23 Jan

ESET Research: Sandworm behind cyberattack on Poland’s power grid in late 2025

ESET Research The attack involved data-wiping malware that ESET researchers have now analyzed and named DynoWiper ESET Research 23 Jan 2026  •  , 1 min.

Author rabih
23 Jan

Fortinet admits FortiGate SSO bug still exploitable despite December patch

Fortinet has confirmed that attackers are actively bypassing a December patch for a critical FortiCloud single sign-on (SSO) authentication flaw after customers reported suspicious logins

Author rabih
23 Jan

London boroughs limping back online months after cyberattack

Hammersmith & Fulham Council says payments are now being processed as usual, two months after a cyberattack that affected multiple boroughs in the UK’s capital

Author rabih
23 Jan

Children and chatbots: What parents should know

Kids Online As children turn to AI chatbots for answers, advice, and companionship, questions emerge about their safety, privacy, and emotional development Phil Muncaster 23

Author rabih
23 Jan

Marching orders delayed: Veterans’ Digital ID off to a slow start

More than 15,000 former members of the UK’s armed forces have successfully applied for a digital version of their veterans ID card since its launch

Author rabih
22 Jan

Crims hit the easy button for Scattered-Spider style helpdesk scams

Criminals can more easily pull off social engineering scams and other forms of identity fraud thanks to custom voice-phishing kits being sold on dark web

Author rabih
22 Jan

Crims compromised energy firms’ Microsoft accounts, sent 600 phishing emails

Unknown attackers are abusing Microsoft SharePoint file-sharing services to target multiple energy-sector organizations, harvest user credentials, take over corporate inboxes, and then send hundreds of

Author rabih
22 Jan

FortiGate firewalls hit by silent SSO intrusions and config theft

FortiGate firewalls are getting quietly reconfigured and stripped down by miscreants who’ve figured out how to sidestep SSO protections and grab sensitive settings right out

Author rabih
22 Jan

Europe’s GDPR cops dished out €1.2B in fines last year as data breaches piled up

GDPR fines pushed past the £1 billion (€1.2 billion) mark in 2025 as Europe’s regulators were deluged with more than 400 data breach notifications a day,

Author rabih
22 Jan

Bank of England: Financial sector failing to implement basic cybersecurity controls

Concerned about the orgs that safeguard your money? The UK’s annual cybersecurity review for 2025 suggests you should be. Despite years of regulation, financial organizations

Author rabih
22 Jan

Ancient telnet bug happily hands out root to attackers

A recently disclosed critical vulnerability in the GNU InetUtils telnet daemon (telnetd) is “trivial” to exploit, experts say. The bug, which had gone unnoticed for

Author rabih
22 Jan

Another week, another emergency patch as Cisco plugs Unified Comms zero-day

Cisco has finally shipped a fix for a critical-rated zero-day in its Unified Communications gear, a flaw that’s already being weaponized in the wild, and

Author rabih
22 Jan

Common Apple Pay scams, and how to stay safe

Here’s how the most common scams targeting Apple Pay users work and what you can do to stay one step ahead Phil Muncaster 22 Jan

Author rabih
21 Jan

Davos discussion mulls how to keep AI agents from running wild

AI agents arrived in Davos this week with the question of how to secure them – and prevent agents from becoming the ultimate insider threat

Author rabih
21 Jan

Don’t click on the LastPass ‘create backup’ link – it’s a scam

Password managers make great targets for attackers because they can hold many of the keys to your kingdom. Now, LastPass has warned customers about phishing

Author rabih
21 Jan

Everest ransomware gang said to be sitting on mountain of Under Armour data

Have I Been Pwned (HIBP) says 72.7 million accounts registered with Under Armour were affected by an alleged ransomware attack in November. The data breach

Author rabih
21 Jan

EU considers whether there’s Huawei of axing Chinese kit from networks within 3 years

The European Commission (EC) wants a revised Cybersecurity Act to address any threats posed by IT and telecoms kit from third-country sources, potentially forcing member

Author rabih
21 Jan

Ireland wants to give its cops spyware, ability to crack encrypted messages

The Irish government is planning to bolster its police’s ability to intercept communications, including encrypted messages, and provide a legal basis for spyware use. The

Author rabih
Load moreLoadingAll items loaded