6/27-29/2025

NATO Members Aim for Spending 5% of GDP on Defense, With 1.5% Eligible for Cyber

U.S. Falling Behind China in Exploit Production

How Vulnerable Is Critical Infrastructure to Cyberattack in the U.S.?

Canada Orders China’s Hikvision to Close Canadian Operations

Chinese Group Silver Fox Uses Fake Websites to Deliver Sainbox RAT and Hidden Rootkit

PUBLOAD and Pubshell Malware Used in Mustang Panda’s Tibet-Specific Attack

FBI Warns of Scattered Spider’s Expanding Attacks on Airlines Using Social Engineering

Aviation, Transportation Firms

Update: Hawaiian Airlines Cyberattack Has Marks of Scattered Spider
Retail Giant Ahold Delhaize, Parent of Food Lion, Stop & Shop, Giant Food, and Hannaford, Says Data Breach Affects 2.2 Million People

Whole Foods Supplier UNFI Restores Core Systems After Cyberattack

GIFTEDCROOK Malware Evolves: From Browser Stealer to Intelligence-Gathering Tool

MOVEit Transfer Systems Face Fresh Attack Risk Following Scanning Activity Surge

Bluetooth Flaws Could Let Hackers Spy Through Your Microphone

Citrix Bleed 2 Flaw Now Believed to Be Exploited in Attacks

Let’s Encrypt Ends Certificate Expiry Emails to Cut Costs, Boost Privacy

Cloudflare Open-Sources Orange Meets With End-To-End Encryption

New York Orders Local Governments to Start Reporting Cyberattacks

6/26/2025

When Iran’s Supreme Leader Emerges From Hiding He Will Find a Very Different Nation

Ayatollah Khamenei Says Iran ‘Delivered a Heavy Slap to America’s Face’; Claims Victory Over ‘Zionist’ Israel

Pentagon Chief: Iran Strike Was a ‘Historically Successful Attack’

Iranian APT35 Hackers Targeting Israeli Tech Experts with AI-Powered Phishing Attacks

Scam Compounds Labeled a ‘Living Nightmare’ as Cambodian Government Accused of Turning a Blind Eye

FBI Used Bitcoin Wallet Records to Peg Notorious IntelBroker as UK National

Missouri Man Pleads Guilty to Hacking Networks to Pitch Security Services

Ex-Student Charged Over Hacking University for Cheap Parking, Data Breaches

FTC Approves $126 Million in Fortnite Refunds Over ‘Dark Patterns’

NSA’s Patrick Ware Takes Over as Top Civilian at U.S. Cyber Command
Hawaiian Airlines Hit by Cyber Attack

Microsoft 365 ‘Direct Send’ Abused to Send Phishing as Internal Users

FBI Warning for Phone Users to Delete Certain Messages Immediately Even if Unopened – You Risk Accounts Being Drained

‘Cyber Plague’: Experts Warn of Growing Infostealer Threat After Billions of Login Details Exposed

ClickFix Attacks Surge 517% in 2025

Hundreds of MCP Servers at Risk of RCE and Data Leaks

Critical RCE Flaws in Cisco ISE and ISE-PIC Allow Unauthenticated Attackers to Gain Root Access

Critical Open VSX Registry Flaw Exposes Millions of Developers to Supply Chain Attacks

CISA Adds 3 Flaws to KEV Catalog, Impacting AMI MegaRAC, D-Link, Fortinet

Windows Is Getting Rid of the Blue Screen of Death After 40 Years

How Geopolitical Tensions Are Shaping Cyber Warfare

6/25/2025

Trump Says NATO’s New 5% Defence Spending Pledge a ‘Big Win’

North Korea-linked Supply Chain Attack Targets Developers with 35 Malicious npm Packages

NSA and CISA Urge Adoption of Memory Safe Languages for Safety

Half of Customer Signups Are Now Fraudulent

U.S. Exchanges, SEC in Talks to Ease Public Company Regulations

British Hacker ‘IntelBroker’ Charged with $25M in Cybercrime Damages

Ransomware Attack Contributed to Patient’s Death, Says Britain’s NHS

French Cybercrime Police Arrest Five Suspected BreachForums Admins

PACER Electronic Filing System Under Attack by Hackers, Federal Judge Warns Lawmakers

Google Rolls Out Text-To-Image Model Imagen 4 for Free
Data Theft Fears After Cyber Attack on Glasgow City Council

Hackers Use Open-Source Offensive Cyber Tools to Attack Financial Businesses in Africa

