Cybersecurity News Aggregator RSS

Last updated: 6/28/2025, 3:46:30 AM

Dark Reading

Top Apple, Google VPN Apps May Help China Spy on Users

June 27, 2025 - 8:50 PM

Apple and Google espouse strong values about data privacy, but they allow programs from a Big Brother state to thrive on their app stores, researchers allege....

ZDNet Security

Cloudflare blocks largest DDoS attack - here's how to protect yourself

June 27, 2025 - 8:23 PM

But, even bigger attacks are on their way. Here's what you can do to slow them down and hopefully stop them in their tracks....

Dark Reading

'CitrixBleed 2' Shows Signs of Active Exploitation

June 27, 2025 - 6:50 PM

If exploited, the critical vulnerability allows attackers to maintain access for longer periods of time than the original CitrixBleed flaw, all while remaining undetected....

Bleeping Computer

Scattered Spider hackers shift focus to aviation, transportation firms

June 27, 2025 - 6:20 PM

Hackers associated with Scattered Spider tactics have expanded their targeting to the aviation and transportation industries after previously attacking insurance and retail sectors [...]...

ZDNet Security

Anthropic has a plan to combat AI-triggered job losses predicted by its CEO

June 27, 2025 - 6:13 PM

The program, which includes research grants and public forums, follows its dire predictions about widespread job losses induced by AI....

ZDNet Security

How to turn off ACR on your TV (and why it make such a big difference)

June 27, 2025 - 5:12 PM

Smarter TV operating systems make things more convenient - but they also come with new privacy risks, especially when it comes to automatic content recognition (ACR)....

Dark Reading

Scattered Spider Taps CFO Credentials in 'Scorched Earth' Attack

June 27, 2025 - 5:11 PM

In a recent intrusion, the notorious cybercriminal collective accessed CyberArk vaults and obtained more 1,400 secrets, subverted Azure, VMware, and Snowflake environments, and for the first known tim...

ZDNet Security

How to turn on Android's Private DNS mode - and why turning it off is a big mistake

June 27, 2025 - 5:10 PM

Unencrypted DNS requests can reveal your browsing habits, but Android's Private DNS Mode helps keep that info hidden. Here's how to turn it on....

The Hacker News

Over 1,000 SOHO Devices Hacked in China-linked LapDogs Cyber Espionage Campaign

June 27, 2025 - 3:58 PM

Threat hunters have discovered a network of more than 1,000 compromised small office and home office (SOHO) devices that have been used to facilitate a prolonged cyber espionage infrastructure campaig...

Bleeping Computer

Russia’s throttling of Cloudflare makes sites inaccessible

June 27, 2025 - 3:47 PM

Starting June 9, 2025, Russian internet service providers (ISPs) have begun throttling access to websites and services protected by Cloudflare, an American internet giant. [...]...

Dark Reading

Hackers Make Hay? Smart Tractors Vulnerable to Full Takeover

June 27, 2025 - 3:33 PM

Hackers can spy on tens of thousands of connected tractors in the latest IoT threat, and brick them too, thanks to poor security in an aftermarket steering system....

ZDNet Security

Is classic Outlook crashing when you open or start an email? There's now a fix for that

June 27, 2025 - 2:34 PM

A fix from Microsoft is available now. Here's how to get it....

Bleeping Computer

Citrix Bleed 2 flaw now believed to be exploited in attacks

June 27, 2025 - 2:18 PM

A critical NetScaler ADC and Gateway vulnerability dubbed "Citrix Bleed 2" (CVE-2025-5777) is now likely exploited in attacks, according to cybersecurity firm ReliaQuest, seeing an increase in suspici...

Dark Reading

Vulnerability Debt: How Do You Put a Price on What to Fix?

June 27, 2025 - 2:00 PM

Putting a vulnerability debt figure together involves work, but having vulnerability debt figures lets you measure real-world values against your overall security posture....

The Hacker News

PUBLOAD and Pubshell Malware Used in Mustang Panda's Tibet-Specific Attack

June 27, 2025 - 1:25 PM

A China-linked threat actor known as Mustang Panda has been attributed to a new cyber espionage campaign directed against the Tibetan community. The spear-phishing attacks leveraged topics related to ...

