Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

Apple is facing a lawsuit from three individuals who claim they lost nearly $1.8 million in Bitcoin due to a fraudulent app called Sparrow Wallet, which was available on the App Store. The plaintiffs downloaded the app, believing it to be a legitimate cryptocurrency wallet, only to discover that it was a scam designed to steal their funds. This incident raises serious concerns about the vetting process for apps on major platforms like Apple's App Store. Users need to be vigilant when downloading financial apps, as scammers are finding new ways to exploit unsuspecting individuals. The lawsuit could have implications for how Apple manages app security and user protection in the future.

Read Original

The Dysphoria botnet, which targets Internet of Things (IoT) devices, has evolved its infrastructure by incorporating blockchain-based name services and victim relays. This change comes after a law enforcement operation in March disrupted the JackSkid botnet, which had been a significant player in the IoT threat landscape. Researchers from CNCERT and XLab report that these new features make Dysphoria more resilient against future disruptions. By using blockchain technology, the botnet can better obscure its command and control functions, making it harder for authorities to shut it down. This development raises concerns for users of IoT devices, as it indicates an increase in the sophistication of attacks on interconnected devices.

Read Original

As incidents involving AI in cybersecurity increase, Nvidia has formed a new alliance aimed at addressing the potential risks posed by rogue AI agents. This collaboration brings together various stakeholders to explore the role of open source solutions in mitigating these threats. The concerns stem from the possibility that AI systems could be manipulated for malicious purposes, leading to serious security breaches. By focusing on open source, the alliance hopes to foster transparency and community-driven innovation, enabling faster responses to emerging threats. This initiative is crucial as businesses and individuals rely more heavily on AI technologies, making it essential to ensure these systems are secure and trustworthy.

Read Original
Actively Exploited

Coca-Cola has confirmed that hackers accessed sensitive data from its dairy arm, Fairlife, during a ransomware attack that occurred earlier this month. This breach raises concerns about the security of customer and operational data within the company, which could potentially be misused by the attackers. The incident highlights the growing threat of ransomware attacks in the food and beverage sector, where companies may hold valuable consumer information. It is still unclear what specific data was taken or how many individuals may be affected. Companies in similar industries should take note and enhance their cybersecurity measures to protect against such threats.

Read Original

The ShinyHunters extortion gang has taken responsibility for a data breach involving Ernst & Young, claiming to have accessed credentials for several of the company's systems through a supply-chain attack. This breach raises serious concerns about the security of sensitive information held by one of the world's largest professional services firms. Affected stakeholders may include clients relying on Ernst & Young for auditing and consulting services, as well as employees whose data could have been compromised. The incident underscores the risks associated with supply-chain vulnerabilities and the potential for attackers to exploit them to access valuable corporate data. Organizations are urged to review their security protocols and ensure that their supply chains are adequately protected against such threats.

Read Original

Recently, it was discovered that conversations from Claude AI, an artificial intelligence chat tool, were inadvertently indexed by Google. This issue came to light when users on Reddit began sharing their experiences, revealing that private chats could be accessed through search results. This exposure raises significant privacy concerns, as users may not have intended for their discussions to be publicly searchable or visible. Those who used Claude AI may want to check if their conversations are affected. The situation underscores the challenges of data privacy in AI tools and the importance of secure user data management.

Read Original

On July 27, a public exploit was released that details a serious security flaw in vBulletin, a popular forum software. This vulnerability allows attackers to execute arbitrary code on unpatched servers by sending unauthenticated requests, meaning no user credentials or admin access are needed. The issue affects vBulletin versions 6.2.1 and earlier, as well as 6.1.6 and earlier. This is concerning because it opens the door for attackers to compromise forums without any direct interaction. Forum administrators are urged to update their software to protect against potential exploitation.

Read Original

GitHub and the Python Package Index (PyPI) are implementing new policies aimed at enhancing supply chain security. GitHub's Dependabot will now wait three days before it opens pull requests, giving developers more time to review changes. Meanwhile, PyPI will reject file uploads to releases that are older than 14 days, which helps ensure that only recent and relevant packages are available for use. These measures are part of a broader effort to reduce the risk of vulnerabilities being introduced through outdated or unreviewed code. By tightening these controls, both platforms aim to protect developers and users from potential security issues linked to third-party dependencies.

