI without leaking client data
AI coding agents are now part of a lot of security work. They are good at the parts a tester has no time for: going through every request, every parameter…
