Shchukin is accused of extorting more than $2 million as the head of the GandCrab and REvil ransomware operations.
Hi, what are you looking for?
Shchukin is accused of extorting more than $2 million as the head of the GandCrab and REvil ransomware operations.
The Trump administration says the FY2027 budget refocuses CISA on its core mission: protecting federal agencies and critical infrastructure.
The high-end casino and hotel operator has likely paid a ransom to avoid a data leak.
A vulnerability named ‘AI Agent Traps’ allows attackers to manipulate, deceive, and exploit visiting agents via malicious web content.
Hackers published 36 NPM packages posing as Strapi plugins to execute shells, escape containers, and harvest credentials.
The threat actor behind the Axios supply chain attack has been aiming at other maintainers in its social engineering campaign.
The improper access control bug in FortiClient EMS allows unauthenticated attackers to execute arbitrary code remotely.
Hackers stole over 300GB of data from the Commission’s AWS environment, including personal information.
A Chinese threat actor exploited the video conferencing platform to perform reconnaissance, escalate privileges, and execute additional payloads.
Other noteworthy stories that might have slipped under the radar: Symantec vulnerability, anti-ClickFix mechanism added to macOS, FBI hack classified as major incident.
The vulnerabilities can be chained together to bypass authentication and upload arbitrary files to the server.
Shadow AI embedded in everyday apps, combined with outdated mobile devices and zero-click exploits, is creating a new and largely unseen mobile risk.
Using automated scanning and the Nexus Listener collection framework, the hackers compromised over 750 systems.
The cybersecurity incident involved an insider and had a limited impact, the telecoms giant told SecurityWeek.
The attackers prepared infrastructure and multiple nonce-based transactions, took over an admin key, and drained five vaults.
Within days of each other, Anthropic first leaked the source code to Claude Code, and then a critical vulnerability was found by Adversa AI.
The DarkSword exploit kit has been used by both state-sponsored hackers and commercial spyware vendors.
Significant cybersecurity M&A deals announced by Airbus, Cellebrite, Databricks, Quantum eMotion, Rapid7, and OpenAI.
The bugs could lead to authentication bypass, remote code execution, information disclosure, and privilege escalation.
In January 2026, a threat actor hacked the hospital’s internal network and stole personal and health information.