Tag: Cyber Security

AI is getting closer to being able to exploit OT, and that’s very bad news for critical infrastructure

Forescout researchers showed AI can port RCE exploits to PLCs, achieving DoS and shellcode execution Effort required heavy researcher input and $500+ in API usage, making attacks impractical for criminals Nation‑state actors remain a concern, as seen in Sandworm’s 2025 attack on Poland’s power grid If you are worried cybercriminals…

Read More

Over 5,000 Dropbox accounts have been hacked, and the attackers only needed an email address

Hackers exploited Lenovo’s flawed email verification to hijack ~5,000 Dropbox accounts Attackers created Lenovo IDs with victims’ emails, bypassing login; 2FA absence worsened impact Dropbox ended Lenovo ID logins, expired sessions, and urged password changes plus 2FA setup Around 5,000 Dropbox user accounts were compromised when hackers found a vulnerability…

Read More

More than 9.5 million patients affected by Aesto Health breach — names, SSNs, financial details, health records and more stolen

Aesto Health reported a December 2025 cyberattack breaching AWS infrastructure, affecting 9.5M patients Stolen data includes PII, SSNs, medical histories, billing, and insurance information across 20+ clients No dark web leaks confirmed; credit monitoring offered, marking 2nd‑largest healthcare breach of 2026 American healthcare technology company Aesto Health suffered the “second-largest…

Read More

Multiple healthcare giants hit by data breaches affecting patient records, social security numbers, and even implanted cardiac devices

McKesson confirmed ShinyHunters breached its Snowflake and Salesforce, stealing 284M patient records Data includes names, contact info, SSNs, and health details; ransom demand was $55.2M Boston Scientific removed attackers but faces CRM device activation issues; attribution not confirmed Last week, two major healthcare organizations suffered highly disruptive cyberattacks: Boston Scientific,…

Read More

Cisco routers are being turned into surveillance vantage points to hoover up data on trusted networks — and it’s all thanks to this new malware

Sygnia reports China‑linked Fire Ant expanding beyond virtualization to routers, TACACS, and Linux hosts Compromised routers act as operational platforms Campaign aims at “target behind the target,” leveraging trust relationships for broader espionage reach Fire Ant, a China-nexus cyberespionage group, is no longer targeting just virtualization platforms, it’s also going…

Read More

New ClickFix campaign can deploy powerful multi-stage malware directly through Windows Terminal and PowerShell

Microsoft warns of TerminalFix, a campaign abusing compromised sites with fake Cloudflare CAPTCHAs Victims paste malicious PowerShell commands, sideloading DLLs and deploying a Python implant Implant enables encrypted reverse tunnels, giving attackers pivot access into internal networks Security researchers from Microsoft are warning of an ongoing malicious campaign that uses…

Read More