The rapid growth of mobile applications has created opportunities for threat actors to exploit users, as seen in the emergence of FireScam malware targeting Android devices, cybersecurity researchers at Cyfirma report.

Read More
1 min read

SquareX, a pioneer in Browser Detection and Response (BDR) solutions, has issued a warning about OAuth-based phishing attacks targeting Chrome extension developers, exposing users to session hijacking and data theft.

Read More
1 min read

Cybercriminals who hacked Rhode Island’s RIBridges system, which supports health and benefits programs, have released stolen data on the dark web, prompting the state to encourage residents to protect their personal information.

Read More
1 min read

A new cyberattack technique called “DoubleClickjacking” has been discovered, posing significant risks to internet security by bypassing traditional clickjacking protections.

Read More
1 min read

Chinese hackers accessed U.S. Treasury Department workstations and unclassified documents after exploiting a vulnerability in a cloud-based service operated by BeyondTrust, which supports technical operations for the department.

Read More
1 min read

Volkswagen inadvertently exposed personal information of 800,000 electric vehicle owners, including sensitive GPS data, due to a system misconfiguration in its software subsidiary Cariad.

Read More
1 min read

FortiGuard Labs has observed an increase in activity from two botnets, FICORA and CAPSAICIN, during late 2024.

Read More
1 min read

Japan Airlines (JAL) experienced a cyberattack on Thursday that caused delays to 24 domestic flights but posed no threat to flight safety.

Read More
1 min read

American Addiction Centers (AAC) has disclosed a data breach that compromised the personal information of 422,424 individuals.

Read More
1 min read

On December 23, 2024, CloudSEK's TRIAD team revealed critical security vulnerabilities in Postman Workspaces, with over 30,000 publicly accessible workspaces leaking sensitive data, such as API keys, access tokens, and administrator credentials.

Read More
1 min read

Ascension Health is notifying approximately 5.6 million individuals of a ransomware attack in May 2024 that compromised their personal, medical, and payment data. The attack occurred on May 8, causing significant service disruptions that led hospitals to revert to downtime procedures and divert emergency services.

Read More
1 min read

McDonald’s India patched critical API vulnerabilities in its McDelivery system that could have enabled free orders, data theft, and driver information leaks.

Read More
1 min read