A massive fraud campaign abusing Indonesia’s official Coretax tax platform has siphoned off an estimated 1.5–2 million dollars in losses nationwide, highlighting how cybercriminals now weaponize public digital services at industrial scale. Launched around July 2025 and ramped up…
Tag: CySecurity News – Latest Information Security and Hacking Incidents
Enhanced Surveillance Functions Signal a Strategic Shift in Remcos RAT Activity
It is difficult to discern the quiet recalibration of remote access malware that occurs without spectacle, but its consequences often appear in plain sight. The newly identified variant of Remcos RAT illustrates this progression clearly and unnervingly. In its…
Bithumb Mistakenly Credits Users With Billions in Bitcoin During Promotion Error
A promotional campaign at South Korean cryptocurrency exchange Bithumb turned into a large scale operational incident after a data entry mistake resulted in users receiving bitcoin instead of a small cash-equivalent reward. Initial reports suggested that certain customers were…
Nitrogen Ransomware Bug Locks Out Attackers from Victims’ Data
Nitrogen ransomware developers have suffered a self-inflicted blow due to a critical coding error that permanently locks victims’ data, even from themselves. This bug in their VMware ESXi-targeting malware corrupts the public key during encryption, rendering decryption impossible despite…
Shadow Campaigns Expose 37 Nations to State-Linked Cyber Espionage Operations
A state-backed cyber espionage effort known as the “Shadow Campaigns” has quietly breached government bodies and critical infrastructure across 37 countries. Investigators from Palo Alto Networks’ Unit 42 assess that the activity began by early 2024 and likely originates…
Global Data Indicates Slowdown in Ransomware Targeting Education
It is evident on campuses once defined by open exchange and quiet routine that a new kind of disruption has taken hold, one that does not arrive in force but rather with encrypted files, locked networks, and terse ransom…
Cloudflare Launches Moltworker to Run Self-Hosted AI Agent Moltbot on Its Developer Platform
Cloudflare has unveiled Moltworker, an open-source framework designed to run Moltbot—a self-hosted personal AI agent—directly on its Developer Platform, eliminating the requirement for dedicated on-premise hardware. Moltbot, formerly known as Clawdbot, functions as a customizable personal assistant that operates…
Windows Malware Distributed Through Pirated Games Infects Over 400,000 Systems
A Windows-focused malware operation spreading through pirated PC games has potentially compromised more than 400,000 devices worldwide, according to research released by Cyderes. The company identified the threat as “RenEngine loader” and reported that roughly 30,000 affected users are…
Malicious dYdX Packages Drain User Wallets in Supply Chain Attack
Malicious open-source packages targeting the dYdX cryptocurrency exchange have enabled attackers to drain user wallets, exposing once again how fragile software supply chains can be in the crypto ecosystem. Researchers found that legitimate-looking libraries on popular repositories were quietly…
Global Cyber Espionage Campaign Hits Governments in 37 Countries
A massive cyber spying effort – linked to a government-backed group operating out of Asia – has breached governmental bodies and essential infrastructure targets in 37 nations, recent findings by Palo Alto Networks reveal. Known under the identifier TGR-STA-1030,…
German Authorities Alert Public to Signal Account Takeover Campaign
The use of secure messaging applications has long been seen as the final line of defense against persistent digital surveillance in an era of widespread digital surveillance. This assumption is now being challenged by Germany’s domestic intelligence service, the…
Hackers Use Fake Oura AI Server to Spread StealC Malware
Cybersecurity analysts have uncovered a fresh wave of malicious activity involving the SmartLoader malware framework. In this campaign, attackers circulated a compromised version of an Oura Model Context Protocol server in order to deploy a data-stealing program known as…
Flickr Discloses Third-Party Breach Exposing User Names, Emails
Photo-sharing platform Flickr has disclosed a potential data breach involving a third-party email service provider that may have exposed sensitive user information. The incident, reported on February 6, 2026, stems from a vulnerability in a system operated by this…
Spain Ministry of Science Cyberattack Triggers IT Shutdown, Hacker Claims Data Breach
A cyberattack targeting the Ministry of Science, Innovation and Universities has led to a partial shutdown of government IT infrastructure, interrupting essential digital services relied upon by researchers, universities, students, and businesses nationwide. Authorities initially referred to the disruption…
China Raises Security Concerns Over Rapidly Growing OpenClaw AI Tool
A fresh alert from China’s tech regulators highlights concerns around OpenClaw, an open-source AI tool gaining traction fast. Though built with collaboration in mind, its setup flaws might expose systems to intrusion. Missteps during installation may lead to unintended…
The Growing Threat of DNS Powered Email and Web Attacks
As an important component of the internet architecture, the Domain Name System has historically played the role of an invisible intermediary converting human intent into machine-readable destinations without much scrutiny or suspicion. However, this quiet confidence has now been…
Conduent Data Breach Expands to Tens of Millions of Americans
A massive data breach at Conduent, a leading government technology contractor, has escalated dramatically, now affecting tens of millions of Americans across multiple states. Initially detected in January 2025, the intrusion originated from an unauthorized access on October 21,…
London Boroughs Struggle to Restore Services After November Cyber Attack
A cyber intrusion identified on November 24, 2025 has disrupted essential local authority services in two central London boroughs, freezing parts of the property market and delaying administrative functions. The Royal Borough of Kensington and Chelsea and Westminster City Council…
ISPsystem VMs Hijacked for Silent Ransomware Distribution
The evolution of cybercrime has led to infrastructure becoming less of a matter of ownership and more of a convenience issue. As opposed to investing time and resources in the construction and maintenance of dedicated command-and-control servers, ransomware operators…
Cryptocurrency Market Slump Deepens Amid Global Tech Selloff and Risk-Off Sentiment
Now falling, the crypto market feels strain from turmoil spreading beyond tech stocks worldwide. As investors pull back sharply, digital currencies take a hit alongside firms that list Bitcoin on their books. When one part shakes, others follow –…