Introduction As the world is more and more switched to the availability of the internet, web browsers act as portals to numerous services and data. However, such conveniences mean the existence of certain risks. However, there is an emerging threat that is becoming worrying among cybersecurity professionals today, and these…
The infamous ransomware gang is back in the spotlight, this time targeting Oracle’s E-Business Suite, and yes, Oracle just dropped an emergency patch. Late last week, Oracle confirmed what cybersecurity pros had feared. A critical zero-day vulnerability (CVE-2025-61882) was being actively exploited in the wild. The flaw scores 9.8 on…
Once Google reveals that it has been hacked, a shudder runs through all marketers, administrators, and C-suite executives. Quietly on August 5, 2025, the tech giant revealed that its attackers had drained customer data of one of its corporate Salesforce instances. Approximately 2.5 million Google Ads prospect records, including names,…
What Happened? A new zero-day vulnerability in Microsoft SharePoint Server, known as ToolShell, is being actively exploited. The flaw, CVE-2025-53770, is classified as critical and has already been exploited in monkey patches across federal agencies in the U.S., as well as in governments in Europe and the enterprise energy and…
An Incidence The hunter becomes the hunted. LockBit, once the most dominant ransomware-as-a-service (RaaS) syndicate on the dark web, has been shattered from within. In a dramatic twist, the criminal enterprise infamous for extorting hundreds of millions from global victims has now suffered a severe breach of its infrastructure, exposing…
The major data breach incident at the Wolf Haldenstein Adler Freeman & Herz LLP on December 13, 2023, which was publicly announced on January 10, 2025, carries the hallmarks of one of the largest and most damaging cyber intrusions that targeted a law firm. This incident has compromised the identity…
What is Ransomware? Ransomware is a malicious application that locks a person’s data, which is impossible to access until they pay money. Cybercriminals get into systems through phishing emails, software weaknesses, or more sophisticated techniques such as session hijacking. Explore in Details: Everything to Know About Ransomware Attacks Statistics of…
Cybersecurity in 2024 has changed, and a cybercrime community effectively exploits the vulnerabilities of these newer kinds of attacks. Higher ransomware attacks, highly sophisticated phishing attempts, and new threats looming around the Internet of Things; indeed, this past year brought out how indispensable cyber security is. All significant trends, essential…
What is Data Loss Prevention (DLP)? Data Loss Prevention (DLP) is an additional tool in your security tool belt consisting of various methods and programs to protect sensitive data from outsiders, including loss and exposure. The DLP (Data Loss Prevention) aims to protect data integrity, availability, and confidentiality inside the…
Despite increasing security investments, we are still prone to many security threats, and one of the most common threats is data breaches. But you know what? 95% of data breaches occur due to human errors. Yes, it’s strange because we are more responsible for making our data vulnerable in the…
91 GitHub tokens were made public because of a data breach. Mintlify has set up new security measures and revoked the tokens! Mintlify, a documentation firm, has been shaken by a recent data breach that exposed the GitHub tokens of many of its customers. It is recommended that users implement two-factor…
AnyDesk reported that hackers have gained unauthorized access to the company’s production systems through an unexpected attack. The well-known remote desktop application developer, AnyDesk Software GmbH, based in Germany, recently disclosed that hacking has damaged its production systems. In particular, the company experienced a four-day downtime from January 29 to…
14.7 million people are getting notice letters from mortgage giant Mr. Cooper informing them that a recent cyberattack resulted in the theft of their confidential information. Mr. Cooper checked and confirmed that the recent unexpected event has led to the compromise of both personal and financial information. According to the…
Cybersecurity specialists at Securelist found that the DLL file known as hrserv.dll, a previously unidentified web shell, displays advanced capabilities, including unique encoding techniques for client connection and in-memory execution. Following the data analysis, comparable variations created in 2021 were found, suggesting a possible connection between these disparate instances of…
Yet again, threat actors focus on Okta’s IAM platform as they launch a supply chain attack that targets Okta customer support exchanges. Cybercriminals are getting increasingly creative in their strategies as technology advances. There are ongoing challenges to even the most reliable digital password managers. Popular password manager 1Password, which over…