Latest Cybersecurity News and Articles


Russian APT Exploiting Mail Servers Against Government, Defense Organizations

16 May 2025
Russia-linked APT28 has been exploiting mail server vulnerabilities against government and defense entities since September 2023. The post Russian APT Exploiting Mail Servers Against Government, Defense Organizations appeared first on SecurityWeek.

FBI Warns of Deepfake Messages Impersonating Senior Officials

16 May 2025
The FBI says former federal and state government officials are targeted with texts and AI-generated voice messages impersonating senior US officials. The post FBI Warns of Deepfake Messages Impersonating Senior Officials appeared first on SecurityWeek.

Researchers Expose New Intel CPU Flaws Enabling Memory Leaks and Spectre v2 Attacks

16 May 2025
Researchers at ETH Zürich have discovered yet another security flaw that they say impacts all modern Intel CPUs and causes them to leak sensitive data from memory, showing that the vulnerability known as Spectre continues to haunt computer systems after more than seven years. The vulnerability, referred to as Branch Privilege Injection (BPI), "can be exploited to misuse the prediction

Fileless Remcos RAT Delivered via LNK Files and MSHTA in PowerShell-Based Attacks

16 May 2025
Cybersecurity researchers have shed light on a new malware campaign that makes use of a PowerShell-based shellcode loader to deploy a remote access trojan called Remcos RAT. "Threat actors delivered malicious LNK files embedded within ZIP archives, often disguised as Office documents," Qualys security researcher Akshay Thorve said in a technical report. "The attack chain leverages mshta.exe for

[Webinar] From Code to Cloud to SOC: Learn a Smarter Way to Defend Modern Applications

16 May 2025
Modern apps move fast—faster than most security teams can keep up. As businesses rush to build in the cloud, security often lags behind. Teams scan code in isolation, react late to cloud threats, and monitor SOC alerts only after damage is done. Attackers don’t wait. They exploit vulnerabilities within hours. Yet most organizations take days to respond to critical cloud alerts. That delay isn’t

Hackers Win $260,000 on First Day of Pwn2Own Berlin 2025

16 May 2025
Pwn2Own participants have earned tens of thousands of dollars for Red Hat, Windows, Oracle VirtualBox, Docker Desktop, and AI exploits. The post Hackers Win $260,000 on First Day of Pwn2Own Berlin 2025 appeared first on SecurityWeek.

Update on Marks & Spencer Cyberattack

16 May 2025
Marks & Spencer (M&S) has provided an update on the cyberattack it recently experienced. 

Credential Harvesting Becomes Top Retail Data Threat

16 May 2025
Cybercriminals target retail credentials.

Almost Half of Healthcare Breaches Involved Microsoft 365

16 May 2025
Healthcare sector suffers a rise in ransomware attacks.

Andrei Tarasov: Inside the Journey of a Russian Hacker on the FBI’s Most Wanted List

15 May 2025
Once a key figure in the Angler exploit kit underworld, Tarasov’s life has unraveled into detention, paranoia, and an unwanted return to the Russia he publicly despised. The post Andrei Tarasov: Inside the Journey of a Russian Hacker on the FBI’s Most Wanted List appeared first on SecurityWeek.

Breachforums Boss to Pay $700k in Healthcare Breach

15 May 2025
In what experts are calling a novel legal outcome, the 22-year-old former administrator of the cybercrime community Breachforums will forfeit nearly $700,000 to settle a civil lawsuit from a health insurance company whose customer data was posted for sale on the forum in 2023. Conor Brian Fitzpatrick, a.k.a. "Pompompurin," is slated for resentencing next month after pleading guilty to access device fraud and possession of child sexual abuse material (CSAM).

Meta to Train AI on E.U. User Data From May 27 Without Consent; Noyb Threatens Lawsuit

15 May 2025
Austrian privacy non-profit noyb (none of your business) has sent Meta's Irish headquarters a cease-and-desist letter, threatening the company with a class action lawsuit if it proceeds with its plans to train users' data for training its artificial intelligence (AI) models without an explicit opt-in. The move comes weeks after the social media behemoth announced its plans to train its AI models

Lawsuit Alleges Roblox Tracks Children’s Data Without Parental Consent

15 May 2025
Is Roblox collecting and disclosing children’s data without their parents’ consent? 

Coinbase Rejects $20M Ransom After Rogue Contractors Bribed to Leak Customer Data

15 May 2025
Coinbase said a group of rogue contractors were bribed to pull customer data from internal systems, leading to a $20 million ransom demand. The post Coinbase Rejects $20M Ransom After Rogue Contractors Bribed to Leak Customer Data appeared first on SecurityWeek.

Coinbase Agents Bribed, Data of ~1% Users Leaked; $20M Extortion Attempt Fails

15 May 2025
Cryptocurrency exchange Coinbase has disclosed that unknown cyber actors broke into its systems and stole account data for a small subset of its customers. "Criminals targeted our customer support agents overseas," the company said in a statement. "They used cash offers to convince a small group of insiders to copy data in our customer support tools for less than 1% of Coinbase monthly

Production at Steelmaker Nucor Disrupted by Cyberattack

15 May 2025
American steel giant Nucor on Wednesday disclosed a cybersecurity incident that bears the hallmarks of a ransomware attack. The post Production at Steelmaker Nucor Disrupted by Cyberattack appeared first on SecurityWeek.

Proofpoint to Acquire Hornetsecurity in Reported $1 Billion Deal

15 May 2025
Enterprise cybersecurity giant Proofpoint is buying Germany-based Microsoft 365 security solutions provider Hornetsecurity. The post Proofpoint to Acquire Hornetsecurity in Reported $1 Billion Deal appeared first on SecurityWeek.

430K Patients’ Data Exposed in Ascension Breach

15 May 2025
430K patients’ data was exposed in a breach against Ascension, and security leaders are discussing cyber threats against the healthcare industry.

Pen Testing for Compliance Only? It's Time to Change Your Approach

15 May 2025
Imagine this: Your organization completed its annual penetration test in January, earning high marks for security compliance. In February, your development team deployed a routine software update. By April, attackers had already exploited a vulnerability introduced in that February update, gaining access to customer data weeks before being finally detected. This situation isn't theoretical: it

Chinese Hackers Hit Drone Sector in Supply Chain Attacks

15 May 2025
The China-linked hacking group Earth Ammit has launched multi-wave attacks in Taiwan and South Korea to disrupt the drone sector. The post Chinese Hackers Hit Drone Sector in Supply Chain Attacks appeared first on SecurityWeek.