Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

A new malware called Umbrij, linked to the cyber group ToddyCat, is targeting corporate Gmail accounts by exploiting the Google API. According to Kaspersky's recent report, the malware allows attackers to gain stealthy access to email communications, raising significant concerns for businesses that rely on Gmail for their operations. This tactic of compromising access through APIs highlights potential vulnerabilities in how companies manage their email systems. As email remains a primary communication tool for organizations, the implications of such breaches could be severe, resulting in sensitive information leaks and potential financial losses. Companies using Gmail should enhance their security measures to safeguard against this type of attack.

Read Original

A cybersecurity researcher has released over 30 proof-of-concept exploits without revealing the underlying vulnerabilities first. This action, known as 'Exploitarium,' raises significant concerns within the cybersecurity community as it could enable malicious actors to exploit these vulnerabilities before they are patched. The researcher argues that this approach can pressure vendors to address security flaws more quickly. However, this practice may also put many users and organizations at risk, as they might not be aware of the potential threats posed by these exploits. The implications of this release emphasize the ongoing tension between security research and responsible disclosure, highlighting the need for better communication between researchers and vendors.

Read Original

Researchers have identified that credentials stolen from FortiGate firewalls are being misused in ransomware attacks linked to the INC and Lynx groups. This breach, known as the FortiBleed campaign, has compromised hundreds of thousands of firewall credentials, allowing attackers to launch targeted ransomware operations. This situation poses a significant risk, as organizations relying on FortiGate firewalls may find themselves vulnerable to further exploitation. Companies should take immediate action to secure their devices and monitor for unusual activity. The findings underscore the importance of maintaining strong security practices and regularly updating credentials to mitigate these risks.

Read Original

IBM and Red Hat are launching a new initiative called Project Lightwell, which involves deploying 20,000 engineers to address vulnerabilities identified by Anthropic's AI tool, Mythos. This comes amid growing concerns about the security of the open-source software supply chain, particularly as more companies rely on open-source components. The findings from Mythos have sparked discussions in the tech community about how to better secure these systems and prevent potential exploitation. This investment reflects a significant commitment to improving software security, especially in light of increasing cyber threats targeting open-source software. As organizations continue to adopt open-source solutions, ensuring their safety becomes crucial to protecting sensitive data and maintaining system integrity.

Read Original

Cloudflare has rolled out new controls that allow website owners to manage how AI crawlers access their sites. This feature categorizes AI traffic into three types: Search, Agent, and Training. It's available to all customers, including those on the Free plan, giving them better control over their content. The move aims to protect original content and ensure that creators are compensated for their work. This change is significant as it addresses ongoing concerns about how AI technologies interact with online content and the rights of content creators.

Read Original

Microsoft has addressed a bug that caused the Copilot Chat and related buttons to vanish from Classic Outlook for users with the Copilot Chat (Basic) license on Windows. This issue affected how users could access and utilize the Copilot features, potentially disrupting their workflow. The fix ensures that users can now regain access to these functionalities, which are designed to enhance productivity within Outlook. This is particularly important for organizations relying on these tools for efficient communication and task management. Users are encouraged to check their Outlook applications to confirm that the fix has been applied and that the Copilot features are functioning as intended.

Read Original

Bitdefender researchers have identified a new ransomware campaign where attackers are impersonating Interpol to deceive victims into downloading malicious software. These phishing emails are designed to appear legitimate, tricking recipients into believing they are receiving official communication from a global law enforcement agency. This campaign has targeted businesses worldwide, making it a significant threat as it could lead to severe financial losses and operational disruptions. Organizations should be vigilant about unusual emails and verify the sender's identity before clicking on links or downloading attachments. The use of such tactics highlights the evolving methods cybercriminals are using to exploit trust and execute their attacks.

