The Splunk 2026 CISO report makes public the challenges that CISOs face when trying to meet the rising demand to mask security incidents while also complying with tightening disclosure laws. According to the report, which draws its conclusions from…
Tag: CySecurity News – Latest Information Security and Hacking Incidents
Ransomware activity climbs in Q2 2026 as leading gangs consolidate attacks and AI streamlines extortion efforts
Ransomware groups claimed responsibility for 2,279 attacks worldwide during the second quarter of 2026, marking a 7% increase from the previous quarter and a 43% jump compared with the same period last year, according to GuidePoint Security’s latest quarterly…
Sri Lanka Treasury’s USD 2.5 Million Loss Ruled Cybercrime Fraud
Sri Lanka’s recent finding that a USD 2.5 million Treasury loss was the result of cybercrime highlights how vulnerable government financial systems have become in the age of digital debt repayments. The case underlines that cybersecurity failures are no…
Unpatched Backdoor Identified in Firmware of Multiple Wi-Fi Routers
Research has discovered that several Tenda Wi-Fi routers are at risk of being compromised as a result of an undocumented authentication backdoor embedded in their firmware. An attacker can bypass the normal login process and gain administrator-level access to affected…
Hidden Wi‑Fi Killers: Everyday Things Quietly Ruining Your Home Internet
Many everyday objects can quietly wreck your Wi‑Fi, and understanding them is the first step to a more stable home network. From kitchen gadgets to building materials, the invisible radio waves carrying your data are constantly competing with physical…
Helix Data Extortion Group Targets Microsoft SharePoint Using Vishing and MFA Abuse
Cybersecurity researchers have discovered a new data extortion group called Helix that has been targeting companies by using user credentials rather than software vulnerabilities. Helix has been employing voice phishing (vishing), device code phishing, and multi-factor authentication (MFA) abuse…
Abbott Investigates Two Cyber Incidents Following Extortion Claims
Two separate cybersecurity incidents are being investigated by Abbott Laboratories after threat actors reportedly gained access to the company’s systems and accessed sensitive information. While one incident has been linked to the ShinyHunters extortion group, the other involves claims…
Nearly 7 Million Driver’s License Numbers Exposed After AssuranceAmerica Data Breach
Nearly seven million people are being notified after a cyberattack on Atlanta-based auto insurer AssuranceAmerica exposed highly sensitive personal information, including driver’s license numbers, Social Security numbers and insurance records, raising concerns about long-term identity theft risks. According to…
AI Agent Runs First End-to-End Ransomware Attack
Security researchers have long warned that AI would lower the barrier to cybercrime, but the latest case makes that threat tangible. In the operation described by Sysdig and covered by Forbes, an autonomous agent carried out the technical steps…
AssuranceAmerica Data Breach Exposes Personal Information of Nearly 7 Million Individuals
Auto insurance company AssuranceAmerica is notifying almost 6.99 million people of the possible exposure of their private information after experiencing a data breach. The company appeared on the state attorney generals earlier this month to reveal the cyberattack occurred…
Group-IB Uncovers ClickLock macOS Malware Targeting Passwords and Crypto Wallets
An aggressive social engineering technique has been used by ClickLock, an information-stealing macOS malware, to obtain victims’ information about their system login passwords. Security researchers at Group-IB report that the malware disables normal system functionality, leaving users with little interaction…
Bitdefender Uncovers Windows Bind Link Technique That Evades EDR Detection
Researchers at Bitdefender have discovered a new technique for hiding malware from Endpoint Detection and Response (EDR) solutions by utilizing bind links, a valid Windows feature. Despite Microsoft’s classification of this issue as low severity due to the fact…
Deepfake Cyber Fraud Costs Capillary Technologies Over ₹32 Crore
Capillary Technologies’ recent deepfake-enabled cyber fraud incident highlights how rapidly evolving AI tools are transforming from business enablers into serious security threats for global enterprises. The Bengaluru-based SaaS company disclosed that an overseas step-down subsidiary lost around €3 million,…
UK Court Sentences Two Hackers to 5.5 Years for Transport for London Cyberattack That Caused £29 Million in Damages
Two hackers have been sentenced to five and a half years in prison each for carrying out the 2024 cyberattack on Transport for London (TfL), in what the UK’s National Crime Agency (NCA) has described as the country’s largest…
TRAI Seeks IT Act Powers to Act Against Spam-Tagging Apps Like Truecaller
The Telecom Regulatory Authority of India (TRAI) seeks new powers in the Information Technology (IT) Act to take action against call management apps, including Truecaller, Hiya, and Whoscall, for marking or blocking legitimate commercial calls as spam. The regulator…
Coca-Cola says ransomware attack disrupts Fairlife operations, temporarily suspends U.S. dairy production
The Coca-Cola Company has revealed that a ransomware attack targeting its Fairlife dairy business has temporarily disrupted production across the United States after threat actors gained unauthorized access to company systems, including those supporting manufacturing operations. The incident was…
Dutch Authorities Arrest Multiple Suspects in Global Investment Fraud Investigation
Dutch authorities have arrested multiple suspects as part of an international investigation into an alleged investment fraud network that investigators believe defrauded victims worldwide through fake online investment schemes, with the operation at one point generating more than €100…
Govt: Kudankulam Data Breach Did Not Impact Nuclear Security, No Immediate Review Planned
The Centre has attempted to reassure the public that the data breach incident involving electronic files of the Kudankulam Nuclear Power Plant (KKNPP) has no implication on the nation’s nuclear security or reactor operations. Union Minister of State for…
Bengaluru Housewife’s WhatsApp Hacked; Morphed Obscene Videos Shared Online
A 42-year-old housewife in Bengaluru has fallen victim to a disturbing cybercrime after her WhatsApp account was hacked and morphed obscene videos were shared online, triggering widespread outrage and highlighting the growing threat of digital harassment against women. The…
Windows 11 KB5101650 and KB5099414 Updates Released With Security Fixes and New Features
A cumulative update for Windows 11 based on Patch Tuesday July 2026 is now available, with KB5101650 for versions 25H2 and 24H2 and KB5099414 for version 23H2. As well as addressing 571 security vulnerabilities, the mandatory updates also improve…