Hackers Turn ScreenConnect Into Malware Using Authenticode Stuffing

SAP GUI Input History Found Vulnerable to Weak Encryption

Millions of Brother Printers Hit by Critical, Unpatchable Bug

Hackers Abuse Microsoft ClickOnce and AWS Services for Stealthy Attacks

Microsoft nOAuth Flaw Still Exposes SaaS Apps Two Years After Discovery

Citrix Releases Emergency Patches for Actively Exploited CVE-2025-6543 in NetScaler ADC

WinRAR Patches Bug Letting Malware Launch From Extracted Archives

6/24/2025

Trump Says Iran-Israel Ceasefire in Effect After Accusing Both Sides of Violating It

U.S. Strikes Did Not Destroy Iran’s Nuclear Programme, Intelligence Report Says

Trump’s Iran Attack Spurs Concerns of Retaliation in the U.S.: ICE Arrests 11 Iranian Nationals

Iran’s Cyber Forces Have Many Ways to Attack U.S., Experts Warn

FBI Cyber Leader: U.S. Can’t Forget About China’s ‘Typhoon’ Groups Amid Mideast Conflict

China-Nexus ‘LapDogs’ Network Thrives on Backdoored SOHO Devices

Insurers ‘Under Siege’ by Notorious Hacking Group Scattered Spider

Cyber Intel Pros and Hobbyists Can Now Report Threats Anonymously

Researchers Find Way to Shut Down Cryptominer Campaigns Using Bad Shares and XMRogue

New U.S. Visa Rule Requires Applicants to Set Social Media Account Privacy to Public
Columbia University Hit by Possible ‘Cyberattack’ as It Outage Impacts Key Student Services

Leak of Data Belonging to 7.4 Million Paraguayans Traced Back to Infostealers

Hackers Target Over 70 Microsoft Exchange Servers to Steal Credentials via Keyloggers

Trezor’s Support Platform Abused in Crypto Theft Phishing Attacks

Researchers Say Cybercriminals are Using Jailbroken AI Tools from Mistral and xAI

Malware Campaign Uses Rogue WordPress Plugin to Skim Credit Cards

SonicWall Warns of Trojanized NetExtender Stealing VPN Logins

New FileFix Attack Weaponizes Windows File Explorer for Stealthy Commands

Hackers Exploit Misconfigured Docker APIs to Mine Cryptocurrency via Tor Network

U.S. House Bans WhatsApp on Official Devices Over Security and Data Protection Issues

6/23/2025

Trump Urges Iran, Israel to Seek ‘Peace and Harmony’ After ‘Weak’ Qatar Strike

Trump Says Iran, Israel Agree to Truce

Iran Refutes Trump’s Claims of Ceasefire Deal With Israel, but Signals Readiness to End Hostilities

Cyber Fattah Leaks Data from Saudi Games in Alleged Iranian Operation

U.S. Tells Companies to Prepare for Iranian Cyberattacks

Chinese “LapDogs” ORB Network Targets U.S. and Asia

China-linked Salt Typhoon Exploits Critical Cisco Vulnerability to Target Canadian Telecom

Taiwan Is Rushing to Make Its Own Drones Before It’s Too Late

Telegram Purged Chinese Crypto Scam Markets—Then Watched as They Rebuilt

Former U.S. Army Sergeant Pleads Guilty After Amateurish Attempt at Selling Secrets to China

Revil Ransomware Members Released After Time Served on Carding Charges

A CISO’s AI Playbook
APT28 Hackers Use Signal Chats to Launch New Malware Attacks on Ukraine

Second Attack on McLaren Health Care in a Year Affects 743K People

U.S. Insurance Giant Aflac Says Customers’ Personal Data Stolen During Cyberattack

FC Barcelona’s Data Compromised in Ransomware Attack on Insurer

CoinMarketCap Briefly Hacked to Drain Crypto Wallets via Fake Web3 Popup

Steel Giant Nucor Confirms Hackers Stole Data in Recent Breach

184 Million Passwords Leaked Across Facebook, Google, More: What to Know About This Data Breach

XDigo Malware Exploits Windows LNK Flaw in Eastern European Government Attacks

SparkKitty Malware on Google Play, Apple App Store Stole Your Photos—And Crypto

Echo Chamber Jailbreak Tricks LLMs Like OpenAI and Google into Generating Harmful Content

