Category: security
Chinese government hackers allegedly spent years undetected in foreign phone networks
Security researchers Sygnia discover attack after responding to a separate incident The attack was attributed to a Chinese state-sponsored threat actor Weaver Ant group lurked for years, stealing sensitive data and moving laterally Chinese state-sponsored threat actors allegedly spent four years lurking in the IT infrastructure of a “major” Asian…
Read MoreCritical security flaw in Next.js could spell big trouble for JavaScript users
Researchers spot critical vulnerability in Next.js If authorizations happen in middleware, they could be bypassed in older versions A patch, and a temporary workaround, are both available, so update now Experts have warned there is a critical severity flaw in the Next.js open source web development framework which allows threat…
Read MoreFake file converters are stealing info, pushing ransomware, FBI warns
The FBI warns about web-based file conversion projects being malicious Some are dropping malware, others stealing sensitive data FBI urges victims to report the attacks Free online file converters, joiners, and similar productivity tools are actually covers for data scraping and malware/ransomware distribution campaigns, the FBI is warning. The Bureau’s…
Read MoreCoinbase targeted after recent Github attacks
Researchers claim primary target of a recent cascading supply chain attack was Coinbase The cryptocurrency exchange was not compromised, but hundreds of other projects might suffer The attack went through a GitHub Action tool The endgame of the recent cascading supply chain attack on GitHub was to breach Coinbase, one…
Read MoreNorth Korea unveils new military unit targeting AI attacks
North Korea has established a new AI hacking department The new group will be called ‘Research Center 227’ North Korea carried out many cyber offensives in 2024, including a fake interview campaign The Democratic People’s Republic of Korea (North Korea) has established “Research Center 227” according to reports from Daily…
Read MoreThis top WordPress plugin could be hiding a worrying security flaw, so be on your guard
WP Ghost, a popular security plugin, carried a 9.6-severity flaw It allows threat actors to execute malicious code, remotely The developers released a patch, and users should update now WP Ghost, a popular security WordPress plugin, was carrying a vulnerability that allowed threat actors to launch Remote Code Execution (RCE)…
Read MoreRecent Posts
- Perplexity just launched an AI web browser
- Malicious Google Chrome and Edge extensions downloaded more than 2 million times – here’s how to stay safe from being tracked online
- Samsung Galaxy Unpacked 2025 live – the new Z Fold 7, Z Flip 7 and Galaxy Watch 8 are here
- OpenAI’s open language model is imminent
- 19 Best Prime Day Coffee Maker Deals on Machines, Grinders, and More
Archives
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022