Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

BlackFile hackers are using voice phishing, or vishing, to target the retail and hospitality sectors. They make calls using spoofed numbers to pose as IT support, tricking employees into revealing sensitive information. This method allows them to gather data for potential extortion. Companies in these industries should be vigilant as the attackers exploit trust in IT communications to gain access to critical systems. The rise of such tactics underscores the need for enhanced security training for staff to recognize and respond to these types of scams.

Impact: Retail and hospitality sectors
Remediation: Implement security awareness training for employees, use caller ID verification, and establish clear protocols for handling unsolicited IT requests.
Read Original

The U.S. government has accused Chinese entities of engaging in large-scale theft of artificial intelligence models from American companies. According to a memo from the White House, these entities reportedly employed tens of thousands of proxy accounts and utilized jailbreaking techniques to extract advanced capabilities from U.S. frontier AI systems. This incident raises significant concerns about intellectual property theft and national security, as the stolen technology could enhance China's competitive edge in the AI sector. The implications for U.S. companies and the broader tech industry are profound, as continued cyber espionage could stifle innovation and lead to economic losses. This situation highlights the ongoing tensions between the U.S. and China over technology and cybersecurity.

Impact: U.S. frontier AI systems, potentially affecting companies involved in AI development.
Remediation: N/A
Read Original

A new wave of the GlassWorm malware campaign is targeting the OpenVSX ecosystem through 73 malicious 'sleeper' extensions. These extensions initially appear harmless but become malicious after receiving an update, posing a significant risk to users who may unknowingly install them. Researchers have noted that this tactic allows attackers to bypass traditional security measures that focus on identifying known malware. Developers and users of OpenVSX should be particularly vigilant, as these extensions can compromise their systems without warning. The situation emphasizes the need for caution when updating software and extensions from less familiar sources.

Impact: OpenVSX ecosystem, users of affected extensions
Remediation: Users should avoid installing unverified extensions and regularly check for updates from trusted sources. It's advisable to monitor installed extensions for any unexpected changes.
Read Original

The Supreme Court is currently considering a significant case, Chatrie v. United States, which revolves around the use of geofence surveillance by law enforcement. This technology allows authorities to gather location data from mobile devices within a specific area during a certain time frame, raising concerns about privacy and the extent of government monitoring. Justices expressed skepticism towards both sides, indicating they are carefully weighing the implications of allowing such surveillance methods. A decision is expected this summer, which could set important precedents for how law enforcement agencies can collect and use data in investigations. The outcome may impact privacy rights and law enforcement practices nationwide.

Impact: N/A
Remediation: N/A
Read Original
82 Chrome Extensions Found Selling User Data, 6.5 Million Users Affected

Hackread – Cybersecurity News, Data Breaches, AI and More

Actively Exploited

Research conducted by LayerX has uncovered that 82 Chrome extensions have been collecting and selling user data, impacting at least 6.5 million users. These extensions utilized disclosed but troubling practices to gather personal information, raising significant privacy concerns. Users of these extensions may have unknowingly compromised their data, which could lead to targeted advertising or other privacy invasions. The findings emphasize the need for users to be cautious about the permissions they grant to browser extensions and to regularly review their installed extensions. This incident serves as a stark reminder of the potential risks associated with seemingly innocuous tools that can operate within web browsers.

Impact: 82 Chrome extensions
Remediation: Users should review and remove any suspicious or unnecessary extensions from their browsers and be cautious about granting excessive permissions to new extensions.
Read Original

Medtronic recently reported that it experienced a cyberattack, but it maintained that its operations were not disrupted. This incident raised alarms as it marks the second cyberattack on a significant medical device manufacturer since the onset of the Iran war. Although specific details about the nature of the attack were not disclosed, the event raises concerns about the growing targeting of healthcare companies, which are crucial for patient care. As cyber threats evolve, companies in the medical sector must remain vigilant to protect sensitive patient data and ensure the continuous operation of medical devices. The implications of such attacks can be severe, potentially affecting patient safety and trust in healthcare providers.

Impact: Medtronic medical devices
Remediation: N/A
Read Original

Senators Maggie Hassan and Jim Banks have reached out to Navigate360 after a hacker claimed to have accessed sensitive student data from a school safety tip line that was designed to be anonymous. This incident raises serious concerns about the security measures in place for tools meant to protect students and ensure their safety. The hackers' actions could put the personal information of students at risk, potentially leading to misuse or exploitation. The senators are seeking clarity on how this breach occurred and what steps are being taken to secure the data moving forward. This situation emphasizes the need for robust security protocols in educational tools that handle sensitive information.

Impact: Navigate360 school safety tool, student data
Remediation: N/A
Read Original

A vulnerability in Firefox and the Tor Browser has been discovered, linked to how IndexedDB, a database used by these browsers to store data, operates. This flaw can potentially expose hidden identifiers, which can compromise user privacy and anonymity. Both browsers are widely used, especially by individuals seeking enhanced privacy online, making this issue particularly concerning. Users of these browsers should be aware of the risks associated with this vulnerability, as it may allow malicious actors to track their online activities. It is crucial for users to stay updated with the latest browser patches to mitigate these risks.

