Cyber Security News Today Latest Updates & Research

data security news

The China-linked cybercrime group behind the use of income tax-related phishing lures targeting Indian taxpayers, tax professionals, and corporate finance teams has been observed using a sophisticated crypter service called Cruciferra . Cybersecurity researchers have flagged a Microsoft Teams-themed phishing campaign that employs “secure document” lures to deliver legitimate remote monitoring and management ( RMM ) tools. N8n has patched a high-severity expression-sandbox escape that could let an authenticated workflow editor execute operating-system commands on the server running the automation platform. This week, trusted tools crossed lines, old flaws found new work, exposed systems stayed exposed, and attackers kept hiding inside normal-looking services. VBulletin issued security patches for 6.2.1, 6.2.0, and 6.1.6 at the end of June and released the fixed version 6.2.2 on July 1, nearly four weeks before the exploit went public Administrators running self-hosted installations should apply the patch for their branch or upgrade to 6.2.2.

People don’t usually plan to hold onto their old devices, but that’s what many end up doing. LG monitors quietly installed an app that showed a pop-up ad for McAfee software, an example of how third-party devices can leverage Windows to install bloatware and adware. Threat actors used credentials obtained from other companies to hack into Chick-fil-A One accounts. Cyber threat actors are infecting victims with the Vidar stealer and the XMRig cryptocurrency miner in a new malicious campaign According to Check Point, the group targets Internet-facing devices (VPNs, firewalls) as their entry point, and once inside moves quickly to encrypt entire networks within hours.

Russian state-supported cyber actors conduct phishing campaign targeting users of Zimbra Collaboration Suite GBHackers on Security is a top cybersecurity news platform, delivering up-to-date coverage on breaches, emerging threats, malware, vulnerabilities, and global cyber incidents. GitHub has introduced a default cooldown period for Dependabot version updates https://cthelpnet.org/what-continuing-education-opportunities-are-available/ to decrease the risk of organizations automatically adopting malicious or compromised open-source dependencies… A newly uncovered cluster of more than 70 impersonation domains targeting popular Windows applications is raising fresh concerns about a scalable malware distribution campaign…

  • The revision is because a broader range of device brands are under attack.
  • CISA said it is refining its reporting channels to make them easier and faster for researchers.
  • Two of the zero-days addressed this month appear to stem from recent vulnerability disclosures by Nightmare Eclipse, the nickname chosen by a security researcher who has been dropping exploits for various Windows flaws.
  • According to prosecutors, Jubair co-ran a bustling Telegram channel called Star Chat, the home of a SIM-swapping group that used voice- and SMS-based phishing attacks to steal credentials from employees at the major wireless providers in the U.S. and U.K.
  • PEAR ransomware group claimed 3 TB stolen from MCBS, a medical billing firm whose breach exposed 1.26 million patients at seven healthcare organizations.

Context bombing heralds a new AI era of deceptive defense

  • Mindgard researcher Aaron Portnoy disclosed a code execution flaw in Cursor AI editor that silently runs trojanized git.exe files when developers clone malicious repos.
  • SEATTLE, May 20, 2026 /PRNewswire/ — MIND™, the AI-native data loss prevention platform, today announced its acceptance into Anthropic’s Cyber Verification Program, becoming the first data security company to achieve this distinction.
  • Alerts provide timely information about current security issues, vulnerabilities, and exploits.
  • These devices, which are marketed under thousands of brand names and model numbers and broadly available for purchase at top e-commerce destinations, all advertise the ability to stream hundreds of subscription video services for an up front one-time fee.
  • Group-IB documented ClickLock, a macOS stealer using a 210ms app-kill loop to coerce macOS passwords, hitting more than 100 victims across 33 countries.

Stadler refuses $12.3M demand after thieves swipe technical data through supplier platform Clinical trial teams lose time to patient sourcing, site selection, manual data entry and other tasks. The revision is because a broader range of device brands are under attack. The first of what could be many more proposed class action lawsuits has been filed against clinical testing laboratory and medical device maker Abbott Laboratories and its cancer diagnostics business Exact Sciences following a data theft hack claimed by cybercrime gang ShinyHunters. Cleveland-based Keyfactor plans to acquire London-based startup Cofide to expand its trust platform into software workloads and autonomous AI agents, betting enterprise demand for dynamic, standards-based machine identities will accelerate as AI adoption grows.

data security news

We enable businesses to mind what really matters – their most sensitive data. MIND is the first-ever data security platform to autonomously discover and classify sensitive data, fix data security issues and stop data leaks in one place, so organizations can put their data loss prevention and insider risk management programs on autopilot. MIND is on a mission to help organizations gain peace of mind and thrive in a digital world in this AI era by protecting their most sensitive data, mitigating data risks and preserving brand reputation. This verification enables MIND to use Claude’s full capabilities to sharpen how the platform discovers sensitive data, detects data security issues and prevents data loss without default limitations on dual-use cybersecurity activities. SEATTLE, May 20, 2026 /PRNewswire/ — MIND™, the AI-native data loss prevention platform, today announced its acceptance into Anthropic’s Cyber Verification Program, becoming the first data security company to achieve this distinction.

