> TODAY'S SUMMARY (14 articles)
Today's cybersecurity landscape highlights several critical developments. Canadian cybersecurity executive Edward Dubrovsky was arrested for alleged ties to extortion linked to the ShinyHunters hacking group. Meanwhile, the Silent Ransom Group reportedly extorted $207 million from law firms through social engineering tactics without encrypting files. Cyberattacks on South Korean banks were traced to a Chinese hacker utilizing ARTEX AI tools. Additionally, an insider extortion case involved a former engineer demanding ransom from an industrial firm after compromising server access. As AI continues to evolve, initiatives are leveraging it to counter cybercriminals, indicating a shift in anti-cybercrime strategies. Lastly, the sentencing of the Empire Market co-creator underscores ongoing efforts to dismantle dark web operations.
|
// AI-powered summary generated at 16:00
Le groupe de biologie médicale Inovie Labosud a été victime d’une cyberattaque début août, entraînant l’exfiltration de données personnelles et médicales de plusieurs millions de patients. Les données concernées sont de nature administrative et médicale, mais aucun mot de passe ou coordonnée bancair...
BARTEK experienced a cyber security incident where a third party compromised some of their data, potentially affecting personal information including names, social security numbers, and earning statements. A cyberattack against Bartek was claimed by INC Ransom on September 2.
New udisks2 packages are available for Slackware 15.0 and -current to fix a security issue.
Des numéros de sécurité sociale et d'autres informations personnelles de participants à une étude du Centre du cancer de l'Université de Hawaï ont été exposés à des hackers informatiques en août, mais quatre mois plus tard, l'UH n'avait pas encore informé les personnes touchées que leurs données ava...
As part of the Month of AI Bugs, serious vulnerabilities that allow remote code execution via indirect prompt injection were discovered. There was a period of a few weeks where multiple arbitrary code execution vulnerabilities existed in popular agents, like GitHub Copilot, Amazon Q, AWS Kiro,…
Duri...
Pyongyang-backed hacking group APT37 leveraged an internal South Korean intelligence briefing in a spear phishing campaign
A software supply chain attack targeting Nx marks the first known case where attackers have leveraged developer AI assistants, according to StepSecurity
Use privacy settings across social media platforms to manage your digital footprint.
Recorded Future highlighted the vast capabilities of state actors to rapidly weaponize newly disclosed vulnerabilities for geopolitical purposes
The credit rating giant revealed that the breach, which occurred on July 28, was caused by unauthorized access to a third-party application
L'Ordine dei Giornalisti di Roma e del Lazio a été victime d'une attaque informatique qui pourrait avoir compromis les données personnelles de milliers de professionnels, un collettif de pirates informatiques de l'Est de l'Europe a revendiqué l'attaque et a exigé un ransom, mais l'Ordine refuse de p...
La ville de Poitiers et Grand-Poitiers ont été victimes d'une importante cyberattaque depuis le 29 août, touchant leurs services informatiques et rendant les services en ligne inaccessibles. La situation est désormais stabilisée, mais le retour à la normale prendra du temps. Les services concernés t...
Part of my default test cases for coding agents is to check how MCP integration looks like, especially if the agent can be configured to allow setting fine-grained controls for tools.
Sometimes there are basic security controls missing.
Especially when running an agent on your local computer. Stakes...
Barnhart Group, Inc. experienced a network disruption that led to unauthorized access to certain information stored on their network between August 27, 2025, and August 29, 2025. A cyberattack was claimed by Akira on November 14.
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information.
Fake IT support lures are being used to trick employees into installing remote‑access tools via Microsoft Teams
Salt Typhoon’s primary Dutch targets were small internet service providers and hosting providers
Highlights: Introduction While Microsoft Windows has steadily strengthened its security model—through features like Protected Processes (PP/PPL) and enhanced driver verification—threat actors have adapted by shifting their tactics to exploit lower-level weaknesses that bypass these protections witho...
Visual Studio Code extensions have been identified exploiting a loophole that allows reuse of names from removed packages
Enterprise security teams are under more pressure than ever to secure sprawling application estates, without slowing down delivery. That's why, over the first half of 2025, we've delivered some of our