Citrix Patches Critical Vulns in NetScaler ADC and Gateway

6/20-22/2025

U.S. Begins Moving B-2 Bombers, as Trump Weighs Attack on Iran

U.S. Strikes 3 Nuclear Sites in Iran, in Major Regional Conflict Escalation

What We Know About U.S. Strikes on Three Iranian Nuclear Sites

U.S. Strike on Iran Began With a Ruse

Iran Hacks Security Cameras to Gain Intel on Israel

Iran’s State TV Hijacked Mid-Broadcast Amid Geopolitical Tensions

How Cyber Warfare Changes the Face of Geopolitical Conflict

Russia Expert Falls Prey to Elite Hackers Disguised as U.S. Officials

Dutch Launch Operation Orange Shield to Keep NATO Summit Safe

Tonga Ministry of Health Hit With Cyberattack Affecting Website, IT Systems

Microsoft Is Blocking Google Chrome Through Its Family Safety Feature

Microsoft to Remove Legacy Drivers From Windows Update for Security Boost
Insurer Aflac Investigating Possible Data Leak After Cyberattack

Personal Data of Oxford City Council Officers Exposed

M&S and Co-op Hacks Classified as Single Cyber Event

Scattered Spider Behind Cyberattacks on M&S and Co-op, Causing Up to $592M in Damages

Bitopro Exchange Links Lazarus Hackers to $11 Million Crypto Heist

No, the 16 Billion Credentials Leak Is Not a New Data Breach

Russian Dairy Supply Disrupted by Cyberattack on Animal Certification System

Netflix, Apple, BofA Websites Hijacked With Fake Help-Desk Numbers

Cloudflare Blocks Record 7.3 Tbps DDoS Attack Against Hosting Provider

New Android Malware Surge Hits Devices via Overlays, Virtualization Fraud, and NFC Theft

WordPress Motors Theme Flaw Mass-Exploited to Hijack Admin Accounts

Meta To Introduce Full Passkey Support for Facebook on Mobiles

6/18-19/2025

Israel-Tied Predatory Sparrow Hackers Are Waging Cyberwar on Iran’s Financial System

Israeli Hacktivists Steal and Burn $90m+ from Iranian Crypo Biz

Iran Slows Internet to Prevent Cyber Attacks Amid Escalating Regional Conflict

Iran’s Internet Blackout Adds New Dangers for Civilians Amid Israeli Bombings

Finland Could Charge Russia-Linked Ship’s Officers Over Cable Breaks by ‘August at the Latest’

Argentina Uncovers Suspected Russian Spy Ring Behind Disinformation Campaigns

Russian APT29 Exploits Gmail App Passwords to Bypass 2FA in Targeted Phishing Campaign

Telecom Giant Viasat Breached by China’s Salt Typhoon Hackers

North Korean Hackers Deploy Python-Based Trojan PylangGhost Targeting Crypto

North Korean BlueNoroff Hackers Deepfake Execs in Zoom Call to Spread Mac Malware

Researchers Warn of ‘Living off AI’ Attacks After PoC Exploits Atlassian’s AI Agent Protocol

AI Now Generates Majority of Spam and Malicious Emails

Think Twice Before You Click ‘Unsubscribe’

Ransomware Group Qilin Offers Legal Counsel to Affiliates

Alleged Ryuk Initial Access Broker Extradited to the U.S.

U.S. Recovers $225 Million of Crypto Stolen in Investment Scams
Krispy Kreme Says November Data Breach Impacts Over 160,000 People

Krispy Kreme Data Breach Puts Employees at Risk of Financial Fraud

UBS Employee Data Reportedly Exposed in Third Party Attack

Asana Warns MCP AI Feature Exposed Customer Data to Other Orgs

Healthcare SaaS Firm Episource Says Data Breach Impacts 5.4 Million Patients

India’s TCS Says None of Its Systems Were Compromised in M&S Hack

Minecraft Cheaters Never Win … But They May Get Malware

Banana Squad’s Stealthy GitHub Malware Campaign Targets Devs

Water Curse Employs 76 GitHub Accounts to Deliver Multi-Stage Malware Campaign

GodFather Malware Upgraded to Hijack Legitimate Mobile Apps

ClickFix Helps Infostealers Use MHSTA for Defense Evasion

New Malware Campaign Uses Cloudflare Tunnels to Deliver RATs via Phishing Chains

Critical Linux Flaws Discovered Allowing Root Access Exploits

CISA Warns of Active Exploitation of Linux Kernel Privilege Escalation Vulnerability

BeyondTrust Warns of Pre-auth RCE in Remote Support Software

Microsoft Unveils New Security Defaults for Windows 365 Cloud PCs

DuckDuckGo Beefs up Scam Defense to Block Fake Stores, Crypto Sites

6/17/2025

Israel-Iran Air War Enters Sixth Day, Trump Calls for Iran’s ‘Unconditional Surrender’

