A new breed of ransomware gang is bypassing encryption and going straight for your secrets-and your wallet.
A new cybercrime group is skipping file encryption and betting big on data theft, targeting the world’s most lucrative industries-and leaving defenders scrambling.
A cunning cyberattack campaign exploits SolarWinds Web Help Desk flaws, weaponizing legitimate IT software for covert system control and data theft.
A cunning new version of Odyssey Stealer is blitzing macOS systems worldwide, evading detection and stealing sensitive data at scale.
A new multi-stage Android malware scam in India exploits fake RTO challan notifications to steal personal and financial data, mine cryptocurrency, and evade detection.
Cybercriminals hijack search results to lure Canadians into fake government portals and harvest their most sensitive information.
Cybercriminals impersonate official transport authorities to unleash a new breed of Android malware, targeting personal data and bank accounts at scale.
A surge of malicious plug-ins on the OpenClaw AI assistant platform exposes users to data theft, highlighting new risks in open-source AI ecosystems.
A sophisticated Android malware campaign abuses trusted cloud services and social channels to steal data and seize control of thousands of devices worldwide.
A new attack method lets hackers pilfer sensitive emails from Microsoft 365 accounts-without leaving a trace.
Sixteen malicious browser add-ons, posing as ChatGPT productivity tools, have been siphoning user data and session tokens in a stealthy campaign.
A stealthy Python malware exploits Discord’s trusted network to siphon credentials, documents, and keystrokes from unsuspecting Windows users.
A critical vulnerability in Cal.com’s popular scheduling platform could leave users wide open to data theft and disruption.
A covert hacking group exploits zero-days and public software to infiltrate North America’s critical infrastructure.
Urgent patches from Elastic address a wave of vulnerabilities that let attackers steal data and crash critical Kibana systems worldwide.
A notorious ransomware gang claims to have stolen 10GB of sensitive data from a diverse group of US businesses and institutions, exposing the growing risk for organizations far beyond Fortune 500 giants.
From “prompt poaching” to botnets and espionage, this week’s breaches prove ordinary tools can unleash extraordinary risks.
A critical flaw in jsPDF exposed millions of servers to data theft-one PDF at a time.