Tag: Cyber Security

Over 5,000 Dropbox accounts have been hacked, and the attackers only needed an email address

Hackers exploited Lenovo’s flawed email verification to hijack ~5,000 Dropbox accounts Attackers created Lenovo IDs with victims’ emails, bypassing login; 2FA absence worsened impact Dropbox ended Lenovo ID logins, expired sessions, and urged password changes plus 2FA setup Around 5,000 Dropbox user accounts were compromised when hackers found a vulnerability…

Read More

More than 9.5 million patients affected by Aesto Health breach — names, SSNs, financial details, health records and more stolen

Aesto Health reported a December 2025 cyberattack breaching AWS infrastructure, affecting 9.5M patients Stolen data includes PII, SSNs, medical histories, billing, and insurance information across 20+ clients No dark web leaks confirmed; credit monitoring offered, marking 2nd‑largest healthcare breach of 2026 American healthcare technology company Aesto Health suffered the “second-largest…

Read More

Multiple healthcare giants hit by data breaches affecting patient records, social security numbers, and even implanted cardiac devices

McKesson confirmed ShinyHunters breached its Snowflake and Salesforce, stealing 284M patient records Data includes names, contact info, SSNs, and health details; ransom demand was $55.2M Boston Scientific removed attackers but faces CRM device activation issues; attribution not confirmed Last week, two major healthcare organizations suffered highly disruptive cyberattacks: Boston Scientific,…

Read More

Cisco routers are being turned into surveillance vantage points to hoover up data on trusted networks — and it’s all thanks to this new malware

Sygnia reports China‑linked Fire Ant expanding beyond virtualization to routers, TACACS, and Linux hosts Compromised routers act as operational platforms Campaign aims at “target behind the target,” leveraging trust relationships for broader espionage reach Fire Ant, a China-nexus cyberespionage group, is no longer targeting just virtualization platforms, it’s also going…

Read More

New ClickFix campaign can deploy powerful multi-stage malware directly through Windows Terminal and PowerShell

Microsoft warns of TerminalFix, a campaign abusing compromised sites with fake Cloudflare CAPTCHAs Victims paste malicious PowerShell commands, sideloading DLLs and deploying a Python implant Implant enables encrypted reverse tunnels, giving attackers pivot access into internal networks Security researchers from Microsoft are warning of an ongoing malicious campaign that uses…

Read More

How did Iran manage to knock a UK power generator offline for four days, and what does it mean for other critical infrastructure? The experts weigh in

Just days before the FBI issued a warning over Iranian attempts to hack critical infrastructure in the US, a UK power generation plant was taken offline for four days after a cyberattack. The attack has been attributed to Iran, which has stepped up its offensive cyber warfare efforts since the…

Read More