Latest News

Senator Wyden Urges FTC to Probe Microsoft Over Ransomware Breach
U.S. Senator Ron Wyden has called on the Federal Trade Commission to investigate Microsoft, alleging that the company’s default security settings contributed to the massive 2024 ransomware attack on Ascension, one of the largest n...

Ex-WhatsApp Security Chief Sues Meta Over Alleged User Data Risks
A former WhatsApp cybersecurity executive has filed a whistleblower lawsuit against Meta, claiming the company ignored critical security flaws that exposed billions of users and retaliated against him for raising concerns.
Atta...

Google Chrome 140 Fixes Critical Remote Code Execution Vulnerability
Google has released Chrome 140 to the stable channel, delivering updates across Windows, Mac, Linux, Android, and iOS. The rollout began on September 2, 2025, with desktop builds identified as 140.0.7339.80 for Linux and 140.0.733...

Hackers Exploit Windows Defender Policies to Disable EDR Agents
Attackers are abusing Windows Defender Application Control (WDAC) policies to shut down Endpoint Detection and Response (EDR) agents, leaving systems exposed to malware and ransomware.
The technique first appeared as a proof-of...

CISA Warns of Critical SunPower Flaw Allowing Full Device Takeover
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory about a critical vulnerability in SunPower’s PVS6 solar inverters that could allow attackers to gain complete control of the devices. T...

Iranian Hackers Exploit Omani Mailbox in Global Spear-Phishing Campaign
A large-scale spear-phishing operation has been uncovered after attackers compromised a Ministry of Foreign Affairs of Oman mailbox to deliver malicious emails to diplomatic missions worldwide.
The campaign was detailed in Augu...

Android’s September Security Update Fixes 120 Flaws: Two Already Exploited
Google has released its largest Android security update of 2025, pushing out more than 120 fixes, including patches for two vulnerabilities that are already under active attack.
The company confirmed that “there are indications...

WhatsApp Zero-Day Chained With Apple Flaw in Sophisticated iPhone Attacks
A zero-day vulnerability in WhatsApp has been exploited alongside an Apple iOS flaw in targeted zero-click attacks against fewer than 200 people worldwide, raising concerns of a potential spyware campaign.
Tracked as CVE-2025-5...

Ukrainian Networks Linked to Large-Scale Brute-Force Attacks on VPN and RDP Systems
A wave of brute-force and password spraying attacks targeting SSL VPN and Remote Desktop Protocol systems has been traced to Ukrainian-based networks, according to new research.
The activity was observed between June and July 2...

Cloudflare Mitigates Record-Breaking 11.5 Tbps DDoS Attack
Cloudflare has disclosed that it automatically blocked a record-setting distributed denial-of-service (DDoS) attack that reached 11.5 terabits per second (Tbps). The 35-second incident, described as a UDP flood, is the largest vol...
