Amazon Links Debug, Chalk NPM Supply-Chain Attacks to North Korean Hackers

Amazon has linked a series of sophisticated open-source software supply chain attacks targeting the widely used Node Package Manager (npm) ecosystem to state-sponsored actors from North Korea. The cloud computing…

Anthropic’s Claude AI Experiences Widespread Outage Due to Server Overload

Anthropic’s advanced artificial intelligence models, including its flagship Claude chatbot, experienced a significant disruption on July 29th, leading to widespread unavailability for numerous users. The incident, characterized by "529 Overloaded"…

Russian Hackers Exploit Exchange OWA Zero-Day for Long-Term Mailbox Access

A sophisticated Russian state-sponsored hacking group, identified as Laundry Bear and also known by the moniker Void Blizzard, has been observed actively exploiting a critical vulnerability within Microsoft Exchange’s Outlook…

Health-ISAC Issues Urgent Cybersecurity Warning to Healthcare Sector Amidst Surge in ShinyHunters Attacks

The Health Information Sharing and Analysis Center (Health-ISAC), a vital cybersecurity intelligence hub for the healthcare and public health sector, has issued a critical alert to its member organizations, warning…

CubePilot Suffers Major Disruption Following Sophisticated DNS Hijacking Attack

An Australian firm specializing in flight controllers for unmanned aerial vehicles (UAVs), known as CubePilot, has announced a severe operational disruption stemming from a sophisticated DNS hijacking attack. The incident,…

Over 24,000 Internet-Exposed Servers Leak Password Hashes Due to Two-Decade-Old BMC Vulnerability

A significant cybersecurity vulnerability, rooted in a protocol dating back to 2004, has left over 24,000 internet-exposed servers susceptible to severe security breaches. Researchers have discovered that the Baseboard Management…

Arista Networks Patches Critical Command Injection Vulnerability Exploited in the Wild

Arista Networks has urgently addressed a critical security vulnerability within its on-premises VeloCloud Orchestrator (VCO) deployments, a flaw that has already been actively exploited by malicious actors. The vulnerability, identified…

Hackers Exploit FastJson Zero-Day Vulnerability to Execute Remote Code on US Firms

Cybercriminals are actively leveraging a critical zero-day vulnerability within the widely used FastJson Java library, enabling them to execute arbitrary code on targeted systems without requiring user interaction or elevated…

Apple Faces Lawsuit Over Alleged Failure to Prevent $1.8 Million Bitcoin Theft via Fraudulent App

A significant lawsuit has been filed against technology giant Apple Inc. by three individuals who claim they collectively lost approximately $1.8 million in Bitcoin due to a fraudulent cryptocurrency wallet…

Europol-led Operation Disrupts "The Com" Online Ecosystem, Targeting Nihilistic Violent Extremism and Child Exploitation

Europol, the European Union’s law enforcement agency, has announced the successful conclusion of a multi-week operation that resulted in the flagging of 4,340 URLs for removal. This significant action targeted…