Anthropic has warned Claude users that infostealer malware on their systems has stolen active Claude login sessions, letting threat actors to log into…
Tag: CySecurity News – Latest Information Security and Hacking Incidents
ServiceNow Patches Three Critical Code Injection Flaws Rated CVSS 10.0
ServiceNow has released security updates addressing four vulnerabilities in its AI Platform, including three critical flaws rated 10.0 out of 10 under…
OpenAI’s Hugging Face Attack Was Worse Than First Reported, New Reports Reveal
Two recently published reports highlighted additional details about the OpenAI Hugging Face breach, showing that the assault involved a substantial number…
White House AI Vetting Plan Draws Secrecy Concerns
The White House’s new plan to review advanced AI models is meant to reduce safety and cybersecurity risks, but the policy has been criticized for being…
Berlin Defies Hackers After Data Theft From State Network
A Berlin state government official has confirmed that hackers are attempting to extort the city after its administrative network was compromised earlier…
New TerminalFix Campaign Attacks via Fake CAPTCHAs and Installs Backdoors
Microsoft has revealed information of a new ClickFix version, called TerminalFix, that intends to lure users into launching a malicious command in…
PaperCut Zero-Days Exploited, Emergency Patch Released
PaperCut Software has released a second emergency patch after confirming that attackers exploited two zero-day vulnerabilities in its NG and MF print…
Chrome, Edge Extensions Found Stealing Cryptocurrency and Browser Data
Nineteen browser extensions for Google Chrome and Microsoft Edge were used to deliver a modular malware framework capable of draining cryptocurrency…
PaperCut NG and MF Flaws Exploited in the Wild, Prompting Emergency Security Patch
Malicious attackers are actively exploiting newly disclosed vulnerabilities in PaperCut NG and PaperCut MF that can allow unauthorized remote code…
Face ID and Fingerprint Unlocks May Put Your Privacy at Risk
Face ID and fingerprint unlock features allow for more convenient smartphone and account access but offer less privacy in the case of forced disclosure.…
Hasbro Data Breach Impacts Employee Personal Information
The Hasbro Company has notified its employees that their personal information could have been exposed as a result of a data breach involving one of their…
How We Find Critical Vulnerabilities with GLM 5.3 and Red Clippy
Over the last few months our red team exercises for BFSI customers have been run with an AI coding agent sitting in the loop. The findings that came out…
Russian-Speaking Hackers Used Cursor AI Agent to Target Seven Companies
Russian-speaking cybercriminals from the emerging Aur0ra ransomware group used Cursor’s AI coding agent to assist attacks against at least seven companies…
British Navy Drones Flagged Over China Link
British military drones have come under attention after a report claimed that Chinese-made cameras fitted in Royal Navy K3 surveillance drones were…
Storm-1175 Deploys StormEncryptor Ransomware After N-able N-central Vulnerability Exploitation
Financially motivated hackers believed to be based in China are using a new ransomware for the first time after targeting a vulnerability in the N-central…
Attackers Exploit Cosmos EVM Flaw Affecting Multiple Blockchain Networks
Cosmos EVM Flaw Exploited After Widespread Blockchain Exposure Was Confirmed It has been revealed that Cosmos Labs has disclosed exploiting a critical…
FBI Investigates Cyberattack on Kansas Water Technology Firm
The FBI is investigating a cyberattack targeting Micro-Comm, a Kansas-based company that develops technology used by water and wastewater utilities,…
OpenAI Reveals AI Agents Built Unauthorized Message Board That Contributed to Hugging Face Breach
OpenAI has revealed that an unauthorized communication system created by its own AI agents played a key role in an incident that led to parts of Hugging…
Berlin Confirms Extortion Attempt After Network Compromise as Manchester Airports Group Reports Customer Data Theft
The state of Berlin confirms that it is the victim of an extortion attempt after allegedly having its network hacked back in August. Authorities say they…
McKesson Probes Data Theft After ShinyHunters Claims Access to Patient Records
McKesson Corporation is investigating a cybersecurity incident involving unauthorized access to third-party applications and data exfiltration, while the…