Impact: Firefox, Tor Browser
Remediation: Users should update to the latest versions of Firefox and Tor Browser as patches are made available.
Read Original

Checkmarx has confirmed that data from its GitHub repository was posted on the dark web following a supply chain attack on March 23, 2026. The company is currently investigating the breach and believes that the attackers gained access to its repository during this incident. This exposure could have significant implications for Checkmarx and its clients, as sensitive information may have been compromised. The incident highlights the ongoing risks associated with supply chain vulnerabilities, emphasizing the need for companies to enhance their security measures. As the investigation continues, Checkmarx is likely to provide further updates on the extent of the data breach and potential impacts on affected users.

Impact: Checkmarx GitHub repository data
Remediation: N/A
Read Original

A group of attackers known as BlackFile is actively extorting companies in the retail and hospitality sectors by threatening to release stolen data. Researchers believe these attackers are linked to another group called The Com. In a disturbing tactic, they have reportedly swatted company executives, which involves falsely reporting emergencies to law enforcement to create fear and pressure victims into complying with ransom demands. This aggressive strategy not only harms the targeted businesses but also raises concerns about the safety and privacy of their executives and employees. Companies in these sectors need to be vigilant about their cybersecurity measures and consider the potential risks of data breaches and extortion attempts.

Impact: Retail and hospitality sectors, company executives
Remediation: Companies should enhance their cybersecurity protocols, conduct employee training on social engineering attacks, and consider legal measures against extortion attempts.
Read Original

Itron, a technology supplier for utility companies, has reported a cyber incident but believes that its operations remain unaffected. The company has not provided detailed information about the nature of the attack or whether any sensitive data was compromised. Despite the incident, Itron reassured stakeholders that it does not expect any significant impact on its business. This revelation raises concerns about the cybersecurity measures in place within critical infrastructure sectors, as attacks on utility suppliers can have broader implications for service delivery and public safety. Stakeholders in the utilities sector should remain vigilant and conduct thorough assessments of their cybersecurity protocols.

Impact: N/A
Remediation: N/A
Read Original

Medtronic, a major player in the medical device industry, recently confirmed that its network was breached by hackers who accessed sensitive data from its corporate IT systems. The attackers claim to have stolen approximately 9 million records, raising significant concerns about the security of personal health information. While Medtronic has not disclosed specific details about the affected data or the nature of the breach, the incident underscores the vulnerability of healthcare organizations to cyberattacks. As the healthcare sector increasingly relies on digital systems, this breach serves as a reminder of the potential risks to patient privacy and the importance of robust cybersecurity measures. Medtronic is currently investigating the breach and working to secure its systems to prevent further incidents.

Impact: N/A
Remediation: N/A
Read Original

A Chinese national executed a spear-phishing campaign targeting NASA employees by impersonating a U.S. researcher. This deception led to the unauthorized sharing of sensitive information related to defense software and export controls. The NASA Office of Inspector General is investigating the incident, which raises concerns about national security and the vulnerability of governmental agencies to social engineering attacks. Such incidents can have serious implications, as they may compromise sensitive technologies and data. The case underscores the need for enhanced cybersecurity measures and employee training to prevent future breaches.

Impact: NASA systems, defense software related to exports
Remediation: Increased training for employees on recognizing phishing attempts, implementing stricter verification processes for sensitive information requests.
Read Original
LINKEDIN BROWSERGATE

Security Affairs

Actively Exploited

A recent investigation by Fairlinked, an organization representing LinkedIn users, alleges that LinkedIn is engaged in unauthorized user tracking through browser fingerprinting. This practice reportedly involves collecting device data and details from browser extensions, which are then sent to third parties in an encrypted format. The investigation claims this situation represents one of the largest data breaches and corporate espionage incidents in digital history. Users of LinkedIn may be unknowingly affected as their data could be used for tracking purposes without their consent. This raises significant privacy concerns and questions about how user data is managed by large platforms like LinkedIn.

Impact: LinkedIn, user data, browser extensions
Remediation: Users should review their browser extensions and privacy settings, consider limiting data sharing, and stay informed about updates from LinkedIn regarding data privacy practices.
Read Original
Actively Exploited

Recent findings reveal that numerous browser extensions are selling user data, as disclosed in their privacy policies. These extensions, which are widely used, have been caught sharing sensitive information with third parties, raising significant concerns about user privacy and data security. The issue affects a broad range of users who rely on these extensions for various functionalities, including ad-blocking and productivity enhancements. The implications are serious, as users may unknowingly expose their personal data, browsing habits, and even login credentials. This situation calls for heightened scrutiny from both users and regulatory bodies to ensure that privacy standards are upheld and to protect individuals from potential misuse of their data.

Impact: Browser extensions that sell user data
Remediation: Users should review the privacy policies of their installed extensions, consider removing those that sell data, and look for alternatives that prioritize user privacy.
Read Original
PreviousPage 43 of 215Next