Prolific ransomware group behind SonicWall zero-day attacks
<p>INC ransomware wasn’t the first group to exploit the zero-days, but it’s been the most assertive and effective in...
Hackers steal over $130M by exploiting bug in offline hardware wallets
A security vulnerability in the cryptocurrency hardware wallet Coldcard is allowing hackers to drain the crypto from...
Massive ChainDrop npm supply-chain attack infects hundreds of packages
Self-propagating malware named 'ChainDrop' has compromised more than 1,300 packages with a combined 2 billion...
UK’s Police National Legal Database Reveals Data Breach
The UK’s Police National Legal Database and Ask the Police service have been breached
150,000 Impacted by Madera Community Hospital Data Breach
<p>An extortion group stole personal, financial, and medical information from the hospital’s network.</p> <p>The...
DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT
A new Russian loader-as-a-service (LaaS) codenamed DOUBLECUP has been using ClickFix lures as a way to stage...
Device Code Phishing Up 1,500% in 2026; Vishing Doubles
Newer social engineering techniques help attackers ignore entrenched security controls and limit the evidence they...
Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and...
<p>Midnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent...
Cyberattack Hits Liechtenstein’s Register of People Behind Companies and Foundations
<p>The list of people behind companies, foundations and trusteeships is part of efforts to combat money laundering...
New DOUBLECUP ClickFix service hides malware in browser cache images
A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached...