Another security breach involving US telecom companies has come to light, with a third-party contractor that interfaces between some of the industry's big names reporting discovery of unauthorized access to their systems by nation-state hackers that began in late 2024 and continued through much of 2025.
Toys “R” Us Canada, a subsidiary of the American toy giant, has confirmed a data breach after threat actors leaked the stolen customer information on the dark web.
The UN cybercrime treaty is meeting with some pushback from both the tech industry and human rights activists. Privacy and human rights organizations, to include the UN's own High Commissioner for Human Rights, have aired concerns that the treaty's definitions of crimes are too vague and open to potential abuse.
An internal memo sent to Meta risk division workers on October 29 by Protti outlined the company's intention to lay off hundreds of privacy compliance staff, as part of cost-cutting measures that shift more duties from humans to AI.
A phishing campaign by state-sponsored Iranian hackers has targeted over 100 government entities and other organizations with version 4 of the Phoenix malware backdoor.
Google issued an explanatory series of posts on X outlining that there were no new passwords stolen, and that any legitimate credentials came from an assortment of prior data breaches stretching back years that have been circulating on underground forums. Much of the collection was built via infostealer malware.
An FIA data breach has exposed the sensitive personal information of F1 drivers, including government-issued IDs, after a group of security researchers breached the sporting body’s Driver Categorisation portal.
Harvard University and Envoy, an American Airlines subsidiary, have confirmed data breaches linked to a zero-day vulnerability CVE-2025-61882 in Oracle’s E-Business Suite software.
Japanese minimalist retailer Muji was forced to shut down its online stores after a ransomware attack hit its logistics partner, Askul, resulting in order cancelations.
The new CSC report warns that national cyber defense is "stalling" in most areas and "slipping" in some. Its central point of criticism is that only 35% of 82 recommendations that the commission made in 2020 have been fully implemented, with about 13% still facing barriers to progress and another 18% making progress but still distant from actual implementation.










