The WEF report highlights that AI-driven threats, particularly disinformation, are significant concerns for global executives. This underscores the growing impact of technology on cybersecurity and the need for organizations to address these emerging threats proactively.
The report details the vulnerabilities and exploits identified in Q3 2025, highlighting the ongoing challenges in cybersecurity. It emphasizes the importance of awareness regarding Command and Control (C2) frameworks, which are increasingly being utilized by threat actors. The findings suggest a growing trend in the sophistication of cyber threats, necessitating enhanced security measures.
India's Department of Telecommunications has mandated that messaging apps operate only with active SIM cards linked to users' phone numbers to combat rising fraud and misuse. This regulation aims to enhance accountability and traceability in digital communications, addressing concerns over the misuse of anonymous messaging services for fraudulent activities.
Chrome 143 has been released with patches addressing 13 vulnerabilities, including a critical flaw in the V8 JavaScript engine. This update is crucial for maintaining the security of users against potential exploits targeting these vulnerabilities.
The article discusses research from China on methods to disrupt satellite internet communications, particularly targeting satellite constellations like Starlink. Researchers suggest that deploying 2,000 drones could effectively cut communications over a large area, highlighting a significant cybersecurity threat to satellite-based internet services.
The article discusses the importance of enhancing privacy on home Wi-Fi networks, highlighting that many users overlook potential vulnerabilities. It suggests practical steps to secure the network and protect personal information from unauthorized access.
The article discusses a significant increase in the success rates of AI model attacks when prompts are presented in poetic form instead of prose, highlighting a novel method for exploiting vulnerabilities in AI systems. This fivefold increase in attack success raises concerns about the robustness of AI models against creative input formats. The findings suggest that traditional defenses may be inadequate against unconventional attack vectors.
ChatGPT, an AI service by OpenAI, is experiencing a worldwide outage, preventing users from accessing their conversations and generating errors. The cause of the outage has not been disclosed, raising concerns about the reliability of the service and potential impacts on users who rely on it for various applications.
The Shai-Hulud 2.0 malware attack has compromised approximately 400,000 raw secrets by infecting numerous packages in the NPM registry and leaking the stolen data across 30,000 GitHub repositories. This incident highlights significant vulnerabilities in software supply chains and the potential risks for developers and organizations relying on these tools.
The article discusses the lack of concrete actions taken by Congress and federal agencies in response to Chinese hackers infiltrating U.S. telecom networks, highlighting the need for improved information sharing with the industry to prevent future cyber threats. The situation underscores the ongoing vulnerabilities in critical infrastructure and the necessity for legislative and collaborative efforts to enhance cybersecurity measures.
NATO is contemplating pre-emptive measures in response to escalating Russian cyberattacks and drone strikes targeting Europe. This shift indicates a heightened concern over the potential for hybrid warfare tactics being employed by Russia, which could have significant implications for European security and defense strategies.
Switzerland's Privacy Conference has issued a warning to public bodies against using US-based hyperscale cloud and SaaS platforms due to concerns over sovereignty and legal risks. This recommendation highlights the growing unease regarding data security and privacy when relying on foreign cloud services.
Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More
Actively Exploited
The Everest ransomware group has claimed responsibility for breaching ASUS and stealing over 1TB of sensitive data, including camera source code. ASUS has been given a tight deadline of 21 hours to respond to the ransom demand, highlighting the urgency and severity of the situation.
The 2025 State of Cloud Security report highlights a significant cybersecurity threat due to the prevalence of outdated cloud identities, with 59% of AWS IAM users and 55% of Google Cloud service accounts having active keys older than one year. This creates a substantial attack surface, increasing the risk of unauthorized access and potential breaches.
India's Department of Telecommunications has mandated that messaging apps must operate only with active SIM cards linked to users' mobile numbers. This measure aims to curb fraud and misuse associated with these platforms, highlighting the government's focus on enhancing cybersecurity and user accountability in digital communication.