Although the company initially did not specifying how many customers may be affected, it later confirmed the compromise affected as much as 5.7 million customers. At Qantas, the incident was detected on June 30, when a cybercriminal targeted a call center and gained access to a third-party customer servicing platform. On June 30, the FBI issued a warning that the threat group Scattered Spider was actively targeting airlines with ransomware and data extortion attacks.
The campaign underscores the risks of poor DNS configurations.Read More A botnet leveraging misconfigured DNS records on MikroTik routers launches spam campaigns and DDoS attacks while bypassing email security measures. The urgency of these issues underscores the importance of taking prompt action. This issue highlights emerging threats and the current state of defenses in our transforming digital landscape.
Chrome 132 Released with Security FixesGoogle Chrome version 132 addresses 16 vulnerabilities, including critical remote code execution flaws in its JavaScript engine and graphics components. Google is working on a fix after initial dismissal of the issue.Read More While Adobe downplayed the risk, Foxit has issued a patch.Read More Attackers trick users into enabling malicious links by replying to messages or adding senders to their contact list.Read More
What Is The Claude AI Cybercrime Campaign?
Although the company told parents, in a message seen in January by US news outlet NBC 26, that no data had been encrypted in the attack, the threat actor threatened to leak compromised data. Unfortunately, M&S, the Co-op and Harrods were just a few names of high-profile retail, sportswear and luxury companies that were hit by cyber-attacks in the spring of 2025. One of the first victims was British supermarket chain Marks & Spencer (M&S), which informed customers and investors of a cyber incident that has affected some of its services on April 22. A massive wave of cyber-attacks targeting high-profile companies in the retail sector started in April 2025.
Despite doubts about the authenticity of some claims, FunkSec’s rise highlights the increasing use of AI in cybercrime and the evolving ransomware landscape.Read More https://iwantmyopenid.org/category/information-technology/page/9 FlowerStorm, a new phishing-as-a-service platform, is targeting Microsoft 365 users with counterfeit login pages delivered through Telegram. Victims were tricked into linking their WhatsApp accounts to attackers’ devices, enabling data exfiltration. The Star Blizzard hacking group has shifted tactics to target WhatsApp users using malicious QR codes. Treasury Department, exploiting vulnerabilities in third-party software provided by BeyondTrust. Updates from Microsoft and vendors are essential to mitigate risks.Read More
Following the cyber-attack, the group established an Emergency Response Headquarters to investigate the incident and isolated affected systems to try and safeguard critical data, including the personal information of customers and business partners. A large number of organizations are believed to have been targeted, including GlobalLogic, a US-headquartered software company owned by Japanese conglomerate Hitachi, and Barts Health, a London-based NHS trust. The exploit campaign was attributed to the Clop group, a notorious Russian-speaking ransomware-as-a-service (RaaS) cybercrime gang first identified back in 2019. The FTC has taken action against GoDaddy for inadequate security measures that led https://expandsuccess.org/protecting-your-financial-information/ to multiple data breaches between 2019 and 2022. These measures aim to align with CISA’s Secure by Design principles, shifting the security burden from end-users to manufacturers.
A major cyber incident affecting any such provider could propagate rapidly across regulated entities, amplifying operational disruptions and posing risks to financial stability. The report underscored that increasing reliance on outsourcing introduces supply chain risk, especially where a limited number of service providers support multiple financial institutions simultaneously. Moreover, operational dependence on third-party technology service providers for critical applications is moderate to very high for three-fourths of the respondents.
They’re the ones built on a short list of questions that can actually be answered, and that still hold true when the models change. Over 95% of the affected companies were exposed before the malicious LiteLLM packages were published. The AI security testing firm has shared information on a recently disclosed incident involving Anthropic AI models.
- Automated threat intelligence leverages artificial intelligence (AI), machine learning (ML), and orchestration platforms…
- Hundreds of companies are sending them corporate secrets.
- Backed by FortiGuard threat intelligence, Fortinet enables security teams to stay ahead of high-impact cyber risks.
- Apple on Thursday sent a fresh batch of notifications to customers whom it suspects may have been targeted by mercenary spyware attacks.
- FlowerStorm, a new phishing-as-a-service platform, is targeting Microsoft 365 users with counterfeit login pages delivered through Telegram.
Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake’s public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub issue to execute commands in a workflow containing internal Jira credentials. “GitLab.com and GitLab Dedicated are already running the patched version. GitLab.com and GitLab Dedicated customers do not need to take action,” the company said. Released on August 17, 2026, the critical patch release arrived outside the company’s usual schedule of twice-monthly updates on the second and fourth Wednesdays, five days after a routine patch release that carried no critical-rated issues. SafePal has disclosed that an authorization flaw in an order-tracking plug-in exposed the names, email addresses, shipping addresses, phone numbers, and purchase details of approximately 39,798 customers. Cybersecurity researchers have flagged a new typosquatting campaign targeting RubyGems users with a Windows-based information stealer.
The trust framework underlying Belgium’s electronic ID system was fully compromised by severe vulnerabilities in a key browser extension, showcasing bigger problems with extensions in general. The $1 billion deal aims to converge data security and identity into a single control plane for agents, with privileged access redefined around business context rather than static roles. As part of Dark Reading’s 20th anniversary celebration, we trace the industry’s evolution through a technology lens.
- Explore short cyber history articles about famous cyber attacks, ransomware outbreaks, botnets, cyber crime operations, DDoS campaigns and digital weapons that shaped modern cyber awareness.
- “An authentication issue was addressed with improved state management,” Apple said in an advisory released on August 6, 2026.
- While Microsoft released a patch for these vulnerabilities in July, Eye Security, the Dutch company that discovered the global zero-days, confirmed that a total of 396 SharePoint systems has been compromised.
- They haven’t been fully security-tested and could pose risks if used incorrectly.
- Despite these efforts, the personal data of approximately 1.914 million individuals, including 1.525 million customers, were or may have been exposed.
Outside of nation-state actors, decentralized cybercriminal groups, such as Scattered Spider, continue to launch ransomware and data extortion campaigns against major global companies. State, local, tribal, and territorial governments often lack the dedicated resources and technical expertise needed to defend their networks, leaving them vulnerable to cyber threat actors. So far in 2025, at least 44 U.S. states reported cyber incidents affecting state and local government systems.
Investigations remain underway to determine the precise nature and volume of data extracted and the number of users affected. Attackers have compromised the GitHub account of the maintainer behind keyv, a popular key-value storage library that pulls in roughly 127 million weekly downloads on npm, and used that access to push credential-stealing malware across the maintainer’s entire package… This prolific information-stealing malware quietly strips compromised systems of saved browser passwords, payment card details, and cryptocurrency wallets in a single execution. North Korea’s Lazarus group has been caught exploiting a Windows kernel 0-day vulnerability to deploy an upgraded version of its notorious FudModule rootkit, according to new research from Check Point Research. The group is recruiting cybercrime affiliates, claiming its platform can compromise a wide spectrum of enterprise systems, including…
Leave your comment