Suspected Israeli Hackers Claim to Destroy Data at Iran’s Bank Sepah

Pro-Cambodian Hacktivists Launch Attacks on Thai Government Sites Amid Border Dispute

Taiwan Hit by Sophisticated Phishing Campaign

Silver Fox APT Targets Taiwan with Complex Gh0stCringe and HoldingHands RAT Malware

Viasat Identified as Victim in Sweeping Phone Hack Tied to China

Minnesota Shooting Suspect Allegedly Used Data Broker Sites to Find Targets’ Addresses

Paddle Settles for $5 Million Over Facilitating Tech Support Scams

UK ICO Fines 23andMe £2.3m for Data Protection Failings

Microsoft Promises to Keep European Cloud Data in Europe

Italy’s Leonardo Buys a European Cybersecurity Company

Operation Endgame: Do Takedowns and Arrests Matter?
Scania Confirms Insurance Claim Data Breach in Extortion Attempt

Hacker Steals 1 Million Cock.li User Records in Webmail Data Breach

Russia Detects First SuperCard Malware Attacks Skimming Bank Data via NFC

Hacklink Marketplace Fuels Surge in Covert SEO Poisoning Attacks

Instagram ‘BMO’ Ads Use AI Deepfakes to Scam Banking Customers

New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS Attacks

TP-Link Router Flaw CVE-2023-33538 Under Active Exploit, CISA Issues Immediate Alert

New Veeam RCE Flaw Lets Domain Users Hack Backup Servers

Google Chrome Zero-Day CVE-2025-2783 Exploited by TaxOff to Deploy Trinper Backdoor

‘b’: Chained Flaws in Enterprise CMS Provider Sitecore Could Allow Remote Code Execution

LangSmith Bug Could Expose OpenAI Keys and User Data via Malicious Agents

6/16/2025

Israeli Startup Hub Under Missile Fire

Companies Warned On Iranian Cyberattacks

Hackers Impersonating U.S. Government Compromise Email Account of Prominent Russia Researcher

Bipartisan Bill Aims to Create CISA-HHS Liaison for Hospital Cyberattacks

Archetyp Market Shut Down in Europe-Wide Law Enforcement Operation

U.S. Seizes $7.74M in Crypto Tied to North Korea’s Global Fake IT Worker Network

U.S. Offering $10 Million for Info on Iranian Hackers Behind IOControl Malware

Kali Linux 2025.2 Released With 13 New Tools, Car Hacking Updates
Zoomcar Discloses Security Breach Impacting 8.4 Million Users

As Grocery Shortages Persist, UNFI Says It’s Recovering From Cyberattack

Remorseless Extortionists Claim to Have Stolen Thousands of Files From Freedman HealthCare

Scattered Spider Has Moved From Retail to Insurancee

Threat Actors Target Victims with HijackLoader and DeerStealer

ASUS Armoury Crate Bug Lets Attackers Get Windows Admin Privileges

Tenable Fixes Three High-Severity Flaws in Vulnerability Scanner Nessus

Microsoft: June Windows Server Security Updates Cause DHCP Issues

6/13-15/2025

Here Are the Top Iranian Leaders Killed in Israel’s Precision Airstrikes — Including Revolutionary Guard Leader, Gen. Hossein Salami

A Miscalculation by Iran Led to Israeli Strikes’ Extensive Toll, Officials Say

Israel-Iran Clashes Escalate, Civilians Urged to Evacuate Target Areas

700% Spike in Cyber Attacks on Israel Since Strike on Iran

Trump Vetoed Israeli Plan to Kill Iran’s Supreme Leader, U.S. Official Tells AP

‘No Kings’ Protests, Citizen-Run ICE Trackers Trigger Intelligence Warnings

Former CISA and NCSC Heads Warn Against Glamorizing Threat Actor Names

Krebs: Inside a Dark Adtech Empire Fed by Fake CAPTCHAs

Google’s $32 Billion Deal for Wiz Gets Antitrust Review

Danish Government Agency to Ditch Microsoft Software in Push for Digital Independence

Do You Trust XI With Your ‘Private’ Browsing Data? Apple, Google Stores Still Offer China-Based VPNs

CISOs Must Align Business Objectives & Cybersecurity
Cyberattack on Washington Post Strikes Journalists’ Email Accounts

