> TODAY'S SUMMARY (44 articles)
In Q3 2026, ransomware attacks reached a record high of 2,627, particularly impacting critical sectors like finance and healthcare. Citrix has issued urgent patches for a critical NetScaler vulnerability (CVE-2026-107406) that could allow remote code execution. Meanwhile, hackers hijacked multiple country code top-level domains (ccTLDs) linked to Google, raising concerns over domain security. An update on the ASOS breach reveals that customer data, including shopping habits, has been compromised, increasing phishing risks. The FBI has disrupted operations of Chinese state-sponsored hacking tools, while new vulnerabilities in AhsayCBS are being actively exploited. Additionally, the rise of pre-installed malware on low-cost Android devices highlights ongoing threats in mobile security.
|
// AI-powered summary generated at 12:00
L'attaque n'a pas été revendiquée, mais l'enseigne Qilin divulgue des données présentées comme issues des systèmes d'Alten Sakai.
Patron Insurance Services a subi une violation de données en mai 2025, lorsqu'un groupe de ransomware a accédé à des informations sensibles sur ses clients. L'attaque a été revendiquée par Akira, le 12 juin.
Android Enterprise introduced Device Trust to enhance mobile security on Android devices
Tufton Capital Management suffered a data breach after an unauthorized third party accessed a portion of their computer network from May 15, 2025, to May 16, 2025. The impacted files contained personal information, which may include names. A cyberattack against Tufton Capital Management was claimed...
An unknown actor gained unauthorized access to 54 Below's network environment on May 15, 2025, potentially accessing and acquiring certain files containing individuals' personal information. The incident was discovered on May 15, 2025, and a comprehensive review of the affected data concluded on Apr...
CISA paused plans to overhaul its advisory system after backlash from the infosec community
Fortinet and Ivanti published advisories on the same day revealing that attackers are exploiting new zero days, one of which is rated critical
This post will examine the cryptography behind passkeys, the guarantees they do or do not give, and interesting cryptographic things you can do with them, such as generating cryptographic keys and storing certificates.
While appearing unsophisticated on the surface, Chihuahua Stealer uses advanced methods
Law enforcers from multiple countries team up to dismantle a multimillion-euro fraud gang
Over the past year, we’ve been hard at work making Burp Suite Professional faster, smarter, and more powerful than ever before. From the launch of Burp AI to major performance upgrades, there's never
Microsoft has patched seven zero-day bugs, five of which were exploited in the wild
[Mise à jour du 15 mai 2025] Une preuve de concept est publiquement disponible sur Internet. [Publication initiale] Le 13 mai 2025, Ivanti a publié deux avis de sécurité concernant les vulnérabilités CVE-2025-4427 et CVE-2025-4428. L'utilisation combinée de ces deux vulnérabilités permet...
Le district scolaire de Central Point 6 a subi une faille de sécurité qui a touché ses systèmes numériques, les experts en cybersécurité et les forces de l'ordre enquêtent sur l'incident. Le district a activé des protocoles de cybersécurité et a isolé les systèmes touchés pour prévenir d'autres prob...
Une attaque informatique a touché le comté de Morgan, en Alabama, laissant plusieurs systèmes hors service pendant des jours. L'attaque a affecté la liste des détenus et les mandats. Les autorités du comté de Morgan continueront à publier les arrestations quotidiennes jusqu'à ce que les systèmes soi...
A single flip of a settings button enables a host of defenses against hacking.
Cellcom a subi une attaque cyber qui a causé une panne de service, mais aucune information personnelle des clients n'a été compromise. L'entreprise travaille à restaurer le service, qui est actuellement limité aux appels et messages texte entre les clients Cellcom. Le CEO de Cellcom a présenté ses e...
Un entreprise de Hagen a été victime d'une attaque informatique, mais les données des clients n'ont pas été compromises. L'entreprise n'a pas reçu de demande de rançon et les systèmes IT sont actuellement inaccessibles. L'incident est en cours d'investigation.
Posted by Dave Kleidermacher, VP Engineering, Android Security and Privacy
Android’s intelligent protections keep you safe from everyday dangers. Our dedication to your security is validated by security experts, who consistently rank top Android devices highest in security, and score Android smar...
An unauthorized third-party accessed TransUnion's network environment, potentially exposing personal information of approximately 1781 Rhode Island residents. The incident occurred on or about May 14, 2025, and was discovered on or about May 14, 2025. The attack was claimed by Medusa on June 1st.