> TODAY'S SUMMARY (51 articles)
Today's cybersecurity news highlights several significant threats and trends. The FBI has issued warnings about ongoing FortiBleed attacks, where attackers can lock organizations out of their own Fortinet firewalls, indicating a serious vulnerability for admins. In AI developments, Anthropic's new model is reportedly better at identifying vulnerabilities, while a Chinese hacker successfully utilized AI tools to breach South Korean banks. Additionally, there has been a rise in sophisticated phishing kits that include advanced session management features, targeting banking and government sectors across multiple regions. A critical vulnerability in Atlassian products is currently being exploited, and a recent ransomware recovery scheme has revealed fraudulent practices, underscoring the ongoing challenges in cybersecurity integrity.
|
// AI-powered summary generated at 12:00
LoveSac suffered a data breach between February 12, 2025, and March 3, 2025, where an unauthorized actor accessed certain systems and copied files containing name and Social Security number information. Although there is no evidence of identity theft or fraud, LoveSac is offering 24 months of compli...
Montgomery Little & Soran, PC experienced a data security incident that may have included personal information. An unknown actor potentially acquired certain files from their network. The attack was claimed by Weyhro on March 25th..
DragonForce ransomware attacks Saudi firms stealing 6TB data, escalating cyber threats in real estate
Winos 4.0 malware uses phishing emails to target organizations in Taiwan, Fortinet experts warn
With AI's pattern recognition capabilities well-established, Mr. Schölkopf's talk shifts the focus to a pressing question: what will be the next great leap for AI?
Veracode found a 47% increase in the average time taken to patch software vulnerabilities, driven by growing reliance on third-party code
In its 2025 Global Threat Report, CrowdStrike observed a significant escalation in Chinese cyber espionage activities
La FinTech française Harvest, qui compte plus de 4600 sociétés clientes, a été victime d'une cyberattaque par ransomware le 27 février dernier, rendant son site web et ses services inaccessibles. L'entreprise n'a pas encore communiqué officiellement sur l'incident, mais les données établies sont ind...
OpenSSF has released new baseline security best practices to improve open source software quality
FBI confirms North Korea’s Lazarus Group responsible for Bybit crypto heist
La ville d'Orangeville a été victime d'une cyberattaque et a pris des mesures immédiates pour protéger les informations et limiter les risques. Les experts en cybersécurité et les autorités locales collaborent pour comprendre l'ampleur de l'incident. La ville s'engage à maintenir la transparence et...
Scott & Kraus, LLC experienced an IT outage on February 27, 2025, which led to unauthorized access to their network and potential data breach. The breach may have involved personal information, including names and other details. A cyberattack against Scott & Kraus was claimed by Kraken on June 28.
99% of organizations report API-related security issues, highlighting risks from API growth
DISA Global Solutions confirms data breach affecting 3.3M people, exposing sensitive personal info
I first deployed my Pi-hole back in 2018 and ever since then, I've never looked back! Pi-hole have just dropped a pretty major update and, of course, I wanted to get HTTPS up and running on the Web UI like I had before. Pi-hole v6I won'
Meredith Whittaker, Signal's CEO, has threatened to pull the company out of Sweden if a proposed government bill requiring encryption backdoors becomes law
HaveIBeenPwned has added over 500 million new passwords and email addresses lifted via infostealers
Ransomware payments trending down, the cyber-resilience gap facing SMBs, and APT groups embracing generative AI – it's a wrap on another month filled with impactful security news
IVF clinic Genea has confirmed that stolen patient data has been published online, with the Termite ransomware group appearing to be the perpetrators
Europe is hit hard as geopolitics drives increase in state-backed APT and hacktivist activity