WestJet Probes Cybersecurity Incident Affecting App and Internal Systems

Victoria’s Secret Recovers Critical Systems After Cyberattack

Cloudflare: Outage Not Caused by Security Incident, Data Is Safe

Government Offices in North Carolina, Georgia Disrupted by Cyberattacks

Worker Information Provided to MEMIC Indemnity Leaked in at OneGroup NY Data Breach

Over 269,000 Websites Infected with JSFireTruck JavaScript Malware in One Month

Discord Invite Link Hijacking Delivers AsyncRAT and Skuld Stealer Targeting Crypto Wallets

Anubis Ransomware Adds Wiper to Destroy Files Beyond Recovery

New TokenBreak Attack Bypasses AI Moderation with Single-Character Text Changes

Ransomware Gangs Exploit Unpatched SimpleHelp Flaws to Target Victims with Double Extortion

Over 46,000 Grafana Instances Exposed to Account Takeover Bug

6/12/2025

Graphite Spyware Used in Apple iOS Zero-Click Attacks on Journalists

Apple Fixes New iPhone Zero-Day Bug Used in Paragon Spyware Hacks

Predator Spotted in Mozambique for First Time, Another Sign of Spyware’s Availability

Belarusian Hackers Taunt Kaspersky Over Report Detailing Their Attacks

SmartAttack Uses Smartwatches to Steal Data From Air-Gapped Systems

NIST Publishes New Zero Trust Implementation Guidance

Europol Says Criminal Demand for Data is “Skyrocketing”

Microsoft Edge Now Offers Secure Password Deployment for Businesses

23andMe Privacy Ombudsman Recommends Company Obtains Consent for Sale of Customer Data
‘Major Compromise’ at NHS Temping Arm Exposed Gaping Security Holes

Ransomware Attack on Ticketing Platform Yes24 Upends South Korean Entertainment Industry

Fog Ransomware Attack Uses Unusual Mix of Legitimate and Open-Source Tools

Over 80,000 Microsoft Entra ID Accounts Targeted Using Open-Source TeamFiltration Tool

WordPress Sites Turned Weapon: How VexTrio and Affiliates Run a Global Scam Network

GitLab Patches High Severity Account Takeover, Missing Auth Issues

Trend Micro Fixes Critical Vulnerabilities in Multiple Products

Palo Alto Networks Patches Series of Vulnerabilities

The $200,000 Zoom Call

6/11/2025

Congress Introduces Bill to Strengthen Healthcare Cybersecurity

Half of Mobile Users Now Face Daily Scams

20,000 Asian IPs and Domains Dismantled in Infostealer Crackdown

Singapore Leads Multinational Operation to Shutter Scam Centers Tied to $225 Million in Thefts

How Waymo Handles Footage From Events Like the LA Immigration Riots

Cyber Startup Cyera Raises $540 Million in Series E Round

Infamous Website 4chan to Be Investigated by UK Communications Regulator
Erie Insurance Confirms Cyberattack Behind Business Disruptions

Cyber-Attack Targets Ogeechee (GA) Judicial Circuit District Attorney

Former Black Basta Members Use Microsoft Teams and Python Scripts in 2025 Attacks

295 Malicious IPs Launch Coordinated Brute-Force Attacks on Apache Tomcat Manager

SinoTrack GPS Devices Vulnerable to Remote Vehicle Control via Default Passwords

Zero-Click AI Data Leak Flaw Uncovered in Microsoft 365 Copilot

WhatsApp Moves to Join Apple’s Encryption Fight With UK Government

6/10/2025

Trump Administration Executive Order Changes Cybersecurity Policy

Stealth Falcon: CISA, Microsoft Warn of Windows Zero-Day Used in Attack on ‘Major’ Turkish Defense Org

Hundreds of Russian Devices Hit by Rare Werewolf Cryptomining Attacks

DDoS Attacks on Financial Sector Surge in Scale and Sophistication

DanaBot Malware Operators Exposed via C2 Bug Added in 2022

ConnectWise Rotating Code Signing Certificates Over Security Concerns

Microsoft Outlook to Block More Risky Attachments Used in Attacks

Apple Intelligence Is Gambling on Privacy as a Killer Feature

Airlines Don’t Want You to Know They Sold Your Flight Data to DHS

Spanish Minister Says Private Power Firms Slow to Share Information in Blackout Probe

Five Plead Guilty to Laundering $36 Million Stolen in Investment Scams

SSH Keys: The Most Powerful Credential You’re Probably Ignoring
Mastery Schools Notifies 37,031 of Major Data Breach

Ongoing Cyberattack at U.S. Grocery Distributor Giant UNFI Affecting Customer Orders