Dark Reading

US Falling Behind China in Exploit Production

June 27, 2025 - 1:00 PM

Cyber operations have become critical to national security, but the United States has fallen behind in one significant area — exploit production — while China has built up a significant lead....

The Hacker News

Business Case for Agentic AI SOC Analysts

June 27, 2025 - 11:00 AM

Security operations centers (SOCs) are under pressure from both sides: threats are growing more complex and frequent, while security budgets are no longer keeping pace. Today’s security leaders are ex...

The Hacker News

Chinese Group Silver Fox Uses Fake Websites to Deliver Sainbox RAT and Hidden Rootkit

June 27, 2025 - 10:25 AM

A new campaign has been observed leveraging fake websites advertising popular software such as WPS Office, Sogou, and DeepSeek to deliver Sainbox RAT and the open-source Hidden rootkit. The activity h...

Bleeping Computer

Retail giant Ahold Delhaize says data breach affects 2.2 million people

June 27, 2025 - 9:12 AM

Ahold Delhaize, one of the world's largest food retail chains, is notifying over 2.2 million individuals that their personal, financial, and health information was stolen in a November ransomware atta...

ZDNet Security

Your Android phone is getting a big security upgrade for free - here's what's new

June 27, 2025 - 8:45 AM

Google says its latest security features are designed to block scam calls and texts, shady apps, and even phone theft. Here's how they work....

The Hacker News

MOVEit Transfer Faces Increased Threats as Scanning Surges and CVE Flaws Are Targeted

June 27, 2025 - 7:43 AM

Threat intelligence firm GreyNoise is warning of a "notable surge" in scanning activity targeting Progress MOVEit Transfer systems starting May 27, 2025—suggesting that attackers may be preparing for ...

Bleeping Computer

Windows 11 KB5060829 update released with 38 new changes, fixes

June 27, 2025 - 7:28 AM

​​Microsoft has released the KB5060829 preview cumulative update for Windows 11 24H2, which includes 38 changes, including improvements to the taskbar and a new PC-to-PC migration experience. [...]...

The Hacker News

OneClik Malware Targets Energy Sector Using Microsoft ClickOnce and Golang Backdoors

June 27, 2025 - 6:31 AM

Cybersecurity researchers have detailed a new campaign dubbed OneClik that leverages Microsoft's ClickOnce software deployment technology and bespoke Golang backdoors to compromise organizations withi...

Bleeping Computer

Whole Foods supplier UNFI restores core systems after cyberattack

June 27, 2025 - 6:21 AM

American grocery wholesale giant United Natural Foods (UNFI) reports that it has restored its core systems and brought online the electronic ordering and invoicing systems affected by a cyberattack. [...

Dark Reading

'Cyber Fattah' Hacktivist Group Leaks Saudi Games Data

June 27, 2025 - 6:00 AM

As tensions in the Middle East rise, hacktivist groups are coming out of the woodwork with their own agendas, leading to notable shifts in the hacktivist threat landscape....

Bleeping Computer

Hawaiian Airlines discloses cyberattack, flights not affected

June 27, 2025 - 5:37 AM

Hawaiian Airlines, the tenth-largest commercial airline in the United States, is investigating a cyberattack that has disrupted access to some of its systems. [...]...

Dark Reading

'IntelBroker' Suspect Arrested, Charged in High-Profile Breaches

June 26, 2025 - 8:59 PM

A British national arrested earlier this year in France was charged by the US Department of Justice in connection with a string of major cyberattacks....

Bleeping Computer

FTC approves $126 million in Fortnite refunds over ‘dark patterns’

June 26, 2025 - 8:27 PM

The Federal Trade Commission (FTC) has approved $126,000,000 in refunds to be sent to 969,173 Fortnite players as part of a settlement over allegations that Epic Games tricked users into making unwant...

Bleeping Computer

Brother printer bug in 689 models exposes default admin passwords

June 26, 2025 - 6:10 PM

A total of 689 printer models from Brother, along with 53 other models from Fujifilm, Toshiba, and Konica Minolta, come with a default administrator password that remote attackers can generate. Even w...

The Hacker News

Critical Open VSX Registry Flaw Exposes Millions of Developers to Supply Chain Attacks

June 26, 2025 - 4:46 PM

Cybersecurity researchers have disclosed a critical vulnerability in the Open VSX Registry ("open-vsx[.]org") that, if successfully exploited, could have enabled attackers to take control of the entir...