iTelegram’s t.me link-shortening domain briefly went offline earlier this week after a compliance action linked to US sanctions inadvertently affected the…
Tag: CySecurity News – Latest Information Security and Hacking Incidents
Indian Banks Increase Cybersecurity Investments to Counter AI-Powered Cyber Threats
Indian banks are ramping up cybersecurity spending as artificial intelligence-fueled cyber threats grow more sophisticated. As per the Digital Threat…
Fitness Trackers Can Expose Your Health Data, EFF Warns
Fitness trackers have become part of everyday life, helping people monitor steps, sleep, heart rate, stress, and workouts with impressive convenience. But…
Ernst & Young Notifies Clients Following Third-Party Support Platform Data Breach
The company Ernst & Young (EY) has sent out notices to the affected clients about the data breach involving the third-party support ticket platform, which…
Meta AI Bots Drain Publishers With 9 Billion Q2 Requests
Meta’s AI bots are rapidly becoming a costly headache for online publishers, exposing a structural imbalance in how AI platforms use web content. Recent…
Moonshot AI Claims Kimi K3 Matches OpenAI and Anthropic Models
Founded by Moonshot AI, the company has released the Kimi K3 large language model, a next-generation large language model the company claims is…
Over-the-Air Vehicle Updates Raise Cybersecurity and National Security Concerns
Modern vehicles are being transformed by the adoption of over-the-air (OTA) technology. However, cybersecurity experts warn that the same technology can…
Telegram Introduces Serverless Runtime for Bots, Bringing Deployment, Application Logic, and Data Under One Platform
Telegram has rolled out Telegram Serverless, a managed serverless runtime that enables developers to deploy bot backends directly to Telegram’s…
Fastjson Zero‑Day RCE Actively Targeting U.S. Companies
Hackers are abusing a critical Fastjson zero‑day remote code execution (RCE) flaw to compromise U.S. organizations by simply sending malicious JSON data…
Russian Sandworm Hackers Adopt ClickFix Technique to Target Ukrainian Organizations
Ukraine’s Computer Emergency Response Team (CERT-UA) has issued an advisory after detecting that Russia’s advanced persistent threat (APT) group Sandworm…
Vatican ‘Click to Pray’ App Security Flaw Exposed Data of 700,000 Users
Approximately 700,000 personal data of Vatican users were reportedly exposed due to a critical security vulnerability in Click to Pray, causing concerns…
Location Sharing: Convenience at the Cost of Safety
Location sharing has become a routine feature in messaging, navigation, and social apps, yet it carries security and privacy risks that many users…
Amazon Attributes Earlier npm Supply Chain Attacks to North Korea’s Sapphire Sleet
Amazon has linked a series of high-profile npm supply chain compromises spanning 2025 and 2026 to the North Korean threat group Sapphire Sleet, suggesting…
Microsoft Warns of Rising ACR Stealer Campaigns Targeting Enterprise Credentials
Microsoft has observed an uptick in attacks using the ACR Stealer information-stealing malware family. Attackers distributed the malicious payload…
ShinyHunters Claims Responsibility for EY Data Breach as Investigation Continues
The cyberattack involving Ernst & Young (EY) has entered a new phase after the ShinyHunters extortion group claimed responsibility for the intrusion,…
Capital One Open-sources AI Security Tool VulnHunter to Help Developers Identify Exploitable Flaws before Deployment
Capital One has released VulnHunter, an open-source AI-powered application security tool designed to identify exploitable software vulnerabilities before…
NVIDIA Launches Open Secure AI Alliance to Strengthen AI Security with 36 Industry Partners
iNVIDIA has joined forces with 36 technology organizations to establish the Open Secure AI Alliance (OSAA), an industry-wide initiative focused on…
CrashStealer Malware Targets macOS Users by Posing as Apple Crash Reporter
A newly identified malware strain named CrashStealer is targeting macOS users by disguising itself as Apple’s legitimate crash reporting utility. Designed…
US Sanctions on VPN Service Briefly Disrupt Telegram’s t.me Link Shortener Due to Compliance Action
iTelegram’s t.me link-shortening domain briefly went offline earlier this week after a compliance action linked to US sanctions inadvertently affected the…
Google to Patch Gemini Flaw That Lets Locked Android 16 Phones Send SMS and WhatsApp Messages Without PIN
Google is preparing to roll out a fix for a newly identified security vulnerability in its Gemini AI assistant that could allow unauthorized users with…