Stolen Ticketmaster Data From Snowflake Attacks Briefly for Sale Again

FIN6 Uses AWS-Hosted Fake Resumes on LinkedIn to Deliver More_eggs Malware

Rust-based Myth Stealer Malware Spread via Fake Gaming Sites Targets Chrome, Firefox Users

Researchers Uncover 20+ Configuration Risks, Including Five CVEs, in Salesforce Industry Cloud

New Secure Boot Flaw Lets Attackers Install Bootkit Malware, Patch Now

Android Enterprise Rolls Out Security and Productivity Updates

Ivanti Workspace Control Hardcoded Key Flaws Expose SQL Credentials

Adobe Releases Patch Fixing 254 Vulnerabilities, Closing High-Severity Security Gaps

Krebs: Patch Tuesday, June 2025 Edition

6/9/2025

Over 70 Organizations Across Multiple Sectors Targeted by China-Linked Cyber Espionage Group PurpleHaze

SentinelOne Shares New Details on China-Linked Breach Attempt

U.S. Infrastructure Could Crumble Under Cyberattack, Ex-NSA Advisor Warns

Paraguay President’s X Account Likely Hacked in Bitcoin Scheme

A Researcher Figured Out How to Reveal Any Phone Number Linked to a Google Account

Sam Altman Brings His Eye-Scanning Identity Verification Startup to the UK

Spyware Maker Paragon Cuts Ties With Italy After Government Refused Audit Into Hack of Journalist’s Phone

Kazakhstan Detains Over 140 for Allegedly Selling Citizens’ Data via Telegram Channels
Let Them Eat Junk: United Natural Foods, Supplier to Whole Foods, Walmart, Hit by Cyberattack

NHS Calls for 1 Million Blood Donors as UK Stocks Remain Low Following Cyberattack

Jackson Health System Announces Another 5-Year Insider Data Breach

Nearly 300,000 Crash Records Stolen From Texas Transportation Department

Sensata Technologies Says Personal Data Stolen by Ransomware Gang

New Hacker Group Uses LockBit Ransomware Variant to Target Russian Companies

PayU Plugin Flaw Allows Account Takeover on 5000 WordPress Sites

Over 84,000 Roundcube Instances Vulnerable to Actively Exploited Flaw

Next-Gen Developers Are a Cybersecurity Powder Keg

6/6-8/2025

Chinese Hackers and User Lapses Turn Smartphones Into a ‘Mobile Security Crisis’

New PathWiper Data Wiper Malware Disrupts Ukrainian Critical Infrastructure in 2025 Attack

OpenAI Takes Down ChatGPT Accounts Linked to State-Backed Hacking, Disinformation

The Pentagon Disinformation That Fueled America’s UFO Mythology

States Rebuff Proposed Federal Ban on AI Laws

Trump Administration Takes Aim at Biden and Obama Cybersecurity Rules

Cybercriminals Are Hiding Malicious Web Traffic in Plain Sight

Microsoft Helps CBI Dismantle Indian Call Centers Behind Japanese Tech Support Scam

Uncle Sam Moves to Seize $7.7m Laundered by North Korean IT Worker Ring

Hacker Arrested After Exploiting 5,000 Accounts in $4.5 Million Cryptojacking Scheme

Nigeria Jails 9 Chinese Nationals for Being Part of International Cyberfraud Syndicate

Police Arrests 20 Suspects for Distributing Child Sexual Abuse Content

Microsoft Shares Script to Restore Inetpub Folder You Shouldn’t Delete
Tax Resolution Firm Optima Tax Relief Hit by Ransomware, Data Leaked

Kettering Health Confirms Attack by Interlock Ransomware Group as Health Record System Is Restored

Scattered Spider Uses Tech Vendor Impersonation and Phishing Kits to Target Helpdesks

New Atomic macOS Stealer Campaign Exploits ClickFix to Target Apple Users

Malicious Browser Extensions Infect Over 700 Users Across Latin America Since Early 2025

Malicious npm Packages Posing as Utilities Delete Project Directories

Malware Found in npm Packages With 1 Million Weekly Downloads

New Supply Chain Malware Operation Hits npm and PyPI Ecosystems, Targeting Millions Globally

New Mirai Botnet Infect TBK DVR Devices via Command Injection Flaw

Critical Fortinet Flaws Now Exploited in Qilin Ransomware Attacks

Google’s Upcoming Gemini Kingfall Is Allegedly a Coding Beast

Enterprises Are Getting Stuck in AI Pilot Hell, Say Chatterbox Labs Execs

6/5/2025

Researchers Detail Bitter APT’s Evolving Tactics as Its Geographic Scope Expands

Iran-Linked BladedFeline Hits Iraqi and Kurdish Targets with Whisper and Spearal Malware

