26 Sep

‘An attacker’s playground:’ Crims exploit GoAnywhere perfect-10 bug

Security researchers have confirmed that threat actors have exploited the maximum-severity vulnerability affecting Fortra’s GoAnywhere managed file transfer (MFT), and chastised the vendor for a

Author rabih
26 Sep

LockBit’s new variant is ‘most dangerous yet,’ hitting Windows, Linux and VMware ESXi

Trend Micro has sounded the alarm over the new LockBit 5.0 ransomware strain, which it warns is “significantly more dangerous” than past versions due to

Author rabih
26 Sep

Prompt injection – and a $5 domain – trick Salesforce Agentforce into leaking sales

A now-fixed flaw in Salesforce’s Agentforce could have allowed external attackers to steal sensitive customer data via prompt injection, according to security researchers who published

Author rabih
26 Sep

Volvo North America confirms staff data stolen following ransomware attack on IT supplier

Volvo North America is the latest large organization to announce attackers accessed employee data after a ransomware attack struck its HR system provider. It told

Author rabih
26 Sep

UK and US security agencies order urgent fixes as Cisco firewall bugs exploited in wild

Cybersecurity agencies on both sides of the Atlantic are sounding the alarm over Cisco firewall vulnerabilities that are being exploited by an “advanced threat actor.”

Author rabih
26 Sep

UK to roll out mandatory digital ID for right to work by 2029

The UK government plans to issue all legal residents a digital identity by the end of the current Parliament, which could run until August 2029,

Author rabih
26 Sep

Roblox executors: It’s all fun and games until someone gets hacked

Kids Online You could be getting more than you bargained for when you download that cheat tool promising quick wins 26 Sep 2025  •  ,

Author rabih
26 Sep

Brits warned as illegal robo-callers with offshored call centers fined half a million

The UK’s data protection watchdog fined two Brit businesses with offshore call centers £550,000 (c $735,000) over illegal automated marketing calls. Both companies equipped their

Author rabih
25 Sep

North Korea’s Lazarus Group shares its malware with IT work scammers

North Korean-linked crews connected to the pervasive IT worker scams have upped their malware game, using more advanced tools, including a backdoor that has much

Author rabih
25 Sep

Callous crims break into preschool network, publish toddlers’ data

A cyber criminal crew has targeted Kido International, a preschool and daycare organization, leaking sensitive details about its pupils and their parents. To verify the

Author rabih
25 Sep

Zero-day deja vu as another Cisco IOS bug comes under attack

Cisco has confirmed a new IOS and IOS XE zero-day, the latest in a string of flaws that attackers have been quick to weaponize. Cisco’s

Author rabih
25 Sep

EU starting registration of fingerprints and faces for short-stay foreigners

Travelers including Britons and Americans visiting most European countries will have to register their fingerprints and faces under a system that goes live next month.

Author rabih
25 Sep

Empty shelves, empty coffers: Co-op pegs cyber hit at £80m

The Co-operative Group has revealed the cyberattack that knocked its systems offline earlier this year will leave it nursing an £80 million hangover.  The registered

Author rabih
25 Sep

DeceptiveDevelopment: From primitive crypto theft to sophisticated AI-based deception

This blogpost introduces our latest white paper, presented at Virus Bulletin 2025, where we detail the operations of the North Korea-aligned threat actor we call

Author rabih
25 Sep

Check your own databases before asking to see our passport photos, Home Office tells UK cops

The Home Office has told police forces to check their own photo databases before asking it to search its libraries of passport and visa facial

Author rabih
25 Sep

Three in four European companies are hooked on US tech

Partner Content What happens when your company’s future depends on a service controlled by another country that loves trade fights, tariffs, and industrial-scale surveillance? That’s

Author rabih
24 Sep

Google warns China-linked spies lurking in ‘numerous’ enterprises

Unknown intruders – likely China-linked spies – have broken into “numerous” enterprise networks since March and deployed backdoors, providing access for their long-term IP and

Author rabih
24 Sep

New string of phishing attacks targets Python developers

The Python Software Foundation warned users of a new string of phishing attacks using a phony Python Package Index (PyPI) website and asking victims to

Author rabih
Load moreLoadingAll items loaded