Read Original

A recent paper titled "Cybersecurity Mission Creep" discusses how various non-cyber issues are increasingly being framed as cybersecurity threats. Issues like misinformation, child safety on social media, antitrust regulations, and even journalist misconduct are being labeled as cybersecurity problems. This shift in perception allows these issues to be treated with a heightened sense of urgency, potentially leading to drastic governance measures. The author argues that this 'cybersecuritization' could result in problematic responses that may not align with the original intent of the policies. As policymakers adopt this approach, it raises concerns about the implications for civil liberties and the prioritization of resources in addressing real cybersecurity threats.

Read Original

Opera has launched a new feature called Paste Protect aimed at preventing ClickFix-style attacks. These attacks use social engineering techniques to deceive users into executing harmful commands, often through clipboard manipulation. With Paste Protect, Opera seeks to enhance user security by blocking such malicious actions before they can take effect. This update affects all users of the Opera browser, as it aims to create a safer browsing experience by addressing a growing concern in online security. Implementing this feature is crucial as it helps safeguard users from increasingly sophisticated attacks that exploit human behavior.

Read Original

Researchers have discovered a new type of attack dubbed 'BioShocking' that exploits AI-driven web browsers. By manipulating the context in which these browsers operate, attackers can trick them into bypassing their built-in safety features, leading to the theft of sensitive credentials. This vulnerability poses a significant risk to users who rely on AI browsers for secure transactions, as it could result in unauthorized access to personal accounts. The implications are serious, especially as more people use AI tools for everyday tasks, making it crucial for developers to address these weaknesses. Users should be cautious and vigilant when using AI-driven browsing tools until a fix is implemented.

Read Original

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about a vulnerability in Microsoft SharePoint that is currently being exploited by attackers. This vulnerability, identified as CVE-2026-45659, allows for remote code execution, which means that hackers can run malicious code on affected systems. Organizations using SharePoint should take this threat seriously, as it could lead to unauthorized access and data breaches. Microsoft has already released a patch to address this issue, so it's crucial for users to apply the update as soon as possible to protect their systems from potential exploitation.

Read Original

Kaspersky's Compromise Assessment specialists reviewed trends from their 2025 projects, revealing that many organizations are still overlooking security incidents and facing ongoing threats. They found that a lack of timely response to these incidents can leave companies vulnerable to further attacks. The insights suggest that businesses need to improve their detection capabilities and response strategies to address these persistent risks. By regularly assessing their security posture, organizations can better identify weaknesses and enhance their defenses against potential breaches. This is particularly important as cyber threats continue to evolve and become more sophisticated.

Read Original

Opera is introducing a new feature designed to protect users from malicious clipboard content, which can be exploited in attacks known as ClickFix. This type of attack targets users who copy and paste information from compromised websites, potentially leading to unintended actions or data exposure. The new functionality aims to detect harmful content before users inadvertently click on it, enhancing user security while browsing. This is particularly relevant as clipboard-based attacks have become more common, putting users at risk of fraud or data theft. By implementing this feature, Opera is taking proactive steps to safeguard its users in an increasingly dangerous online environment.

Read Original

The FortiBleed campaign has emerged as a financially driven operation linked to the INC and Lynx ransomware groups. Researchers have found that attackers behind FortiBleed are stealing credentials from FortiGate devices, which are then used for follow-up intrusions and ransomware deployment. This connection raises concerns for organizations using FortiGate products, as their credentials are being targeted for potential exploitation. The stolen credentials are actively being negotiated for ransom, indicating that companies need to be vigilant about their security practices. As this campaign develops, it poses significant risks to affected entities and highlights the need for enhanced cybersecurity measures.

Read Original

Opera has introduced a new feature called Paste Protect to enhance security against clipboard-based attacks, specifically targeting ClickFix attacks. These types of attacks have become increasingly common, responsible for over half of malware delivery incidents in 2025. Paste Protect is automatically enabled in Opera's desktop browsers, meaning users don’t have to take any additional steps to benefit from this protection. The feature warns users of potential threats when they attempt to paste content that may have been compromised. This move is significant as clipboard hijacking can lead to serious security issues, affecting user data integrity and privacy.

Read Original
PreviousPage 127 of 370Next