Phishers built fake Okta and Microsoft 365 login sites with AI - here's how to protect yourself (Jul 2, 2025)
Okta researchers found hackers could make a phishing site with AI in just 30 seconds. Here's how to protect your business.
How to delete your 23andMe data ASAP (and why you should) (Jul 2, 2025)
A judge just approved the sale of 23andMe's DNA data to TTAM Research Institute. So far, 15% of users have already requested that their data be deleted. Here's how you can, too.
North Korean Hackers Target Web3 with Nim Malware and Use ClickFix in BabyShark Campaign (Jul 2, 2025)
Threat actors with ties to North Korea have been observed targeting Web3 and cryptocurrency-related businesses with malware written in the Nim programming language, underscoring a constant evolutio...
Android SMS Stealer Infects 100,000 Devices in Uzbekistan (Jul 2, 2025)
New Android malware Qwizzserial has infected 100,000 devices, primarily in Uzbekistan, stealing SMS data via Telegram distribution
Google Chrome hit by another serious security flaw - update your browser ASAP (Jul 2, 2025)
You'll have to update Chrome to the latest version to fix a security hole that's already been exploited in the wild.
AI Models Mislead Users on Login URLs (Jul 2, 2025)
A third of AI-generated login URLs lead to incorrect or dangerous domains, according to Netcraft
How to turn off ACR on your TV (and why it greatly enhances your viewing experience) (Jul 2, 2025)
Smarter TV operating systems offer added convenience - but they also introduce new privacy concerns, particularly around automatic content recognition (ACR).
How to install a smart lock on an existing deadbolt - and why this model is my top pick (Jul 2, 2025)
The Nuki smart lock comes with an array of features and works with your existing deadbolt, so you can still use a key.
Chinese Hackers Target France in Ivanti Zero-Day Exploit Campaign (Jul 2, 2025)
The French cybersecurity agency identified Houken, a new Chinese intrusion campaign targeting various industries in France
That Network Traffic Looks Legit, But it Could be Hiding a Serious Threat (Jul 2, 2025)
With nearly 80% of cyber threats now mimicking legitimate user behavior, how are top SOCs determining what’s legitimate traffic and what is potentially dangerous? Where do you turn when firewalls a...
Iranian Cyber Actors May Target “Entities of Interest” in US, Warns CISA (Jul 2, 2025)
CISA warns that Iranian cyber actors may target critical infrastructure in the United States.
Hackers Using PDFs to Impersonate Microsoft, DocuSign, and More in Callback Phishing Campaigns (Jul 2, 2025)
Cybersecurity researchers are calling attention to phishing campaigns that impersonate popular brands and trick targets into calling phone numbers operated by threat actors. "A significant portion ...
US Treasury Sanctions Russian Bulletproof Hosting Service Aeza Group (Jul 2, 2025)
The Treasury said that Aeza Group has provided infrastructure services for notorious infostealer and ransomware operators
Dozens of Corporates Caught in Kelly Benefits Data Breach (Jul 2, 2025)
Benefits admin specialist Kelly Benefits has revealed a breach impacting over 500,000 individuals across 45 client organizations
U.S. Sanctions Russian Bulletproof Hosting Provider for Supporting Cybercriminals Behind Ransomware (Jul 2, 2025)
The U.S. Department of the Treasury's Office of Foreign Assets Control (OFAC) has levied sanctions against Russia-based bulletproof hosting (BPH) service provider Aeza Group to assist threat actors...
Qantas Reveals “Significant” Contact Center Data Breach (Jul 2, 2025)
Qantas admits that a “significant” volume of customer data may have been stolen from a contact center
Vercel's v0 AI Tool Weaponized by Cybercriminals to Rapidly Create Fake Login Pages at Scale (Jul 2, 2025)
Unknown threat actors have been observed weaponizing v0, a generative artificial intelligence (AI) tool from Vercel, to design fake sign-in pages that impersonate their legitimate counterparts. "Th...
Lock down your AT&T account to prevent SIM swapping attacks - here's how (Jul 1, 2025)
The new Wireless Account Lock prevents someone from moving your phone number to a different device.
Critical Vulnerability in Anthropic's MCP Exposes Developer Machines to Remote Exploits (Jul 1, 2025)
Cybersecurity researchers have discovered a critical security vulnerability in artificial intelligence (AI) company Anthropic's Model Context Protocol (MCP) Inspector project that could result in r...
Senate removes ban on state AI regulations from Trump's tax bill (Jul 1, 2025)
States will be able to enact AI legislation again - but a federal plan remains unclear, and the clock is ticking.
TA829 and UNK_GreenSec Share Tactics and Infrastructure in Ongoing Malware Campaigns (Jul 1, 2025)
Cybersecurity researchers have flagged the tactical similarities between the threat actors behind the RomCom RAT and a cluster that has been observed delivering a loader dubbed TransferLoader. Ente...
Were 16B Passwords Breached? The Claim Is Called Into Question (Jul 1, 2025)
Research indicated that 16 billion passwords were exposed in what was reportedly the world’s largest data breach to date — however, some experts are questioning these claims.
Cloudflare Now Blocks AI Web Scraping by Default (Jul 1, 2025)
Cloudflare now blocks AI web crawlers by default, requiring permission from site owners for access
Google Issues Emergency Patch for Fourth Chrome Zero-Day of 2025 (Jul 1, 2025)
Google has patched a critical type confusion vulnerability in Chrome, the fourth zero-day fix in 2025
PowerSchool Education Technology Company Announces Data Breach (Jul 1, 2025)
PowerSchool, a California-based education technology company, recently announced a data breach that occurred between December 19 and December 28, 2024.