The rise of artificial intelligence (AI) is uncovering vulnerabilities in enterprise data governance, as organizations grapple with managing information…
Tag: CySecurity News – Latest Information Security and Hacking Incidents
Flock Cameras Blanket Southwest Florida, Sparking Privacy and Safety Backlash
Flock Safety’s automated license plate reader (ALPR) cameras are spreading rapidly across Southwest Florida, with hundreds now installed at intersections,…
Hackers Compromise Organization to Swap Crypto Wallet Address In A Supply Chain Attack
Threat actors exploited a JavaScript file offered by advertising technology firm Adform, and modified it into a browser-side tool that rewrites crypto…
Coldcard Wallet Security Incident Linked to Multi-Million Dollar Bitcoin Theft
There has been a connection between a critical firmware flaw in the Coldcard hardware wallet and one of the largest cryptocurrency thefts of the year,…
Apps Targeting U.S. Military Personnel Found to Contain Chinese and Russian Software Components, Study Finds
A study led by researchers from Purdue University has found that a notable number of Android applications marketed toward U.S. military personnel include…
Third-Party Cloud Breach Exposes Patient Data at Amgen
The global biotechnology company Amgen has disclosed a significant data breach resulting from unauthorized access to cloud environments operated by…
Here’s Why eSIM Became a Trap for Mobile Users
eSIM technology was heralded as the future of mobile connectivity, promising to eliminate the hassle of physical SIM cards and make switching carriers as…
HollowGraph Malware Abuses Microsoft 365 Calendars for Covert Command-and-Control
The malware component HollowGraph is using Microsoft 365 mailbox calendars to hide its C2 channels and traffic, enabling the bad actors to communicate…
HollowFrame Loader and Matryoshka Malware Used in Spear-Phishing Attack
Experts discovered a recently undocumented Go-based loader framework termed HollowFrame and a Rust-based malware strain called Matryoshka. Spear-phishing…
Autonomous AI Agent Breaches Hugging Face, Exposes Internal Credentials
Hugging Face, the world’s largest AI model repository, confirmed a landmark security breach in July 2026, marking the first publicly documented case of an…
Suspected Chinese-Speaking Threat Actor Targets Central Asian Governments With New OctLurk and SilkLurk Malware
Government organizations across Central Asia are facing a cyber espionage campaign that employs two newly identified malware families, OctLurk and…
Estée Lauder Discloses HR Data Breach Linked to Oracle E-Business Suite Vulnerability
Estee Lauder announced that their Oracle E-Business Suite (EBS) system that manages human capital operations was targeted by cyber criminals who managed…
Claude AI Breached Three Organizations During Internal Testing
Anthropic’s Claude models, during internal security testing, made a malicious Python package and uploaded it to PyPi, where it ran on 15 real systems. The…
The Future of Age Verification Shifts to On-Device Privacy
It has become increasingly common for governments around the world to tighten online age verification requirements, as well as to incorporate a new…
What Is Polymarket? How Blockchain Is Transforming Prediction Markets
Prediction markets have existed for decades as a way to forecast future events, but blockchain technology has reshaped how they operate. Among the…
ShinyHunters Claims Responsibility for EY Data Breach as Investigation Continues
The cyberattack involving Ernst & Young (EY) has entered a new phase after the ShinyHunters extortion group claimed responsibility for the intrusion,…
Capital One Open-sources AI Security Tool VulnHunter to Help Developers Identify Exploitable Flaws before Deployment
Capital One has released VulnHunter, an open-source AI-powered application security tool designed to identify exploitable software vulnerabilities before…
NVIDIA Launches Open Secure AI Alliance to Strengthen AI Security with 36 Industry Partners
iNVIDIA has joined forces with 36 technology organizations to establish the Open Secure AI Alliance (OSAA), an industry-wide initiative focused on…
CrashStealer Malware Targets macOS Users by Posing as Apple Crash Reporter
A newly identified malware strain named CrashStealer is targeting macOS users by disguising itself as Apple’s legitimate crash reporting utility. Designed…
Google to Patch Gemini Flaw That Lets Locked Android 16 Phones Send SMS and WhatsApp Messages Without PIN
Google is preparing to roll out a fix for a newly identified security vulnerability in its Gemini AI assistant that could allow unauthorized users with…