Category: EN

AI-Powered Ransomware Surge Hits 7,831 Victims Worldwide

Ransomware attacks surged dramatically in 2025, with global victims reaching 7,831. The sharp rise highlights how cybercrime has evolved into a highly organized, AI-driven ecosystem in which attackers operate at speed, with automation and scale. This surge is largely fueled…

Networks of Browser Extensions Are Spyware in Disguise

Modern browser extensions and ad blockers are legally collecting and reselling user data, including streaming habits and B2B sales intelligence, under the guise of “analytics.” This unregulated “legal spyware” creates massive security gaps as employees unwittingly leak corporate URLs, SaaS…

Critical cPanel zero-day, Swiss Black Axe arrests, HHS data center questions

Critical cPanel and WHM bug exploited as zero-day Swiss police arrest suspected members of Black Axe group HHS ponders government posture for protecting data centers Get the show notes here: https://cisoseries.com/cybersecurity-news-critical-cpanel-zero-day-swiss-black-axe-arrests-hhs-data-center-questions/ Thanks to our episode sponsor, Guardsqaure Attackers are treating…

EU Finds Meta Breaches Law On Underaged Users

Preliminary findings from European Commission find Meta ‘doing very little’ to prevent children under 13 using Facebook, Instagram This article has been indexed from Silicon UK Read the original article: EU Finds Meta Breaches Law On Underaged Users

FBI Warns Logistics Sector of Fake Business Identity Cargo Scams

The FBI issued a public service announcement warning the transportation and logistics sectors about a massive increase in cyber-enabled strategic cargo theft. Threat actors are increasingly using sophisticated tactics to impersonate legitimate businesses, hijack freight, and steal high-value shipments. The…

Ruby Gems and Go Modules Used in Campaign Targeting GitHub Actions

A sophisticated software supply chain attack originating from the GitHub account BufferZoneCorp has been uncovered, targeting developers and continuous integration environments through malicious Ruby gems and Go modules. The campaign deployed sleeper packages that impersonated legitimate developer tools, which were…

Fake CAPTCHA Scam Uses SMS Pumping to Inflate Phone Bills

A newly uncovered cyber fraud campaign is abusing fake CAPTCHA pages to trick mobile users into sending large volumes of international SMS messages, resulting in unexpected phone bills and illicit profits for attackers. Unlike traditional malware campaigns, this operation does…

Claude Security Enters Public Beta for Enterprise Customers

Anthropic has officially launched the public beta of Claude Security, an advanced vulnerability detection and remediation tool now available to Claude Enterprise customers. Powered by the highly capable Claude Opus 4.7 model, this platform shifts application security testing from basic…

Aman – 215,563 breached accounts

In April 2026, the ultra-luxury hotel brand Aman was named by ShinyHunters as the target of a “pay or leak” extortion campaign, with the data allegedly obtained from their Salesforce CRM. The data was subsequently leaked publicly and contained over…