Majority of SMBs still do not believe they will be likely targets of cyber attacks despite the fact that 60% of the companies go out of business within six months after suffering an attack.
Following stories of smartphones and smart home virtual assistants leaking user data, new wave of IoT privacy concerns rising as researchers found smart devices sharing personal information with tech giants.
The final report on the Okta security breach indicates that the attackers were able to access HAR files containing session tokens of 134 customers, but it appears they were very selective in which they chose to pursue follow-up attacks on. Only five instances of successful session hijacking were logged.
Dole Food Company has confirmed a ransomware attack that disrupted regional operations. Leaked memo shows that production was temporarily halted in several plants and deliveries suspended.
Ransomware attack was part of an ongoing campaign against targets in the France's medical sector and France indicated that an active response is something under consideration.
Google Threat Intelligence Group has tracked threat actor UNC6395 stealing OAuth tokens via Salesloft Drift integrations in a massive Salesforce data theft campaign.
In the case of the Cambridge Analytica scandal, the lawsuit asserts that Zuckerberg personally oversaw the engineering work that ultimately led to the exposure of Facebook user data.
A third-party data breach involving a U.S. contractor exposed the personal information of over 2 million Aflac cancer and Zurich automobile insurance policyholders in Japan.
The MOVEit data breach saw about 632,000 emails from the Departments of Defense and Justice accessed by a criminal hacking group based in Russia, in addition to already-documented personal information leaks at some 1,000 companies.
Another security breach involving US telecom companies has come to light, with a third-party contractor that interfaces between some of the industry's big names reporting discovery of unauthorized access to their systems by nation-state hackers that began in late 2024 and continued through much of 2025.










