> TODAY'S SUMMARY (51 articles)
Today's cybersecurity news highlights several significant threats and trends. The FBI has issued warnings about ongoing FortiBleed attacks, where attackers can lock organizations out of their own Fortinet firewalls, indicating a serious vulnerability for admins. In AI developments, Anthropic's new model is reportedly better at identifying vulnerabilities, while a Chinese hacker successfully utilized AI tools to breach South Korean banks. Additionally, there has been a rise in sophisticated phishing kits that include advanced session management features, targeting banking and government sectors across multiple regions. A critical vulnerability in Atlassian products is currently being exploited, and a recent ransomware recovery scheme has revealed fraudulent practices, underscoring the ongoing challenges in cybersecurity integrity.
|
// AI-powered summary generated at 12:00
Chinese threat actor Salt Typhoon used JumbledPath, a custom-built utility, to gain access to a remote Cisco device, said the network provider
Health Net Federal Services has agreed to pay over $11m over alleged false cybersecurity reporting
We developed a simple CodeQL query to find denial-of-service (DoS) vulnerabilities in several high-profile Java projects.
BlackBasta’s internal chatlogs are “highly useful from a threat intelligence perspective,” said Prodaft, the firm that revealed the leak
Microsoft has developed the first ever quantum chip, shortening the timeframe for when quantum computers will break exiting encryption
The $1.5B Bybit Hack demonstrates how the Era of Operational Security Failures has arrived, and most cryptocurrency companies are not prepared for its implications.
La Mairie a été victime d'une cyberattaque et a mis en place une cellule de crise, déposé plainte auprès de la Gendarmerie et sollicité des entreprises spécialisées en cybersécurité pour évaluer et remédier à la situation. Les services de la Mairie sont perturbés, avec des difficultés d'accès à cert...
La mairie de Berson, en Gironde, a été victime d'une cyberattaque le 21 février, entraînant la perte d'accès à ses données, y compris ses sauvegardes en ligne, et une demande de rançon. Le maire suspecte l'intervention de hackeurs russes et a porté plainte à la gendarmerie de Blaye. Les services de...
Fake job ads target freelance developers, spreading malware via GitHub
La Banque de Papouasie-Nouvelle-Guinée (BPNG) a réussi à contenir une récente cyberattaque, sans impact sur les données financières ou les opérations bancaires. L'équipe de cybersécurité de la banque a détecté une activité réseau anormale le 21 février dans un environnement de test isolé, et a résol...
Christopherson Business Travel (CBT) a subi une faille de sécurité qui a compromis des informations de carte de crédit. Les informations compromises incluent les noms, les numéros de carte de crédit et les dates d'expiration. CBT a mis en place des mesures de sécurité renforcées pour prévenir de fut...
A survey by IANS and Artico found significant regional variation in cybersecurity salary levels across North America
Mengel, Metzger, Ba rr & Co., LLP suffered a cyberattack on February 21, 2025, which may have impacted personally identifiable information (PII) of individuals and entities. The incident was discovered on May 19, 2025. The organization has not found any evidence of PII misuse.
ENCON Heating & Air Conditioning experienced a security incident resulting in unauthorized access to some of their computer systems. The breach occurred between February 21 and February 24, 2025, and affected HR files stored locally on their network. The company has not received any reports of perso...
Mobile phishing attacks surged in 2024, with 16% of all incidents occurring in the US, according to a new Zimperium report
A North Korea-aligned activity cluster tracked by ESET as DeceptiveDevelopment drains victims' crypto wallets and steals their login details from web browsers and password managers
Kela researchers 330 million compromised credentials to infostealer activity on over four million machines in 2024
Palo Alto Networks has observed exploit attempts chaining three vulnerabilities in its PAN-OS firewall appliances
ESET researchers analyzed a campaign delivering malware bundled with job interview challenges
CISA and the FBI have released a joint advisory detailing the activity of China’s Ghost ransomware