A U.S. nuclear agency was among the victims of the SharePoint vulnerability chain, which was exploited to compromise over 54 organizations across the United States, Europe, and Asia.
Google says that Chinese SMS phishing campaigns have collectively yielded somewhere between 15 million and 100 million stolen credit cards in the US alone. The case names 25 individuals and believes the hackers produced over 100 different fraudulent websites that made use of Google branding.
T-Mobile has begun notifying 37 million prepaid and post subscribers whose personal information was accessed by unauthorized bad actors in an unsecured API data breach.
ProtonMail has built its reputation in no small part because of its pledge to not keep user IP logs except in "extreme criminal cases." A recent case indicates that the circumstances may not need to be all that extreme.
The total cost of cybercrime jumped to $12.5 billion in 2023, and the FBI logged a record 880,418 complaints (a 10% increase from the previous year). This is in part being fed by ransomware attacks, which came close to doubling in total cost from 2022 to 2023.
A massive data leak has exposed over 8.7 billion records of primarily Chinese people stored on an unsecured Elasticsearch cluster on bulletproof infrastructure.
Apple has introduced significant changes to the security and privacy features in iOS 13 which could cause users to ignore important prompts and use unsafe workarounds to get rid of them.
Lawmaker concerns about storage of biometric identification information and the use of a third-party contractor’s facial recognition technology has prompted a change in plans by the IRS.
The FAA has proposed new cybersecurity rules for airworthiness certification to protect aircraft from hostile intentional unauthorized electronic interactions.
Stanford University Department of Public Safety is investigating an alleged data breach by the Akira ransomware gang that stole 430 GB of data, including private information and confidential documents.










