News
London councils probe cyber incident as shared IT systems knocked offline
Two London councils are scrambling for answers after declaring a cybersecurity issue that began on Monday.…
Top five cybersecurity Black Friday deals for businesses 2025
Partner Content The annual Black Friday scramble isn't just for consumers elbowing each other for discounted tellies. For IT directors and CISOs, it's become a strategic procurement window. That narrow slice of the year when security budgets suddenly stretch further, and solutions that were under consideration can finally get approved.…
Lifetime access to AI-for-evil WormGPT 4 costs just $220
Attackers don't need to trick ChatGPT or Claude Code into writing malware or stealing data. There's a whole class of LLMs built especially for the job.…
Corporate predators get more than they bargain for when their prey runs SonicWall firewalls
Routine mergers and acquisitions are giving extortionists an easy way in, with Akira affiliates reaching parent networks through compromised SonicWall gear inherited in the deal, according to ReliaQuest.…
HashJack attack shows AI browsers can be fooled with a simple ‘#’
Cato Networks says it has discovered a new attack, dubbed "HashJack," that hides malicious prompts after the "#" in legitimate URLs, tricking AI browser assistants into executing them while dodging traditional network and server-side defenses.…
Get ready for 2026, the year of AI-aided ransomware
Cybercriminals, including ransomware crews, will lean more heavily on agentic AI next year as attackers automate more of their operations, Trend Micro's researchers believe.…
Clop's Oracle EBS rampage reaches Dartmouth College
Dartmouth College has confirmed it's the latest victim of Clop's Oracle E-Business Suite (EBS) smash-and-grab.…
CISA warns spyware crews are breaking into Signal and WhatsApp accounts
CISA has warned that state-backed snoops and cyber-mercenaries are actively abusing commercial spyware to break into Signal and WhatsApp accounts, hijack devices, and quietly rummage through the phones of what the agency calls "high-value" users.…
Russian spy ship theories sink after Orkney blackout traced to wind farm fault
Cock-up beats conspiracy most of the time, but that didn't stop Orkney residents wondering if a Russian warship caused their two-hour power cut.…
ZTE, China Unicom Liaoning and Dalian Changhai Airport launch 5G-A ISAC private network to elevate low-altitude security and airport safety
Fresh ClickFix attacks use Windows Update trick-pics to steal credentials
A fresh wave of ClickFix attacks is using fake Windows update screens to trick victims into downloading infostealer malware.…
Praise Amazon for raising this service from the dead
Opinion For years, Google has seemingly indulged a corporate fetish of taking products that are beloved, then killing them. AWS has been on a different kick lately: Killing services that frankly shouldn't have seen the light of day.…
Ex-CISA officials, CISOs dispel 'hacklore,' spread cybersecurity truths
Afraid of connecting to public Wi-Fi? Terrified to turn your Bluetooth on? You may be falling for "hacklore," tall tales about cybersecurity that distract you from real dangers. Dozens of chief security officers and ex-CISA officials have launched an effort and website to dispel these myths and show you how not to get hacked for real.…
Years-old bugs in open source tool left every major cloud open to disruption
A series of "trivial-to-exploit" vulnerabilities in Fluent Bit, an open source log collection tool that runs in every major cloud and AI lab, was left open for years, giving attackers an exploit chain to completely disrupt cloud services and alter data.…
Intrusion at real estate finance biz sparks concern for big banks
Real estate finance business SitusAMC says thieves sneaked into its systems earlier this month and made off with confidential client data.…
Shai-Hulud worm returns, belches secrets to 25K GitHub repos
A self-propagating malware targeting node package managers (npm) is back for a second round, according to Wiz researchers who say that more than 25,000 developers had their secrets compromised within three days.…
FCC guts post-Salt Typhoon telco rules despite ongoing espionage risk
The Federal Communications Commission (FCC) has scrapped a set of telecom cybersecurity rules introduced after the Salt Typhoon espionage campaign, reversing course on measures designed to stop state-backed snoops from slipping back into America's networks.…
CISA orders feds to patch Oracle Identity Manager zero-day after signs of abuse
CISA has ordered US federal agencies to patch against an actively exploited Oracle Identity Manager (OIM) flaw within three weeks – a scramble made more urgent by evidence that attackers may have been abusing the bug months before a fix was released.…
Championing cyber security: the national UK cyber team's journey at the European Cyber Security Challenge
Partner Content From 6th to 10th October 2025, ten exceptional cyber enthusiasts proudly flew the flag for the United Kingdom in the European Cyber Security Challenge (ECSC), held this year in the vibrant setting of Poland.…
Cryptology boffins’ association to re-run election after losing encryption key needed to count votes
The International Association for Cryptologic Research will run a second election for new board members and other officers, after it was unable to complete its first poll due to a lost encryption key.…