General Electric and Philips have confirmed they are investigating claims that the Clop ransomware gang successfully breached their systems and…
Category: EN
Migrant smuggling network using rental cars dismantled across the Balkans
Led by the Greek authorities and supported by Europol, the investigation targeted a criminal network composed mainly of Syrian and Egyptian nationals…
Google Workspace Gemini data access default settings
Google Workspace administrators are discovering that Gemini, Google’s AI assistant, has default access to user data across multiple core services…
Season 4 of The Europol Podcast available now
The Europol Podcast is the official podcast of the EU’s agency for law enforcement cooperation. This season, we spoke to our Europol experts on the…
Zhipu GLM-5.3 AI model claims superior vulnerability detection
Chinese AI developer Zhipu launched GLM-5.3 last week, claiming the model matches American AI systems in detecting software vulnerabilities.
Threema Secure Messaging Service Hit by Massive DDoS Attack
Threema, a privacy-focused secure messaging service, was hit by a series of large-scale distributed denial-of-service (DDoS attacks) that temporarily…
French-Spanish operation targets hazardous waste trafficking network: four arrested
The investigation focused on an alleged cross-border network that illegally transported tonnes of demolition waste from France to Spain, posing serious…
The Oracle of Delphi Will Steal Your Credentials
Our deception technology is able to reroute attackers into honeypots, where they believe that they found their real target. The attacks brute forced…
Microsoft SCCM Vulnerability Chained to Execute Malicious Code Remotely
Security researchers have disclosed a serious attack chain affecting Microsoft System Center Configuration Manager, commonly known as SCCM or…
Europol-led action against nihilistic violent extremist network “The Com”
An estimated 4 340 URLs related to nihilistic violent extremism were referred during the initiative organised by Europol’s EU Internet Referral Unit – EU…
Roundcube 1.6.18 and 1.7.3 Released With Fix for RCE and SSRF Vulnerabilities
Roundcube has released versions 1.6.18 and 1.7.3 to address eleven security vulnerabilities affecting its webmail platform. The updates fix a remote code…
Attackers exploit patched macOS Screen Sharing flaw to deploy cryptominer
A recently patched security flaw in Apple macOS is being actively exploited by hackers to bypass authentication, gain root access, and install a…
How MCP Servers Can Expose Enterprise Secrets
MCP servers can expose enterprise secrets through plaintext configuration files, over-permissioned access and prompt injection, often before security…
Irregular Details How a Naming Error Let AI Models Attack a Real Company
The AI security testing firm has shared information on a recently disclosed incident involving Anthropic AI models.
Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access
Security researchers at SSD Secure Disclosure have published a two-stage exploit chain that achieves full Android kernel access on devices running Unisoc…
Five arrests for smuggling migrants across the Bulgarian-Serbian green border
The action day led to:5 arrests (1 High Value Target, 2 police officers and 2 associates)5 locations searched;Seizures include: 3 vehicles used for…
5 Best Free VPNs in 2026
Compare the 5 best free VPNs in 2026, including Proton VPN, PrivadoVPN, TunnelBear, Windscribe, and hide.me, for privacy, data, and features.
Crook hawks millions of records allegedly plundered from corporate Azure tenants
McDonald’s, Vodafone, TCS, Kyndryl, and others named as researchers point to compromised credentials
Hacking Public Wi-Fi DNS to Steal Credentials
Criminals are hacking into public Wi-Fi devices—at hotels, conference centers, and so on—around the world and changing their DNS settings. The goal is to…
ETSI Proposes 17 Cybersecurity Standards to Support Cyber Resilience Act
The European Telecommunications Standards Institute has launched an approval process for standards vendors will have to meet under the Cyber Resilience Act
