Most organizations around the world are spending more on cybersecurity than at any point in their history. Very few are spending it on the threats that…
Tag: CySecurity News – Latest Information Security and Hacking Incidents
Automakers Face Scrutiny Over Connected-Car Data Sharing
Modern connected cars are increasingly functioning as data-collection platforms, with new research finding that many automakers routinely transmit…
Google Introduces Gemini 4 Argon With Guardrail-Free Access for Defenders
A new frontier artificial intelligence model, Gemini 4 Argon, has been introduced by Google through its Fairwind Program for initial distribution to…
101 Malicious npm Packages Secretly Enroll Developers into WhatsApp Spam Channels
Researchers at OX Security have flagged 101 npm packages that silently subscribe developers to WhatsApp spam channels the moment they are installed. The…
84% of Indian SMEs Plan Higher Cybersecurity Spending as Readiness Gaps Remain
A large proportion of Indian small and medium enterprises (SMEs) plan to boost cybersecurity spending in the next 12-24 months yet experience gaps in…
MetaMask Takes Precautionary Action After Infrastructure Security Incident
Crypto wallet provider MetaMask is taking precautions following a security incident impacting one of its infrastructures as it deals with the consequences…
MCP Python SDK Flaw Exposes OAuth Credentials
A high-severity security vulnerability in the official Model Context Protocol (MCP) Python SDK could allow malicious MCP servers to steal OAuth…
Federal Agencies Disrupt Ransomware Gang Involving A 16-Year Old Member
An international law enforcement operation known as “Operation KillSwitch” seized the KillSec ransomware gang’s data leak site and servers, resulting in…
Cybercriminals Misuse ChatGPT Custom GPTs in ClickFix RAT Attacks
ChatGPT Custom GPTs are being abused by threat actors as an entry point for malware campaigns, redirecting users to malicious websites using fake…
NVIDIA Unveils Layered Security Architecture for AI Agents
NVIDIA has introduced the Open Agent Safety Platform as a security architecture for controlling autonomous AI agents from testing through deployment.…
DC Health Agency Data Exposure Affects Nearly 400,000 Medicaid Beneficiaries
Almost 400,000 people who enrolled in Medicaid and the DC Healthcare Alliance may have been affected by a data breach, which occurred on the website of…
NeedyMantis Malware Expands the Post-Compromise Threat Landscape
A modular malware family dubbed NeedyMantis has been identified by Microsoft Threat Intelligence, and has been employed to maintain access to compromised…
Researchers Discover Exploit Kit Targeting iPhones in Mobile Malware
Researchers at the Ukrainian Cyber Security Institute have warned that there are mobile malware campaigns targeting both Android and iOS devices, with…
AI Safety Concerns Put OpenAI and Anthropic Under FTC Scrutiny
Artificial intelligence companies are facing another layer of scrutiny in the United States, with the Federal Trade Commission examining whether…
Half a Million GitHub Credentials Are Still Active, Most Have Been Sitting in the Open for Years
Researchers at Truffle Security tested 543,699 API keys, database passwords, and access tokens found in public GitHub repositories last July. Every single…
French Tax Data Theft: Threat Actors Steal Password and Remain Undetected
A threat actor used stolen passwords of employees at France’s tax admin to steal tax data on businesses and hundreds of thousands of taxpayers in…
Attackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing Campaigns
Microsoft has warned of a new wave of phishing campaigns that abuse the legitimate MSP360 Remote Monitoring and Management (RMM) software to establish…
101 Malicious npm Packages Secretly Enroll Developers into WhatsApp Spam Channels
Researchers at OX Security have flagged 101 npm packages that silently subscribe developers to WhatsApp spam channels the moment they are installed. The…
84% of Indian SMEs Plan Higher Cybersecurity Spending as Readiness Gaps Remain
A large proportion of Indian small and medium enterprises (SMEs) plan to boost cybersecurity spending in the next 12-24 months yet experience gaps in…
MCP Python SDK Flaw Exposes OAuth Credentials
A high-severity security vulnerability in the official Model Context Protocol (MCP) Python SDK could allow malicious MCP servers to steal OAuth…
