In May 2024, hackers stole names, Social Security numbers, financial information, and protected health information from the hospital’s systems.
Hi, what are you looking for?
In May 2024, hackers stole names, Social Security numbers, financial information, and protected health information from the hospital’s systems.
The attacker deployed multiple malware families, including two backdoors and a proxy tunneller, and various reconnaissance tools.
Hackers accessed emails, usernames, password hashes, and authentication data stored in a Plex database.
PromptLock is only a prototype of LLM-orchestrated ransomware, but hackers already use AI in file encryption and extortion attacks.
The list of impacted cybersecurity firms has been expanded to include BeyondTrust, Bugcrowd, CyberArk, Cato Networks, JFrog, and Rubrik.
The private repositories of hundreds of organizations were published publicly in the second phase of the Nx supply chain attack.
Called A2, the framework mimics human analysis to identify vulnerabilities in Android applications and then validates them.
The AI-powered automated penetration testing firm will invest the new funds in R&D, team expansion, and global scale.
The hackers were seen actively monitoring cyber threat intelligence to discover and rebuild exposed infrastructure.
Proofpoint, SpyCloud, Tanium, and Tenable confirmed that hackers accessed information stored in their Salesforce instances.
Marat Tyukov, Mikhail Gavrilov, and Pavel Akulov targeted US critical infrastructure and over 500 energy companies in 135 countries.
SBOM adoption will drive software supply chain security, decreasing risks and costs, and improving transparency.
Google has observed ViewState deserialization attacks leveraging a sample machine key exposed in older deployment guides.
Elevation of privilege flaws in Android Runtime (CVE-2025-48543) and Linux kernel (CVE-2025-38352) have been exploited in targeted attacks.
Co-founded by former MITRE experts, the startup will use the funding to accelerate product innovation and fuel company growth.
Flaw allows attackers to reset and hijack TP-Link TL-WA855RE devices; CISA urges users to retire discontinued extenders.
Chrome's latest release addresses a high-severity use-after-free vulnerability in the V8 JavaScript engine that could be exploited for remote code execution.
Attack disrupted email, phones, and websites for weeks, but officials say no ransom was paid.
The automotive company said it disconnected its systems, which severely impacted both retail and manufacturing operations.
Hackers accessed customer contact information and case data from Salesforce instances at Cloudflare, Palo Alto Networks, and Zscaler.