China Offers Cash Rewards for Hackers It Says Are Taiwanese Military

Krebs: Proxy Services Feast on Ukraine’s IP Address Exodus

What Really Happened in the Aftermath of the Lizard Squad Hacks

Ross Ulbricht Got a $31 Million Donation From a Dark Web Dealer, Crypto Tracers Suspect

What to Know About Picking a Virtual Cyber Chief

Nintendo Warns Switch 2 GameChat Users: “Your Chat Is Recorded”

Cellebrite Buys Corellium to Help Cops Bust Phone Encryption

Uncle Sam Puts $10M Bounty on RedLine Dev and Russia-Backed Cronies

ViLE Gang Members Sentenced for DEA Portal Breach, Extortion
AT&T Not Sure if New Customer Data Dump Is Déjà Vu

Old AT&T Data Leak Repackaged to Link SSNs, DOBs to 49M Phone Numbers

Evansville Based Business Anchor Industries Hit with Ransomware Attack

UK Tax Authority Reveals Scammers Stole £47 Million

FBI: BADBOX 2.0 Android Malware Infects Millions of Consumer Devices

Popular Chrome Extensions Leak API Keys, User Data via HTTP and Hardcoded Credentials

Hacker Selling Critical Roundcube Webmail Exploit as Tech Info Disclosed

Google’s Upcoming Gemini Kingfall Is Allegedly a Coding Beast

Microsoft Makes a ‘Proactive Investment’ in EU Cybersecurity Amid Bloc’s Tensions With U.S.

Trump’s National Cyber Director Nominee Grilled About His Resume, Proposed Spending Cuts

FTC Chair Implores Congress to Strengthen Children’s Online Privacy Protection Law

6/4/2025

The Race to Build Trump’s ‘Golden Dome’ Missile Defense System Is On

Ukraine Claims It Hacked Tupolev, Russia’s Strategic Warplane Maker

Microsoft Unveils Free EU Cybersecurity Program for Governments

See How Much Faster a Quantum Computer Will Crack Encryption

FBI Says Palm Springs Bombing Suspects Used AI Chat Program to Help Plan Attack

ICE Quietly Scales Back Rules for Courthouse Raids

Hacker Arrested for Breaching 5,000 Hosting Accounts to Mine Crypto

BidenCash Carding Market Domains Seized in International Operation

Cybersecurity Investor Merlin Ventures Raises Over $75 Million Debut Fund

In the AI Race With China, Don’t Forget About Security

CISA Workforce Cut by Nearly One-Third So Far
Ecopetrol Alerts About Security Violations and Possible Leak

Crims Stole 40,000 People’s Data From Our Network, Admits Publisher Lee Enterprises

Interlock Ransomware Gang Claims Responsibility for Kettering Health Hack

Google Exposes Vishing Group UNC6040 Targeting Salesforce with Fake Data Loader App

Phishing Campaign Uses Fake Booking.com Emails to Deliver Malware

FBI Warns of NFT Airdrop Scams Targeting Hedera Hashgraph Wallets

Chaos RAT Malware Targets Windows and Linux via Fake Network Tool Downloads

Widespread Campaign Targets Cybercriminals and Gamers

Play Ransomware Crims Exploit SimpleHelp Flaw in Double-Extortion Schemes

Cisco Warns of ISE and CCP Flaws with Public Exploit Code

6/3/2025

Thousands Impacted by Cyberattacks on Governments in Ohio, Oklahoma, Puerto Rico

X’s New ‘Encrypted’ Xchat Feature Seems No More Secure Than the Failure That Came Before It

Man Pleads Guilty to Swatting Spree Impacting Scores of Government Officials

Meta and Yandex Are De-anonymizing Android Users’ Web Browsing Identifiers

Germany Hands Vodafone $51 Million Fine Over Data Privacy Violations

How ‘Big Ag’ Spied on Animal Rights Activists and Pushed the FBI to Treat Them as Bioterrorists

Marriott Wins U.S. Appeals Order Striking Down Data Breach Class Action

CrowdStrike Shares Drop on Weak Revenue Guidance

Mozilla Launches New System to Detect Firefox Crypto Drainer Add-Ons
Indian Grocery Startup KiranaPro Was Hacked and Its Servers Deleted, CEO Confirms

Coinbase Breach Tied to Bribed TaskUs Support Agents in India

Android Trojan Crocodilus Now Active in 8 Countries, Targeting Banks and Crypto Wallets