Zscaler unveiled a new offering for improved management and reduction in risk for crucial assets with the launch of Zscaler Asset Exposure Management. The startup debuted its Data Security for AI Agents offering, providing capabilities such as automated discovery and identification of AI agents as well as agentic models. Sentra provides a cloud-native data security platform that aims to offer improved capabilities for scanning, classification and data privacy. Semperis unveiled a major expansion of its identity security capabilities with the recent acquisition of MightyID, which will enable improved “identity resilience” for environments that use platforms such as Okta and Ping Identity.

  • Google said it disabled Google accounts and services used by NetNut for malware command and control, and that it shared technical intelligence on NetNut’s software development kits (SDKs) and backend infrastructure with platform providers, law enforcement and research firms.
  • The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloads, oversee earnings, and manage various aspects related to victims.
  • Google Search indexed public Claude AI chat links, letting people find shared conversations through the site query before those listings…
  • From there, the video shows the attacker told the bot to link the account in question to a new email address, after which the bot dutifully sent that address a one-time code that allowed a password reset.
  • Research reveals that slopsquatting remains a threat to developers using AI to aid coding.
  • CISA quickly acknowledged our initial alert, but took more than 48 hours to invalidate the AWS keys and many other important secrets leaked in the GitHub repo.

Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw

Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, on June 10. In affected Spring Boot applications, a malicious JSON request can execute code without authentication, with the privileges of the Java process. Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba’s JSON library for Java. Its landing pages https://rozamimoza2.ru/free-cheats-game-hacks-spoofer-bots-executor-updated-skin-changer/ fingerprint visitors, showing suspected researchers and bots an empty page while selected targets receive a convincing copy of the impersonated service. Although such trojanized packages are short-lived, the time period fo… GitHub has announced a new cooldown mechanism in Dependabot, allowing the tool to wait at least three days after a release is published before opening a pull request.

Microsoft said this bug has been detailed publicly, but that it is not aware of any active exploitation. Nearly 60 of the bugs quashed in July’s Patch Tuesday earned a “critical” severity rating, meaning miscreants or malware could use them to seize remote control over a Windows device with little or no help from the user. “As part of our ongoing efforts to enhance platform quality and the user experience, LG will continue to strengthen our evaluation process for developer-submitted apps, including those that incorporate residential proxy SDKs,” Taylor wrote in an emailed statement. The move comes less than a month after researchers found that more than 42 percent of games and other apps available for download on LG’s webOS store allow unknown third-parties to route their Internet traffic through a user’s TV. Surveillance technology creates and perpetuates injustices across the legal system in the US, the ACLU says Hackers accessed insurance, treatment, and personal data months before victims were finally notified.

data security news

Check Point found The Gentlemen are the second most active ransomware group by victim count so far this year, claiming at least 332 published victims since the group’s inception in mid-2025 and more than 240 in 2026 alone. “A 90/10 affiliate revenue split — compared to the industry standard 80/20 — is accelerating the group’s growth by attracting experienced operators from competing programs,” the researchers wrote in April. Experts at the security firm Check Point Software have been closely covering exploits of The Gentlemen, a so-called “ransomware-as-a-service” (RaaS) offering that pays affiliates handsomely to help spread the group’s malware. A cybercrime group known as The Gentlemen has emerged as the second most active ransomware gang by victim count, rapidly attracting a talented pool of hackers through an aggressive recruitment strategy that promises affiliates 90 percent of any ransom paid by victims. Responding via email, Mr. Kramer said Ninjatech ceased operations approximately five years ago, when the company sold a software development kit (SDK) called Popa that was designed to use a small portion of a device’s bandwidth and to run only after the host application obtained user consent. Qurium said it found several dozen domains used to control Popa that were all hosted in lockstep across multiple Internet addresses over time, including gmslb.net, safernetwork.io, tera-home.com, and ninjatech.io.

data security news

OpenAI-Hugging Face attack doesn’t mean agents are evil – unless you tell them to be

This can include personal data, financial records, intellectual property, or credentials. With Kiuwan, developers and security teams can find and fix vulnerabilities early, stay compliant, and protect their applications from the inside out. Train developers and testers to recognize phishing attempts, sanitize inputs, and follow best practices for credential management. Use tools like Static Application Security Testing (SAST) to analyze code as it’s written, catching vulnerabilities earlier on when they’re easier, and cheaper to fix. Even when vulnerabilities are identified, it’s common for updates to lag behind production schedules. Many organizations focus on fixing breaches after they happen, but without a proactive approach like continuous code scanning or automated vulnerability management, risks can go undetected until it’s too late.

Warning shot or publicity stunt – how worried should we be about the OpenAI hack?

Unauthorized streaming opens your device to unknown risks, including malware. Hackers quietly tested the zero-click tactic in Ukraine before targeting NATO member organizations, CISA https://www.motonlegalgroup.com/technology-law-firms/ says. Threat actor The Gentlemen is threatening to release all stolen data if Thialf refuses to pay the ransom within the next few days.

This entry was posted in Data Protection News. Bookmark the permalink.

Comments are closed.