Tag: CySecurity News – Latest Information Security and Hacking Incidents

Ransomware Campaign Leverages QEMU to Slip Past Enterprise Defences

  In an effort to circumvent traditional security controls, hackers are increasingly relying on virtualisation as a covert execution layer, embedding malicious operations within QEMU environments. As observed in observed incidents, adversaries deployed concealed virtual machines in which tooling and…

Are You Letting AI Do Too Much of Your Thinking?

  As artificial intelligence tools take on a growing share of everyday thinking tasks, researchers are raising concerns that this shift may be quietly affecting how people process information, remember ideas, and engage with their own work. When Nataliya Kosmyna…

Retailer Secures Website After Customer Data Leak Risk Identified

  Express has quietly fixed a security flaw that permitted unauthorized access to customer order data following a significant lapse in web application security. This vulnerability exposed sensitive information ranging from customer names, emails, telephone numbers, shipping details, and partial…

Bank of America Bets Big on Risky Anthropic AI

  Bank of America is aggressively expanding its use of Anthropic’s advanced AI technology, even as U.S. regulators issue stark cybersecurity warnings. The bank’s commitment highlights a broader trend where nearly 70% of financial institutions integrate AI into operations, prioritizing…

Fake CAPTCHA Lures Power IRSF Fraud and Crypto Theft Campaigns

  Research by Infoblox reveals a new fraud operation that combines routine web security practices with telecom billing abuse, resulting in unauthorized mobile activity by using counterfeit CAPTCHA interfaces.  In this scheme, familiar human verification prompts are repurposed as covert…

PhantomCore Exploits TrueConf Flaws to Breach Russian Networks

  A pro-Ukrainian hacktivist group known as PhantomCore has been exploiting vulnerabilities in TrueConf video conferencing software to infiltrate Russian networks since September 2025. According to a Positive Technologies report, the attackers chained three undisclosed flaws in TrueConf Server, allowing…

The Shift from Cyber Defense to Recovery-Driven Security

  There has been a structural recalibration of cybersecurity strategies as organizations recognize that breaches impact operations, finances, and reputation in ways that extend far beyond the moment of intrusion.  Incidents that once remained within the domain of IT are…