Fake Docusign Pages Deliver Multi-Stage NetSupport RAT Malware

Malicious RubyGems Pose as Fastlane to Steal Telegram API Data

Critical 10-Year-Old Roundcube Webmail Bug Allows Authenticated Users Run Malicious Code

Hewlett Packard Enterprise Warns of Critical StoreOnce Auth Bypass

CISA Warns of ConnectWise ScreenConnect Bug Exploited in Attacks

Google Quietly Pushes Emergency Fix for Chrome 0-Day as Exploit Runs Wild

OpenAI is Hopeful GPT-5 Will Compete a Little More

6/2/2025

Ukrainians Smuggle Drones Hidden in Cabins on Trucks to Strike Russian Airfields

Pro-Ukraine Hacker Group Black Owl Poses ‘Major Threat’ to Russia, Kaspersky Says

North Korean Spies Want Your Jobs. Here’s What You Can Do.

‘Forest Blizzard’ vs ‘Fancy Bear’ – Cyber Companies Hope to Untangle Weird Hacker Nicknames

Top U.S. Cyber Agency Faces Staff and Funding Cuts in New Budget

Acreed Emerges as Dominant Infostealer Threat Following Lumma Takedown

‘Russian Market’ Emerges as a Go-to Shop for Stolen Credentials

Mysterious Leaker GangExposed Outs Conti Kingpins in Massive Ransomware Data Dump

AI Is Learning to Escape Human Control

Google Chrome to Distrust Chunghwa Telecom, Netlock Certificates in August

SentinelOne: Last Week’s 7-Hour Outage Caused by Software Flaw

NSO Appeals WhatsApp Decision, Says It Can’t Pay $168 Million in ‘Unlawful’ Damages
The North Face Warns Customers of April Credential Stuffing Attack

Cartier Discloses Data Breach Amid Fashion Brand Cyberattacks

MainStreet Bancshares Says Thieves Drained Customer Data Through Third Party Hole

Coinbase Breach Linked to Customer Data Leak in India, Sources Say

Malaysian Home Minister’s WhatsApp Hacked, Used to Scam Contacts

Vanta Bug Exposed Customers’ Data to Other Customers

Fake Recruiter Emails Target CFOs Using Legit NetBird Tool Across 6 Global Regions

Cryptojacking Campaign Targets DevOps Servers Including Nomad

Sophisticated Malware Campaign Targets Windows and Linux Systems

Preinstalled Apps on Ulefone, Krüger&Matz Phones Let Any App Reset Device, Steal PIN

Qualcomm Fixes 3 Zero-Days Used in Targeted Android Attacks via Adreno GPU

Implementing Secure by Design Principles for AI

5/30-6/1/2025

U.S. Government Is Investigating Messages Impersonating Trump’s Chief of Staff, Susie Wiles

Impersonator Breached Chief of Staff Susie Wiles’s Phone, Trump Says

Senators Call on Trump Admin to Reinstate Cyber Review Board for Salt Typhoon Investigation

India’s Alarm Over Chinese Spying Rocks the Surveillance Industry

Mandatory Ransomware Payment Disclosure Begins in Australia

U.S. Banks Urge SEC to Repeal Cyber Disclosure Rule

Cops in Germany Claim They’ve ID’d the Mysterious Trickbot Ransomware Kingpin

Police Takes Down AVCheck Site Used by Cybercriminals to Scan Malware

Krebs: U.S. Sanctions Cloud Provider ‘Funnull’ as Top Source of ‘Pig Butchering’ Scams

Feds Arrest DoD Techie, Claim He Dumped Top Secret Files in Park for Foreign Spies to Find
Meta Says It Disrupted Influence Operations Linked to China, Iran, Romania

China-Linked Hackers Exploit SAP and SQL Server Flaws in Attacks Across Asia and Brazil

ConnectWise Breach Linked to Nation-State Hackers

Hospitals in Maine, New Hampshire Limit Services After Cyberattack on Catholic Health Org Covenant Health

DDoS Incident Disrupts Internet for Thousands in Moscow

New EDDIESTEALER Malware Bypasses Chrome’s App-Bound Encryption to Steal Browser Data

Hackers Are Exploiting Critical Flaw in vBulletin Forum Software

Exploit Details for Max Severity Cisco iOS XE Flaw Now Public

New Linux Flaws Allow Password Hash Theft via Core Dumps in Ubuntu, RHEL, Fedora

Microsoft Authenticator Now Warns to Export Passwords Before July Cutoff