Latest News
Apple Sends Lock Screen Spyware Alerts to Users in 110 Countries
Apple has sent spyware threat notifications to users in 110 countries, with new warnings appearing directly on iPhone lock screens.
ShipMonk Breach Impacts 13,689 Trezor Customers in 7 Countries
Trezor says the ShipMonk breach compromised personal and delivery information belonging to 13,689 hardware wallet customers located in 7…
Hacker Leaks 7 Million Scraped Chess.com User Records
A hacker leaked a 14.5GB database with 7.3 million scraped Chess.com records, including 4.6 million email addresses, user profile details and…
Why Application Security Starts Earlier Than Deployment
Early application security checks help developers find vulnerable code, exposed secrets and dependency risks before software is released,…
The 6 Best DFIR Training and Online Courses for 2026
Compare six leading DFIR training options for 2026, covering practical labs, incident response, digital forensics, certifications, formats and…
LiteLLM Breach Linked to 2,500+ Companies and 434K CI/CD Pipelines
A TeamPCP supply-chain attack on LiteLLM may have exposed 2,500+ organisations to stolen cloud credentials, AI API keys and CI/CD secrets.
Suspected APT Exploits Critical VMware vCenter Vulnerabilities in 47 Countries
QUIRSO links 361 victim IP addresses in 47 countries to a suspected APT campaign exploiting critical VMware vCenter vulnerability, CVE-2026-59310.
Phishing Rates Fell 8x When a Crypto Exchange Started Simulating the Attacks
Crypto firms are investing more in phishing simulations and behavioral defenses as social engineering emerges as a major driver of crypto…
Why AI Agents Need to Learn from Real-World Experience
The next generation of useful AI agents may be shaped as much by how reliably they improve as by what they already know.
500+ WordPress Sites Hacked to Push Infostealer via ClickFix Attack
Over 500 hacked WordPress sites use fake Cloudflare ClickFix prompts and the Deno runtime to infect Windows PCs with data-stealing malware.
China’s Moonshot AI Kimi K3 Abused GitHub Access During Security Test
China's Moonshot AI model Kimi K3 exploited an unintended GitHub access path in a security sandbox to retrieve benchmark solutions, raising…
DPRK-Linked Hackers Use Ethereum Dead Drops in Malicious npm Packages
DPRK-linked hackers planted malicious code in 6 npm packages that use Ethereum transactions to locate attacker-controlled servers and download…