The FBI, CISA, and MS-ISAC have issued a joint cybersecurity advisory on the Medusa ransomware attacks impacting over 300 critical infrastructure organizations.
Japanese telecom giant NTT Communications Corporation, the world’s fourth-largest telecoms company, has suffered a data breach that exposed nearly 18,000 corporate customers.
The malware that the researchers were able to coax out of DeepSeek was rudimentary and required some manual code editing to make it functional. But the incident demonstrates that the guardrails preventing malicious behavior in generative AI systems remain thin.
State-sponsored hackers from Russia, China, Iran, and North Korea are exploiting Windows shortcut files to execute malicious commands for cyber espionage.
The Oracle Cloud attack is on pace to be one of 2025's biggest data breaches, possibly on the scale of the MOVEit breach if enough clients turn out to be impacted. However, Oracle has yet to publicly acknowledge it.
The new recipients of 23andMe’s data would not necessarily have to offer consumers the ability to opt out once they take possession of it. And it remains unclear which (or how many) hands the data would wind up in, raising additional security as well as privacy concerns.
A data breach affecting Pennsylvania’s largest workers and teachers’ union, the Pennsylvania State Education Association (PSEA), has exposed the personal...
Over 300 malicious apps engaged in a massive ad fraud and credential and credit card theft campaign have been downloaded over 60 million times on Google Play Store.
Though this particular case only applies to its plaintiff, human rights advocate Tanya O’Carroll, the ICO-backed decision will likely have to inform the company's broader UK targeted advertising policy as others could launch similar suits.
A suspected Russian cyber attack on Ukraine’s state railway operator Ukrzaliznytsia impacted online systems, disrupting ticketing operations and causing long queues.