Read Original

Shadow AI agents are becoming increasingly common in enterprise environments, often operating without the knowledge of IT or security teams. These AI tools can take actions autonomously and may have permissions that are not properly managed, leading to potential security vulnerabilities. Nudge Security emphasizes the need for organizations to identify and control these agents to prevent unauthorized access and actions that could compromise sensitive data. As AI technology evolves, the lack of oversight on these agents poses significant risks, making it crucial for companies to implement governance strategies around AI usage. By staying vigilant and proactive, businesses can better secure their digital environments from unintended consequences of unmanaged AI agents.

Read Original

A recent study by CDW reveals that 43% of companies have already faced cybersecurity attacks powered by artificial intelligence, particularly in the form of sophisticated phishing and malware threats. This shift in tactics indicates that cybercriminals are increasingly using AI to enhance their attacks, making them more effective and harder to detect. Despite the growing threat, the research raises concerns about whether enough organizations are adopting AI-driven defenses to counter these emerging risks. As companies grapple with these new challenges, they must prioritize integrating AI into their cybersecurity strategies to protect sensitive data and systems. The findings serve as a wake-up call for businesses to reassess their security measures and ensure they are equipped to handle AI-enhanced threats.

Read Original

A serious vulnerability has been identified in PTC Windchill, which allows attackers to execute arbitrary code remotely without needing authentication. This flaw has been exploited in a recent ransomware campaign, putting organizations using this software at significant risk. The ability to run code remotely means that attackers can potentially take control of affected systems, leading to data theft or further network infiltration. Companies that rely on PTC Windchill for product lifecycle management should urgently assess their systems for this vulnerability. Timely action is crucial to prevent potential breaches and protect sensitive data.

Read Original

n8n, an automation platform, has addressed a serious security vulnerability that could allow authenticated users to execute operating system commands on the server. This flaw was discovered by Security Joes during their investigation of a previous fix related to CVE-2026-27577. The vulnerability affects versions 2.32.0 and earlier, specifically those prior to 2.32.1. The situation is critical as it could enable potential attackers to gain unauthorized access and control over the server, posing significant risks to any organization using n8n for their automation needs. Users are strongly urged to update to the patched versions to mitigate these risks.

Read Original

Senator Ron Wyden from Oregon is urging federal agencies to stop using outdated and insecure public-facing VPNs, which he claims have led to severe attacks on the government. In a letter reported by CyberScoop, Wyden expressed concern that these older VPN technologies are vulnerable and have contributed to significant security breaches. He emphasized that the risks associated with these systems are unacceptable given the sensitive nature of government operations. The senator's call to action is aimed at prompting federal agencies to adopt more secure solutions to protect against potential cyber threats. This issue is particularly pressing as cyberattacks on government infrastructure continue to rise, highlighting the need for modern security practices.

Read Original
Actively Exploited

A new malvertising campaign called SourTrade is targeting unsuspecting users by mimicking well-known cryptocurrency and trading platforms. This campaign uses a unique method that allows it to embed information-stealing malware directly into the victims' web browsers. Once a user interacts with the fake sites, the malware can extract sensitive information, such as login credentials and financial data. This strategy poses a significant risk, especially to individuals involved in cryptocurrency trading, as it could lead to financial loss and identity theft. Users are advised to remain vigilant and verify the authenticity of websites they visit, particularly those related to financial transactions.

Read Original

Coca-Cola has confirmed a data breach linked to a ransomware attack on its subsidiary, Fairlife. The Anubis cybercrime group has claimed responsibility for the incident and is threatening to leak sensitive data if their demands are not met. This breach raises concerns about the security of personal and financial information connected to Fairlife and potentially affects customers and partners. Companies in the food and beverage sector need to reassess their cybersecurity measures, especially given the increasing frequency of ransomware attacks. As the situation develops, Coca-Cola's response and any data leaks could have significant implications for customer trust and brand reputation.

Read Original
Page 1 of 294Next