Latest Cybersecurity News and Articles


Ripple's xrpl.js npm Package Backdoored to Steal Private Keys in Major Supply Chain Attack

23 April 2025
The Ripple cryptocurrency npm JavaScript library named xrpl.js has been compromised by unknown threat actors as part of a software supply chain attack designed to harvest and exfiltrate users' private keys. The malicious activity has been found to affect five different versions of the package: 4.2.1, 4.2.2, 4.2.3, 4.2.4, and 2.14.2. The issue has been addressed in versions 4.2.5 and 2.14.3.

Google Drops Cookie Prompt in Chrome, Adds IP Protection to Incognito

23 April 2025
Google on Tuesday revealed that it will no longer offer a standalone prompt for third-party cookies in its Chrome browser as part of its Privacy Sandbox initiative. "We've made the decision to maintain our current approach to offering users third-party cookie choice in Chrome, and will not be rolling out a new standalone prompt for third-party cookies," Anthony Chavez, vice president of Privacy

Docker Malware Exploits Teneo Web3 Node to Earn Crypto via Fake Heartbeat Signals

22 April 2025
Cybersecurity researchers have detailed a malware campaign that's targeting Docker environments with a previously undocumented technique to mine cryptocurrency. The activity cluster, per Darktrace and Cado Security, represents a shift from other cryptojacking campaigns that directly deploy miners like XMRig to illicitly profit off the compute resources. This involves deploying a malware strain

University of Michigan faces lawsuit due hacking and privacy breach

22 April 2025
The University of Michigan is facing a class action lawsuit due to the actions of a former football coach, Matt Weiss, who is accused of exposing the private images and videos of thousands of student-athletes.

Cloud Data Security Play Sentra Raises $50 Million Series B 

22 April 2025
Sentra has now raised north of $100 million for controls technology to keep sensitive data out of misconfigured AI workflows. The post Cloud Data Security Play Sentra Raises $50 Million Series B  appeared first on SecurityWeek.

DataKrypto Launches Homomorphic Encryption Framework to Secure Enterprise AI Models

22 April 2025
DataKrypto’s FHEnom for AI combines real-time homomorphic encryption with trusted execution environments to protect enterprise data and models from leakage, exposure, and tampering. The post DataKrypto Launches Homomorphic Encryption Framework to Secure Enterprise AI Models appeared first on SecurityWeek.

Cyberattack Knocks Texas City’s Systems Offline

22 April 2025
The city of Abilene, Texas, is scrambling to restore systems that have been taken offline in response to a cyberattack. The post Cyberattack Knocks Texas City’s Systems Offline appeared first on SecurityWeek.

GCP Cloud Composer Bug Let Attackers Elevate Access via Malicious PyPI Packages

22 April 2025
Cybersecurity researchers have detailed a now-patched vulnerability in Google Cloud Platform (GCP) that could have enabled an attacker to elevate their privileges in the Cloud Composer workflow orchestration service that's based on Apache Airflow. "This vulnerability lets attackers with edit permissions in Cloud Composer to escalate their access to the default Cloud Build service account, which

Ofcom closes technical loophole used by criminals to intercept mobile calls and texts

22 April 2025
Ofcom closes technical loophole used by criminals to intercept mobile calls and texts Regulator acts on leasing of ‘global title’ numbers after industry efforts to tackle problem were ineffectiveThe UK communications regulator is banning mobile operators from leasing numbers that can be used by criminals to intercept and divert calls and messages, including security codes sent by banks to customers.Ofcom said it would stop the leasing of “global titles”, special types of phone numbers used by mobile networks to support services to make sure messages and calls reach the intended recipient. Continue reading...

Medical Express Ambulance Inc. announces data breach

22 April 2025
Medical Express Ambulance Inc. (MedEx) recently experienced a data breach that may have allowed unauthorized access to patient health information.

Deepfake-enabled fraud caused more than $200 million in losses

22 April 2025
In Q1 2025, deepfake-driven fraud led to $200 million in financial losses. 

SSL.com Scrambles to Patch Certificate Issuance Vulnerability 

22 April 2025
A vulnerability in SSL.com has resulted in nearly a dozen certificates for legitimate domains being wrongly issued. The post SSL.com Scrambles to Patch Certificate Issuance Vulnerability  appeared first on SecurityWeek.

Open Source Security Firm Hopper Emerges From Stealth With $7.6M in Funding

22 April 2025
Hopper has emerged from stealth mode with a solution designed to help organizations manage open source software risk. The post Open Source Security Firm Hopper Emerges From Stealth With $7.6M in Funding appeared first on SecurityWeek.

Many Malware Campaigns Linked to Proton66 Network

22 April 2025
Security researchers detail various malware campaigns that use bulletproof services linked to Proton66 ASN. The post Many Malware Campaigns Linked to Proton66 Network appeared first on SecurityWeek.

Legacy Google Service Abused in Phishing Attacks

22 April 2025
A sophisticated phishing campaign abuses weakness in Google Sites to spoof Google no-reply addresses and bypass protections. The post Legacy Google Service Abused in Phishing Attacks appeared first on SecurityWeek.

5 Major Concerns With Employees Using The Browser

22 April 2025
As SaaS and cloud-native work reshape the enterprise, the web browser has emerged as the new endpoint. However, unlike endpoints, browsers remain mostly unmonitored, despite being responsible for more than 70% of modern malware attacks. Keep Aware’s recent State of Browser Security report highlights major concerns security leaders face with employees using the web browser for most of their work.

Phishers Exploit Google Sites and DKIM Replay to Send Signed Emails, Steal Credentials

22 April 2025
In what has been described as an "extremely sophisticated phishing attack," threat actors have leveraged an uncommon approach that allowed bogus emails to be sent via Google's infrastructure and redirect message recipients to fraudulent sites that harvest their credentials. "The first thing to note is that this is a valid, signed email – it really was sent from no-reply@google.com," Nick Johnson

UN Researchers Warn That Asian Scam Operations Are Spreading Across the Rest of the World

22 April 2025
Transnational organized crime groups in East and Southeast Asia are spreading their lucrative scam operations across the globe, according to a UN report. The post UN Researchers Warn That Asian Scam Operations Are Spreading Across the Rest of the World appeared first on SecurityWeek.

Two Healthcare Orgs Hit by Ransomware Confirm Data Breaches Impacting Over 100,000

22 April 2025
Bell Ambulance and Alabama Ophthalmology Associates have suffered data breaches affecting over 100,000 people after being targeted in ransomware attacks. The post Two Healthcare Orgs Hit by Ransomware Confirm Data Breaches Impacting Over 100,000 appeared first on SecurityWeek.

Microsoft Secures MSA Signing with Azure Confidential VMs Following Storm-0558 Breach

22 April 2025
Microsoft on Monday announced that it has moved the Microsoft Account (MSA) signing service to Azure confidential virtual machines (VMs) and that it's also in the process of migrating the Entra ID signing service as well. The disclosure comes about seven months after the tech giant said it completed updates to Microsoft Entra ID and MS for both public and United States government clouds to