> TODAY'S SUMMARY (88 articles)
Today's cybersecurity news highlights significant threats and trends. ASOS customers were targeted in a data breach where hackers stole personal details and shopping searches, prompting warnings about potential phishing attempts. In law enforcement, the FBI arrested members of the ShinyHunters group while also disrupting tools linked to the Flax Typhoon, a Chinese state-sponsored hacking group. Meanwhile, ransomware continues to pose a major risk, with new arrests and a trial involving a ransomware consultant accused of fraud. Citrix has issued critical patches for vulnerabilities in its NetScaler products, while researchers reported on the exploitation of flaws in AhsayCBS software. Lastly, a $10 million bounty has been offered for a Chinese hacker linked to a significant Microsoft Exchange Server attack, underscoring ongoing geopolitical cyber tensions.
|
// AI-powered summary generated at 16:00
Interpol-coordinated Operation Secure led to 32 arrests, including the suspected ringleader of a cybercriminal organization
An ISC2 study found that 90% of security hiring managers would consider entry-level candidates with only previous IT work experience
As attackers' tactics change, so must network defenders'.
The products affected by the issues are part of the Salesforce OmniStudio suite, including FlexCards and Data Mappers
Malwarebytes claims 44% of mobile users are exposed to scams every day
Un ataque cibernético ha afectado al Gobierno Regional de La AraucanÃa, lo que ha llevado a la anunciación de una investigación interna. El ataque se produjo el miércoles 11 de junio de 2025. La región de La AraucanÃa se encuentra en Chile.
Microsoft has patched two zero days this month, one of which is being exploited in the wild
Le bureau du procureur de circuit judiciaire d'Ogeechee a été victime d'une attaque informatique, mais grâce à un contrat récemment élargi avec Georgia Technologies, l'attaque a été identifiée et stoppée, évitant ainsi une perte de données catastrophique. Le bureau sera fermé pendant cinq jours pour...
Deux hôpitaux de Delhi ont été victimes d'une attaque informatique, les serveurs de Parmanand Multi-Superspeciality Hospital et NKS Superspeciality Hospital ont été touchés. La police de Delhi a ouvert une enquête pour retracer les auteurs de l'attaque. Les experts techniques sont impliqués pour ide...
Android Enterprise has introduced features for mobile security, device management and user productivity in its latest update
Deux hôpitaux de Delhi ont été victimes d'une attaque informatique, les serveurs de Parmanand Multi-Superspeciality Hospital et NKS Superspeciality Hospital ont été touchés. La police de Delhi a ouvert une enquête pour retracer les auteurs de l'attaque. Les experts techniques sont impliqués pour ide...
Radford City Schools a été victime d'une attaque cybernétique, mais les systèmes de sécurité restent opérationnels. L'école travaille avec des experts en cybersécurité et les forces de l'ordre pour enquêter sur l'incident. Les détails sur les données personnelles des élèves ou du personnel exposées...
A ransomware attack on Mastery Schools, Philadelphia, has compromised personal information of 37,031 individuals, exposing sensitive data
Hartshorne Plunkard Architecture LLC suffered a data security incident that potentially involved personal information, including names, Social Security numbers, driver's licenses, and financial information. The incident occurred on June 11 and 12, 2025, and was discovered on June 11, 2025. The attac...
The financial sector was the industry most targeted by distributed denial-of-service (DDoS) attacks in 2024, with a peak in October
In October 2023, we audited Silence Laboratories’ DKLs23 threshold signature scheme (TSS) library—one of the first production implementations of this then-novel protocol that uses oblivious transfer (OT) instead of traditional Paillier cryptography. Our review uncovered serious flaws that could enab...
SentinelOne revealed details of two new intrusion attempts by China-nexus actors
UNFI says it is investigating unauthorized network activity, and that some operations are affected
When it comes to open source intelligence (OSINT), LinkedIn is a treasure trove of information. With millions of professionals voluntarily sharing details about their careers, connections, personal achievements, or keeping up to date with what is happening in their professional sphere, the famous ne...
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] in FortiOS and FortiProxy may allow an authenticated attacker to elevate their privileges via triggering a malicious Webhook action in the Automation Stitch component. Revised on 2025-09-15 00:00:00